Who We AreAt Kyndryl, we run and reimagine the mission-critical technology systems that drive advantage for the world's leading businesses. We are at the heart of progress; with proven expertise and a continuous flow of AI-powered insight, enabling smarter decisions, faster innovation, and a lasting competitive edge. For our people-Kyndryls-that means doing purposeful work that powers human progress. Join us and experience a flexible, supportive environment where your well-being is prioritized and your potential can thrive.
The RoleKyndryl's Security & Resiliency is one of our most critical practices, ensuring enterprises, regardless of their size and complexity, remain secure, available, reliable, and resilient. We take Cybersecurity seriously. We're not just invested; we're committed. We're not just protecting data; we're empowering. Kyndryl is committed to making the world safer, not only by investing in state-of-the-art services and technologies but also by empowering underserved communities with essential cyber skills. When you walk through our doors, you're not only joining a team but you're also becoming part of a legacy. Welcome to Kyndryl, where Cybersecurity isn't just a job - it's a passion; a commitment to designing, running, and managing the most modern and reliable technology infrastructure that the world depends on every day.
As a Senior Cyber Defense Analyst at Kyndryl, you will play a critical role in protecting customers and Kyndryl environments through cybersecurity operations, incident response, digital forensics, threat hunting, detection engineering, and security investigations. Unlike traditional Security Operations Center (SOC) environments, this role owns investigations from start to finish, giving you the opportunity to manage the full lifecycle of an incident from initial alert triage through investigation, containment, remediation, and recovery.
In this role, you won't just monitor alerts; you'll actively investigate and respond to cyber threats across complex enterprise environments. You will leverage your experience with Security Information and Event Management (SIEM) platforms, endpoint detection capabilities, and security telemetry to identify, analyze, and respond to threats. Whether conducting threat hunting activities, building detections, or performing digital forensic investigations, your expertise will be instrumental in strengthening our cyber defense capabilities.
Your responsibilities go beyond operational monitoring. You will develop and tune detections, write and optimize security queries, perform proactive threat hunting, and conduct detailed investigations into suspicious activity and security incidents. You will collaborate with security professionals across the organization, applying investigative techniques and threat intelligence to identify indicators of compromise and emerging threats before they become material risks.
In Cybersecurity Defense at Kyndryl, you're not just protecting the present - you're shaping the future of digital security.
Who You AreYou're good at what you do and possess the required experience to prove it. However, equally as important - you have a growth mindset; keen to drive your own personal and professional development. You are customer-focused - someone who prioritizes customer success in their work. And finally, you're open and borderless - naturally inclusive in how you work with others.
Required Skills and ExperienceProven experience in cybersecurity operations, incident response, threat hunting, or cyber defense roles.
Hands-on experience managing security incidents through the full investigation lifecycle, from alert triage to remediation and closure.
Experience with SIEM platforms such as Splunk, Microsoft Sentinel, QRadar, Elastic, LogRhythm, or similar technologies.
Strong investigative and analytical skills with the ability to identify, analyze, and respond to complex cyber threats.
Experience in detection engineering, including creating, tuning, and optimizing detections and security analytics.
Experience conducting proactive threat hunting and leveraging threat intelligence to identify indicators of compromise (IOCs).Knowledge of digital forensics techniques and experience investigating endpoint and/or network-based security incidents.
Experience with scripting or programming languages such as Python, PowerShell, or Bash is highly desirable.
Experience with Palo Alto technologies, particularly XDR, is advantageous but not required.
Your Future at KyndrylWhen you join Kyndryl, you're not just joining a company - you're entering a space of opportunities. Our partnerships with industry alliances and vendors mean you'll have access to skilling and certification programs needed to excel in Security & Resiliency, while simultaneously supporting your personal growth. Whether you envision your career path as a technical leader within cybersecurity, an incident response specialist, a threat hunting expert, or transition into other technical, consulting, or go-to-market roles - we're invested in your journey.