Security Delivery Lead

Posted:
12/16/2025, 5:31:00 PM

Location(s):
Gurgaon, Haryana, India ⋅ Karnataka, India ⋅ Haryana, India ⋅ Bengaluru, Karnataka, India

Experience Level(s):
Expert or higher ⋅ Senior

Field(s):
IT & Security ⋅ Software Engineering

Project Role : Security Delivery Lead
Project Role Description : Leads the implementation and delivery of Security Services projects, leveraging our global delivery capability (method, tools, training, assets).
Must have skills : Endpoint Extended Detection and Response
Good to have skills : NA
Minimum 7.5 year(s) of experience is required
Educational Qualification : 15 years full time education

Summary: The CrowdStrike EDR Lead is responsible for end-to-end management, optimization, and operational excellence of the CrowdStrike Falcon platform. This role oversees threat detection, response operations, platform administration, policy governance, and cross-team coordination to ensure robust endpoint security across the enterprise environment. Roles & Responsibilities: - Hands-on lead-level experience with CrowdStrike is mandatory. - Lead administration and configuration of CrowdStrike Falcon modules (Prevent, Insight, Device Control, Firewall - Manage sensor deployment, upgrades, health monitoring, and sensor coverage. - Maintain dashboards, alerts, watchlists, and detection rules. - Oversee tenant health, license utilization, and configuration baselines. - Lead investigation and triage of EDR alerts, detections, and incidents. - Perform deep-dive forensic analysis using Falcon Console, RTR (Real-Time Response), and IOC queries. - Conduct malware analysis, behavioral analysis, and correlation with threat intelligence. - Coordinate containment actions: isolation, killing processes, quarantine, registry modifications, and remediation workflows. - Provide guidance to SOC teams on handling medium/high severity alerts. - Continuously improve detection logic and identify gaps in coverage. - Build custom detection rules (IOCs, YARA rules, behavioral analytics). - Create, tune, and maintain prevention, detection, firewall, device control, and identity protection policies. - Ensure policies follow least privilege, Zero Trust, and business segmentation needs. - Perform periodic audits of configurations, exceptions, and exclusions. - Lead policy harmonization across business units, regions, and OS platforms. - Integrate CrowdStrike with SIEM, SOAR, ITSM, CMDB, IAM, and vulnerability platforms. - Automate response workflows using APIs, scripts, and SOAR integrations. - Support log forwarding, event streaming, and real-time monitoring use cases. - Serve as the escalation point for complex endpoint security incidents. - Partner with SOC, Threat Intel, Forensics, and IT operations teams for coordinated response. - Lead root cause analysis (RCA) and prepare actionable recommendations. - Assist during red team/purple team exercises using Falcon tools. - Generate periodic reports—alert trends, sensor health, incident metrics, compliance status. - Support internal/external audits, regulatory compliance, and security assessments. - Maintain documentation for policies, procedures, SOPs, and detection logic. Professional & Technical Skills: - Must To Have Skills: Endpoint security & EDR technologies, Threat hunting using FQL, Incident response and malware analysis, OS internals (Windows, Linux, macOS). - Strong understanding of security frameworks and compliance standards. - Strong hands-on experience with CrowdStrike Falcon platform. - Ability to analyze security incidents and provide actionable insights. - Familiarity with MITRE ATT&CK, SIEM tools (Splunk, QRadar, Sentinel, etc.), API integrations and scripting (Python/PowerShell). - Understanding of enterprise IT infrastructure—domain, networking, servers, cloud endpoints. - Strong leadership and team coordination abilities. - Excellent written and verbal communication. - Analytical and problem-solving mindset. - Ability to operate under pressure in high-priority incident scenarios. Additional Information: - The candidate should have minimum 10+ years of experience in cybersecurity with at least 3–5 years in EDR/endpoint security. - This position is based at our Gurugram office. - A 15 years full time education is required. - Hands-on lead-level experience with CrowdStrike Falcon is mandatory. - Preferred certifications: CrowdStrike CCFA, CCFR, CCFH, GCIA, GCFA, GCIH, or other IR/EDR certifications.

15 years full time education

About Accenture

Accenture is a leading global professional services company that helps the world’s leading businesses, governments and other organizations build their digital core, optimize their operations, accelerate revenue growth and enhance citizen services—creating tangible value at speed and scale. We are a talent- and innovation-led company with approximately 791,000 people serving clients in more than 120 countries. Technology is at the core of change today, and we are one of the world’s leaders in helping drive that change, with strong ecosystem relationships. We combine our strength in technology and leadership in cloud, data and AI with unmatched industry experience, functional expertise and global delivery capability. Our broad range of services, solutions and assets across Strategy & Consulting, Technology, Operations, Industry X and Song, together with our culture of shared success and commitment to creating 360° value, enable us to help our clients reinvent and build trusted, lasting relationships. We measure our success by the 360° value we create for our clients, each other, our shareholders, partners and communities.

Visit us at www.accenture.com 

Equal Employment Opportunity Statement


We believe that no one should be discriminated against because of their differences. All employment decisions shall be made without regard to age, race, creed, color, religion, sex, national origin, ancestry, disability status, military veteran status, sexual orientation, gender identity or expression, genetic information, marital status, citizenship status or any other basis as protected by applicable law. Our rich diversity makes us more innovative, more competitive, and more creative, which helps us better serve our clients and our communities.

Accenture

Website: https://accenture.com/

Headquarter Location: Dublin, Dublin, Ireland

Employee Count: 10001+

Year Founded: 1989

IPO Status: Public

Last Funding Type: Grant

Industries: Business Information Systems ⋅ Construction ⋅ Consulting ⋅ Information Services ⋅ Information Technology ⋅ Infrastructure ⋅ Management Consulting ⋅ Outsourcing