Back to Search
Overview
Mid-Level

Security Incident Responder

Confirmed live in the last 24 hours

WPP

WPP

Chennai, Tamil Nadu, India
On-site
Posted April 1, 2026

Job Description

WPP is the trusted growth partner for the world’s leading brands. 

We unite cutting-edge media intelligence and data solutions, world-class creativity, next-generation production, transformative enterprise solutions and expert strategic counsel in a single company – powered by exceptional talent and our agentic marketing platform, WPP Open, to help our clients navigate change, capture opportunity and deliver transformational growth. 
 
We have been building the world's most valuable brands for 50 years and have global reach across 100+ markets, with deep local expertise.
 
Our people are the key to our success. We're committed to fostering a culture of creativity, belonging and continuous learning, attracting and developing the brightest talent, and providing exciting career opportunities that help our people grow. 
 
For more information, visit WPP.com.
 

Why we're hiring:

The Security Incident Responder is responsible for detecting, analyzing, and responding to cybersecurity incidents in real time. This role ensures rapid containment, eradication, and recovery from security breaches while maintaining compliance and minimizing business impact. The responder will work closely with SOC analysts, engineering teams, and cross-functional stakeholders to execute incident response playbooks and continuously improve organizational resilience.

What you'll be doing:

 

Incident Detection & Analysis

  • Monitor SIEM, SOAR, and EDR platforms for alerts and anomalies.
  • Investigate and analyze security incidents to determine scope, impact, and root cause.
  • Perform forensic analysis and evidence collection in line with legal and compliance standards.

Incident Response Execution

  • Execute containment, eradication, and recovery steps as per incident response playbooks.
  • Collaborate with IT, Legal, and Risk teams during major incidents.
  • Document all actions taken during incident handling for compliance and audit purposes.

Continuous Improvement

  • Participate in post-incident reviews and root cause analysis (RCA).
  •  Recommend improvements to detection and response processes based on lessons learned.
  • Assist in updating and maintaining incident response procedures and playbooks.

Strategic Alignment to GCAT SOC10x

  • 10X People: Enhance team capability through knowledge sharing and training.
  • 10X Process: Embed automation-first workflows for incident response.
  • 10X Technology: Utilize AI/ML-driven analytics for rapid threat identification.
  • 10X Visibility: Ensure telemetry coverage across hybrid environments.
  • 10X Speed: Reduce MTTD and MTTR through orchestration and automation

 

What you'll need:

 

Technical Expertise

  • Strong knowledge of SIEM, SOAR, EDR, and forensic tools.
  • Familiarity with incident response frameworks (NIST, ISO27035).
  • Proficiency in scripting and automation (Python, PowerShell).
  • Understandin
pythonrustaidataanalyticsproductmarketing