About Company:
Casepoint provides full eDiscovery capabilities through a powerful, secure, cloud-based platform. We are repeatedly chosen by leading law firms and multinational corporations for their largest matters. On an upward trajectory for almost a decade, Casepoint is looking to expand its team globally. Team cooperation, “work hard, play hard” attitude, open communication, and kindness mark Casepoint’s culture.
Number of positions currently vacant: 01
Position Summary:
We are looking for a seasoned Security Lead with hands-on experience in both Blue Team (defensive security operations) and Red Team (offensive security testing) domains. This role demands a strategic thinker who can lead threat detection, incident response, and threat hunting efforts while also planning and executing penetration tests and adversary simulations across web, infrastructure, thick client, and API layers.
Key job responsibilities:
- Develop and implement a holistic cybersecurity strategy aligned with business objectives.
- Lead cross-functional security teams across Blue and Red Team operations.
- Report security posture and risk metrics to senior leadership and stakeholders.
- Manage SOC operations including SIEM (e.g., Splunk, Elastic), SOAR, and EDR/XDR platforms.
- Conduct proactive threat hunting and continuous monitoring.
- Lead incident response, forensic investigations, and root cause analysis.
- Optimize detection rules and playbooks for evolving threats.
- Perform penetration testing across:
- Web applications
- Infrastructure (internal/external)
- Thick client applications
- APIs
- Conduct Red Team activities including adversary emulation and social engineering.
- Develop custom tools/scripts to simulate threat actor TTPs (aligned with MITRE ATT&CK).
- Collaborate with Blue Team to improve detection and response based on Red Team findings.
- Facilitate Purple Team exercises to validate detection and response capabilities.
- Bridge gaps between offensive and defensive teams to enhance overall security maturity.
- Evaluate and implement emerging technologies (AI/ML-based threat detection, blockchain for data integrity).
- Stay ahead of APTs and evolving attack vectors through continuous learning and tool development.
Required skills & experience
- Bachelor’s or Master’s in Cybersecurity, Computer Science, or related field.
- Proficiency in SIEM, SOAR, EDR, and vulnerability management tools.
- Strong scripting skills (Python, PowerShell, Bash).
- Excellent communication and stakeholder engagement skills.
- Certifications (preferred):
- Offensive: OSCP, OSEP, CRTO
- Defensive: GCIA, GCIH, GCED
- Strategic: CISSP, CISM
- Experience:
- 4+ years in cybersecurity, with 1+ year in a leadership or technical lead role.
- Proven experience in both Blue Team (SOC, SIEM, IR) and Red Team (pentesting, adversary simulation).
Compensation & culture:
Excellent culture produces an excellent product. We value our team members, so we provide a nurturing environment of camaraderie. We recognize talent with competitive compensation and career empowerment.
Location: Surat, India