Security Engineering Analyst
| Job #: | req37073 |
| Organization: | World Bank |
| Sector: | Information Technology |
| Grade: | GE |
| Term Duration: | 3 years 0 months |
| Recruitment Type: | Local Recruitment |
| Location: | Chennai,India |
| Required Language(s): | English |
| Preferred Language(s): | |
| Closing Date: | 6/23/2026 (MM/DD/YYYY) at 11:59pm UTC |
Description
• Review information security alerts from various sources and based on the classification and its impact would prioritize the alerts and assign to the respective teams within Information Security Office. • Participate in all the phases of security incident response process, including detection, containment, eradication, and post-incident reporting. • Use Security information and event management (SIEM) capabilities to develop alerts to detect anomalies. • Assist developing and maintaining ISMS procedures (related to ISOC) for complying with global ISMS policy defined by the organization. • Undertake knowledge sharing and training activities on various monitoring tools and remediation techniques on periodic basis. • Support R&D lab using virtual machines and monitor open-source security research news, contribute to control testing and strengthening. • Perform detailed analysis of attacks against web infrastructure. This includes identification of malicious code within URLs, collection of malicious plugins and/or exploits' payload. Able to identify exploit and exploit tools involved in attacks. Able to identify packing techniques used to obfuscate URLs. Able to look at return traffic from exploitation activity looking for successful exploitation. • Perform log analysis, analyze large datasets, forensic analysis and create reports. • Liaison with threat hunting, infrastructure, IT, vulnerability management, threat intelligence and software engineer team members. • Support creation and delivery of incident response tabletop exercises designed to identify gaps, improve skills, enhance communication and engage with key stakeholders.
Selection Criteria
• Minimum 5 years of Information Security experience required with majority of time in a SOC. • Experience in working on High impact incident like ransomware, major compromise, internal threats, third parties, and data leakage. • Experience in building and maintaining tools, processes, and capabilities for log analysis, ensuring the provision of data to incident stakeholders in an easy and scalable manner. • Past exposure to handle malware and financial crime malware related incidents. • Experience working in Agile environments, participating in Agile ceremonies, and utilizing Agile methodologies for security operations and threat investigations. • Learning Orientation - Stays abreast of new trends and developments in own specialty area, the broader industry, and exposes self to increasingly more challenging projects and opportunities to learn. • Compliance with Standards - Monitors and maintains records on requests for information and assistance.
WBG Culture Attributes:
1. Sense of urgency: Anticipate and quickly respond to the needs of internal and external stakeholders.
2. Thoughtful risk-taking: Challenge the status quo and push boundaries to achieve greater impact.
3. Empowerment and accountability: Empower yourself and others to act and hold each other accountable for results.
World Bank Group Core Competencies
The World Bank Group offers comprehensive benefits, including a retirement plan; medical, life and disability insurance; and paid leave, including parental leave, as well as reasonable accommodations for individuals with disabilities.
We are proud to be an equal opportunity and inclusive employer with a dedicated and committed workforce, and do not discriminate based on gender, gender identity, religion, race, ethnicity, sexual orientation, or disability.
Learn more about working at the World Bank and IFC including our values and inspiring stories.