
AVP Platform Engineer - Threat Detection
- Bangalore, Karnataka
- Permanent
- Full-time
MUFG Bank, Ltd. is Japans premier bank, with a global network spanning in more than 40 markets. Outside of Japan, the bank offers an extensive scope of commercial and investment banking products and services to businesses, governments, and individuals worldwide. MUFG Banks parent, Mitsubishi UFJ Financial Group, Inc. (MUFG) is one of the worlds leading financial groups. Headquartered in Tokyo and with over 360 years of history, the Group has about 120,000 employees and offers services including commercial banking, trust banking, securities, credit cards, consumer finance, asset management, and leasing. The Group aims to be the worlds most trusted financial group through close collaboration among our operating companies and flexibly respond to all the financial needs of our customers, serving society, and fostering shared and sustainable growth for a better world. MUFGs shares trade on the Tokyo, Nagoya, and New York stock exchanges.
MUFG Global Service Private Limited:
Established in 2020, MUFG Global Service Private Limited (MGS) is 100% subsidiary of MUFG having offices in Bengaluru and Mumbai. MGS India has been set up as a Global Capability Centre / Centre of Excellence to provide support services across various functions such as IT, KYC/ AML, Credit, Operations etc. to MUFG Bank offices globally. MGS India has plans to significantly ramp-up its growth over the next 18-24 months while servicing MUFGs global network across Americas, EMEA and Asia Pacific.About the Role:Position Title: AVP Platform Engineer - Threat DetectionCorporate Title: ACPReporting to: VPLocation: BengaluruJob Profile:The AVP Platform Engineer - Threat Detection. This position involves leading efforts in setting up and maintaining infrastructure, managing CI/CD pipelines, cloud environments, virtual machines, and data lakes. The role requires ensuring efficient log data ingestion and monitoring log health, with a strong emphasis on using Sigma for threat detection. Proficiency in Python and coding is essential for automating processes and developing custom solutions.Key Responsibilities:
- Participate in design, conducting implementation, and management of CI/CD pipelines to ensure efficient and reliable software delivery.
- Ensuring the setup and maintenance of cloud environments and virtual machines to support threat detection operations.
- Co-develop and manage data lakes for storing and processing large volumes of log data.
- Ensure seamless ingestion of log data into the data lake and monitor log health to maintain data integrity.
- Utilize Sigma tool for creating and managing detection rules and queries.
- Automate infrastructure processes and develop custom solutions using Python.
- Collaborate with the threat detection team to optimize infrastructure for enhanced detection capabilities.
- Conduct regular infrastructure audits and performance tuning to ensure optimal operation.
- Document infrastructure setup and maintenance processes for future reference and training.
- Provide technical support and guidance to team members on infrastructure-related issues.
- Mentor junior analysts and provide leadership in threat detection initiatives.
- Bachelor's degree in Computer Science, Information Technology, or a related field.
- Extensive experience in infrastructure setup and management, including CI/CD pipelines, cloud environments, and virtual machines.
- Strong understanding of data lake architecture and log management.
- Experience with Sigma tool for threat detection.
- Proficiency in Python programming and coding for automation and solution development.
- Demonstrated ability work collaboratively in a team environment, and communicate effectively with technical and non-technical stakeholders.
- Strong problem-solving skills and attention to detail.
- Experience with cloud platforms and services (e.g., AWS, Azure).
- Familiarity with cybersecurity principles and threat detection methodologies.
- Deep knowledge of network security and protocols.
- Experience in threat hunting and relevant frameworks such as PEAK and TAHITI.
- This role may require occasional on-call support and flexibility in working hours to address urgent security incidents.