Practice - CIS - Cloud, Infrastructure, and Security Services
About Cloud Infrastructure & Security Services: Cognizant’s Cloud, Infrastructure, and Security Services Practice (CIS), is all about embracing digital transformation by driving core modernization holistically across layers. We help customers transform infrastructure and workplace to meet the rapidly evolving needs of the digital era. Our holistic approach delivers key results for our customers by achieving cloud driven modernization and workplace and operational transformation to run the business in a secure environment.
Job Summary
We are seeking a Threat Management Associate to support enterprise security operations by monitoring, triaging, investigating, and escalating cybersecurity threats across diverse technology environments. This role will be responsible for analyzing security events from SIEM, EDR, cloud, and network security platforms, validating potential threats, and coordinating incident response activities. The ideal candidate will possess strong experience in threat monitoring, incident triage, threat intelligence analysis, and SOC operations. This position requires strong analytical skills, attention to detail, and the ability to operate effectively in a fast-paced security operations environment.
*Please note, this role is not able to offer visa transfer or sponsorship now or in the future*
In this role, you will:
· Monitor and analyze security alerts generated from SIEM, EDR, cloud, network, and enterprise security platforms.
· Perform initial triage and investigation of security events to determine validity, severity, business impact, and escalation requirements.
· Analyze indicators of compromise (IOCs), threat intelligence feeds, attack patterns, and anomalous activity to identify potential threats.
· Correlate logs, events, and telemetry across multiple security tools to support security investigations and threat detection activities.
· Escalate confirmed security incidents to L2/L3 teams and support incident response processes according to established procedures.
· Conduct threat monitoring, threat hunting, and situational awareness activities to identify emerging risks and attack techniques.
· Document investigation findings, response actions, incident evidence, and operational metrics accurately and consistently.
· Support shift handovers, operational reporting, and communication of security incidents and threats to relevant stakeholders.
· Leverage MITRE ATT&CK, threat intelligence, and security frameworks to improve threat detection and response effectiveness.
· Collaborate with SOC, Incident Response, Vulnerability Management, and Security Engineering teams to strengthen overall security operations.
What you need to have to be considered
3–7 years of experience in Security Operations, Threat Management, Threat Hunting, SOC, or Cybersecurity Monitoring roles.
Strong knowledge of threat monitoring, incident triage, SIEM analysis, log correlation, and security investigation methodologies.
Hands-on experience with SIEM platforms such as Microsoft Sentinel, Splunk, QRadar, or similar technologies.
Experience working with EDR and threat detection tools such as CrowdStrike, Microsoft Defender, Cortex XDR, or equivalent solutions.
Understanding of threat intelligence, IOC analysis, attack techniques, malware indicators, and adversary tactics.
Familiarity with MITRE ATT&CK, NIST Cybersecurity Framework, incident response processes, and SOC operations.
Experience using ServiceNow, ticketing systems, and security operational workflows.
Strong analytical, troubleshooting, communication, and documentation skills.
Experience supporting security incident escalation, reporting, and operational handoffs in a 24x7 or managed security environment.
Security certifications such as Security+, CySA+, GSEC, CEH, SC-200, or equivalent are preferred.
#LI-EF1
#CB
#Ind123
Applications will be accepted until 8 Sep 2026.
Salary and Other Compensation:
The annual salary for this position is between $[114,500 - 134,000] depending on experience and other qualifications of the successful candidate.
This position is also eligible for Cognizant’s discretionary annual incentive program, based on performance and subject to the terms of Cognizant’s applicable plans.
Benefits: Cognizant offers the following benefits for this position, subject to applicable eligibility requirements:
· Medical/Dental/Vision/Life Insurance
· Paid holidays plus Paid Time Off
· 401(k) plan and contributions
· Long-term/Short-term Disability
· Paid Parental Leave
· Employee Stock Purchase Plan
关于高知特 (Cognizant)
高知特(Cognizant)(纳斯达克代码:CTSH)作为一家AI Builder和相关技术服务提供商,致力于通过打造全栈AI解决方案,帮助企业将人工智能投资转化为实际价值。公司凭借深厚的行业经验、流程优化和工程技术专长,将企业独特的业务场景融入科技系统,赋能组织释放人才潜能,推动切实成果,并帮助全球企业在瞬息万变的环境中保持领先。如需了解更多详情,敬请访问 cognizant.ai 或关注@cognizant。
补充雇佣信息
薪酬信息截至本职位发布之日为准。Cognizant 保留在适用法律允许的范围内随时修改该信息的权利。
申请人可能需要通过现场面试或视频会议的方式参加面试。此外,候选人在每次面试时可能需要出示其当前所在州或政府签发的有效身份证件。
Cognizant 是一家提供平等就业机会的雇主。在招聘过程中,您的申请和候选资格不会因种族、肤色、性别、宗教、信仰、性取向、性别认同、国籍、残疾、遗传信息、怀孕、退伍军人身份或任何其他受联邦、州或地方法律保护的特征而受到影响。







