Project Role : Security Architect
Project Role Description : Define the cloud security framework and architecture, ensuring it meets the business requirements and performance goals. Document the implementation of the cloud security controls and transition to cloud security-managed operations.
Must have skills : Endpoint Extended Detection and Response
Good to have skills : NA
Minimum
5 year(s) of experience is required
Educational Qualification : 15 years full time education
Summary:
The CTEMaaS (Continuous Threat Exposure Management as a Service) Threat Management Specialist is responsible for leveraging CrowdStrike Falcon and associated modules to continuously identify, assess, prioritize, and drive remediation of cyber threats and exposures. This role ensures that vulnerabilities, misconfigurations, identity risks, and endpoint threats are managed proactively with a risk-based approach aligned to the organization’s security strategy
Roles & Responsibilities:
-Drive the end-to-end Continuous Threat Exposure Management (CTEM) cycle:
-Scoping Discovery Prioritization Validation Mobilization.
-Continuously monitor the environment using CrowdStrike modules (e.g., Spotlight, Intel, Falcon Prevent, Falcon Discover, Identity Protection).
-Identify exposures across endpoints, identities, cloud workloads, applications, and configurations.
-Perform risk-based prioritization using threat intel, exploitability, business criticality, and CrowdStrike scoring
-Analyze vulnerabilities, misconfigurations, privilege misuse, lateral movement risks, and identity exposures.
-Utilize CrowdStrike Spotlight for vulnerability analytics and patch risk visibility.
-Use CrowdStrike Identity Protection to assess identity-based attack paths, credential misuse, and AD exposure.
-Correlate EDR alerts with exposure findings to determine active exploitation indicators.
-Validate identified exposures by replicating attack scenarios using:
- CrowdStrike indicators, threat intel, and MITRE ATT&CK alignment
- Manual validation techniques where relevant
- Work with threat intel teams to contextualize exposure significance based on current adversary trends.
- Work closely with Infra, Cloud, Network, and Application teams to mobilize remediation plans.
- Define prioritized action plans, compensating controls, and mitigation strategies.
- Track and report remediation progress as per SLAs and risk tiers.
- Provide guidance on patching, hardening, identity hygiene, and endpoint security improvements.
- Build and maintain CTEM dashboards using Falcon console, ServiceNow, Splunk, or PowerBI.
- Provide weekly/monthly threat exposure reports and executive summaries.
- Present CTEM insights, remediation progress, and top risks to leadership and stakeholders.
- Continuously enhance CTEMaaS operational processes based on maturity, tool capability, and threat landscape.
- Recommend configuration optimizations within CrowdStrike (policies, exclusions, detections).
- Participate in automation initiatives using APIs, scripting, or integration with SOAR/SIEM.
Professional & Technical Skills:
- CVE/CVSS scoring, exploitability, threat intel
- MITRE ATT&CK mapping
- AD/Identity security and endpoint security baselines
- Experience working with remediation teams across infra, network, cloud, and applications.
- Strong knowledge of OS hardening, patching cycles, endpoint security, and identity attack paths.
- Security certifications: CrowdStrike CCSF / CCFA / CCFH, Security+, CEH, GCIA, GCIH.
- Experience with CTEM frameworks (Gartner CTEM model, NIST CSF, ISO 27001).
- Experience with automation using API, Python, PowerShell, or SOAR.
- Knowledge of cloud security (Azure, AWS, GCP) and container exposures.
Additional Information:
- The candidate should have minimum 8 years of experience in Endpoint Extended Detection and Response.
- This position is based at our Bengaluru office.
- A 15 years full time education is required.
15 years full time education
About Accenture
Accenture is a leading global professional services company that helps the world’s leading businesses, governments and other organizations build their digital core, optimize their operations, accelerate revenue growth and enhance citizen services—creating tangible value at speed and scale. We are a talent- and innovation-led company with approximately 791,000 people serving clients in more than 120 countries. Technology is at the core of change today, and we are one of the world’s leaders in helping drive that change, with strong ecosystem relationships. We combine our strength in technology and leadership in cloud, data and AI with unmatched industry experience, functional expertise and global delivery capability. Our broad range of services, solutions and assets across Strategy & Consulting, Technology, Operations, Industry X and Song, together with our culture of shared success and commitment to creating 360° value, enable us to help our clients reinvent and build trusted, lasting relationships. We measure our success by the 360° value we create for our clients, each other, our shareholders, partners and communities.
Visit us at www.accenture.com
Equal Employment Opportunity Statement
We believe that no one should be discriminated against because of their differences. All employment decisions shall be made without regard to age, race, creed, color, religion, sex, national origin, ancestry, disability status, military veteran status, sexual orientation, gender identity or expression, genetic information, marital status, citizenship status or any other basis as protected by applicable law. Our rich diversity makes us more innovative, more competitive, and more creative, which helps us better serve our clients and our communities.