152 Soc Engineer jobs in India
SOC Engineer
Posted 6 days ago
Job Viewed
Job Description
Continuously monitor:
- Monitor security alerts and events from various sources, including Microsoft Sentinel, Defender for Endpoint and Defender for Cloud.
- Perform log management: Perform log ingestion, define use cases, and create alerts for critical assets.
- Develop Detection Rules: Create, implement, and fine-tune analytical rules, alerts, and queries in Microsoft Sentinel and Defender to detect security incidents and reduce false positives.
- Behavioral Analytics: Leverage user and entity behavior analytics (UEBA) to identify abnormal activities and enhance detection capabilities.
- Customize Playbooks: Develop and customize automation playbooks in Sentinel and defender to streamline incident response processes and improve efficiency.
- Threat Hunting: Using IOCs and threat intelligence, perform threat hunting across environment.
Incident Response
- Analyze and investigate security incidents to identify potential threats.
- Respond promptly to security incidents, provide initial analysis, conduct business impact assessment, isolate, eradicate and recover from threats.
- Document and report incidents, ensuring accurate and comprehensive records.
- Follow established incident response procedures, playbooks and contribute to their enhancement.
Testing and Validation
- Participate in BlueRedPurple team exercises.
- Participate in Cyber crisis simulations.
- Participate in Table-top exercises.
Business Context and Risk Management
- Understand the Business value chain.
- Understand key Business processes.
- Understanding the Business architecture and mapping to crown jewels (critical assets)
- Risk management with the ability to conduct risk assessments when required.
Endpoint Detection and Response (EDR)
- Manage and maintain endpoint security and compliance.
- Perform daily health checks endpoint security and EDR solutions and remediate accordingly.
- Conduct regular scans and assessments to identify and mitigate potential vulnerabilities.
- Collaborate with IT teams to ensure endpoint security configurations align with organizational standards.
SOC Engineer
Posted 6 days ago
Job Viewed
Job Description
Job Position: SOC Engineer
Location: PAN.
Experience: 5+ to 10+ Years
Must have: Forensics - Others
Roles Responsibilities
- Review daily operational activities and timely mentor junior analysts
- Conduct detailed analysis on escalated events and handover the call to the Incident Response team along with appropriate evidence
- Ensure 100 incidents validation and closure
- Manage shifts and facilitate knowledge transfer within shifts shift handover
- Study attack types and methods while monitoring the environment for threats
- Perform deep dive incident analysis by correlating data from various sources
- Document and archive artefacts for future reference
- Define the criticality of behaviour events based on experience and information security understanding
- Lead operations and act as a security consultant for incidents and s observed
- Guide junior analysts in investigations analysis and categorization
- Monitor various technology dashboards and identify any suspicious activities or anomalies
- Ensure quality check for all s and incidents raised by L1 analysts
- Investigate and close testing incidents defining the steps and processes
- Prepare daily summary reports
- Raise control related concerns such as SOAR and SIEM
- Define operations related activities
- Review IRC SOP and manage all other process documents
- Submit audit data
- Escalate to seniors before the TAT breach
- Handle TAT responsibilities
- Validate SOC incidents by the Bank L2 team
- This role requires a proactive approach to security operations ensuring thorough analysis and validation of incidents mentoring junior analysts and maintaining high standards of documentation and reporting
SOC Engineer - L2
Posted 2 days ago
Job Viewed
Job Description
Join a company that is pushing the boundaries of what is possible. We are renowned for our technical excellence and leading innovations, and for making a difference to our clients and society. Our workplace embraces diversity and inclusion - it's a place where you can grow, belong and thrive.
**Your day at NTT DATA**
The Senior Associate Information Security Analyst is a developing subject matter expert, responsible for designing and implementing security systems to protect the organization's computer networks from cyber-attacks, and to help set and maintain security standards.
This role is required to monitor the organization's computer networks for security issues, install security software, and document any security issues or breaches found.
The Senior Associate Information Security Analyst is responsible for assisting in the planning, implementation, and management of information security measures to safeguard the organization's digital assets and systems and contributes to maintaining a secure and compliant environment.
**What you'll be doing**
**Key Responsibilities:**
+ Monitors security alerts and events from various sources, investigates potential threats, and escalates incidents as necessary.
+ Assists in the implementation and monitoring of security controls, including firewalls, intrusion detection systems, and access controls.
+ Performs regular vulnerability assessments, analyses scan results, and assists in prioritizing and remediating identified vulnerabilities.
+ Supports the incident response team in investigating security incidents, documenting findings, and participating in remediation efforts.
+ Assists in ensuring compliance with industry standards (for example, GDPR, ISO 27001) by conducting assessments and implementing necessary controls.
+ Installs security measures and operates software to protect systems and information infrastructure, including firewalls and data encryption programs.
+ Documents security breaches and assess the damage they cause.
+ Works with the security team to perform tests and uncover network vulnerabilities.
+ Fixes detected vulnerabilities to maintain a high-security standard.
+ Develops organizational best practices for IT security.
+ Performs penetration testing and upgrades systems to unable security software.
+ Installs and upgrades antivirus software and tests and evaluates new technology.
+ Assists with the installation of security software and understands information security management.
+ Researches security enhancements and makes recommendations to management.
+ Stays abreast of information technology trends and security standards.
+ Contributes to security awareness initiatives by creating training materials, conducting workshops, and educating employees about best security practices.
+ Maintains accurate records of security incidents, assessments, and actions taken for reporting and audit purposes.
+ Assists in the management and maintenance of security tools, including antivirus software, encryption tools, and security information and event management (SIEM) systems.
+ Participates in risk assessments to identify potential security threats, vulnerabilities, and associated risks to the organization.
+ Collaborates with cross-functional teams, IT, and other teams to ensure security measures are integrated into the organization's processes and projects.
+ Performs any other related task as required.
**Knowledge and Attributes:**
+ Good communication skills to effectively convey technical information to non-technical stakeholders.
+ Good analytical thinking and problem-solving skills to prevent hacking on a network.
+ Ability to identify and evaluate potential risks and to develop solutions.
+ Ability to identify and mitigate network vulnerabilities and explain how to avoid them.
+ Understands firewalls, proxies, SIEM, antivirus, and IDPS concepts.
+ Understands patch management with the ability to deploy patches in a timely manner whilst understanding business impact.
+ Developing proficiency with MAC and OS.
+ Familiarity with security frameworks, standards, and regulations (for example, NIST, CIS, GDPR).
+ Basic understanding of network and system architecture, protocols, and security controls.
+ Ability to analyze security incidents and assess potential risks.
+ Ability to work both independently and collaboratively in a fast-paced environment.
**Academic Qualifications and Certifications:**
+ Bachelor's degree or equivalent in information security, cybersecurity, computer science, or related.
+ Security certifications such as CompTIA Security+, Certified Information Systems Security Professional (CISSP), or Certified Information Security Manager (CISM) are advantageous.
**Required Experience:**
+ Moderate level of demonstrated experience in information security or cybersecurity, or related roles.
+ Moderate level of demonstrated experience working in a global IT organization.
+ Moderate level of demonstrated experience with computer network penetration testing and techniques.
+ Moderate level of demonstrated experience with security assessment and vulnerability scanning tools.
**Workplace type** **:**
On-site Working
**About NTT DATA**
NTT DATA is a $30+ billion trusted global innovator of business and technology services. We serve 75% of the Fortune Global 100 and are committed to helping clients innovate, optimize and transform for long-term success. We invest over $3.6 billion each year in R&D to help organizations and society move confidently and sustainably into the digital future. As a Global Top Employer, we have diverse experts in more than 50 countries and a robust partner ecosystem of established and start-up companies. Our services include business and technology consulting, data and artificial intelligence, industry solutions, as well as the development, implementation and management of applications, infrastructure, and connectivity. We are also one of the leading providers of digital and AI infrastructure in the world. NTT DATA is part of NTT Group and headquartered in Tokyo.
**Equal Opportunity Employer**
NTT DATA is proud to be an Equal Opportunity Employer with a global culture that embraces diversity. We are committed to providing an environment free of unfair discrimination and harassment. We do not discriminate based on age, race, colour, gender, sexual orientation, religion, nationality, disability, pregnancy, marital status, veteran status, or any other protected category. Join our growing global team and accelerate your career with us. Apply today.
SOC Engineer - L2
Posted 2 days ago
Job Viewed
Job Description
Join a company that is pushing the boundaries of what is possible. We are renowned for our technical excellence and leading innovations, and for making a difference to our clients and society. Our workplace embraces diversity and inclusion - it's a place where you can grow, belong and thrive.
**Your day at NTT DATA**
The Senior Associate Information Security Analyst is a developing subject matter expert, responsible for designing and implementing security systems to protect the organization's computer networks from cyber-attacks, and to help set and maintain security standards.
This role is required to monitor the organization's computer networks for security issues, install security software, and document any security issues or breaches found.
The Senior Associate Information Security Analyst is responsible for assisting in the planning, implementation, and management of information security measures to safeguard the organization's digital assets and systems and contributes to maintaining a secure and compliant environment.
**Key responsibilities:**
+ Monitors security alerts and events from various sources, investigates potential threats, and escalates incidents as necessary.
+ Assists in the implementation and monitoring of security controls, including firewalls, intrusion detection systems, and access controls.
+ Performs regular vulnerability assessments, analyses scan results, and assists in prioritizing and remediating identified vulnerabilities.
+ Supports the incident response team in investigating security incidents, documenting findings, and participating in remediation efforts.
+ Assists in ensuring compliance with industry standards (for example, GDPR, ISO 27001) by conducting assessments and implementing necessary controls.
+ Installs security measures and operates software to protect systems and information infrastructure, including firewalls and data encryption programs.
+ Documents security breaches and assess the damage they cause.
+ Works with the security team to perform tests and uncover network vulnerabilities.
+ Fixes detected vulnerabilities to maintain a high-security standard.
+ Develops organizational best practices for IT security.
+ Performs penetration testing and upgrades systems to unable security software.
+ Installs and upgrades antivirus software and tests and evaluates new technology.
+ Assists with the installation of security software and understands information security management.
+ Researches security enhancements and makes recommendations to management.
+ Stays abreast of information technology trends and security standards.
+ Contributes to security awareness initiatives by creating training materials, conducting workshops, and educating employees about best security practices.
+ Maintains accurate records of security incidents, assessments, and actions taken for reporting and audit purposes.
+ Assists in the management and maintenance of security tools, including antivirus software, encryption tools, and security information and event management (SIEM) systems.
+ Participates in risk assessments to identify potential security threats, vulnerabilities, and associated risks to the organization.
+ Collaborates with cross-functional teams, IT, and other teams to ensure security measures are integrated into the organization's processes and projects.
+ Performs any other related task as required.
**To thrive in this role, you need to have:**
+ Good communication skills to effectively convey technical information to non-technical stakeholders.
+ Good analytical thinking and problem-solving skills to prevent hacking on a network.
+ Ability to identify and evaluate potential risks and to develop solutions.
+ Ability to identify and mitigate network vulnerabilities and explain how to avoid them.
+ Understands firewalls, proxies, SIEM, antivirus, and IDPS concepts.
+ Understands patch management with the ability to deploy patches in a timely manner whilst understanding business impact.
+ Developing proficiency with MAC and OS.
+ Familiarity with security frameworks, standards, and regulations (for example, NIST, CIS, GDPR).
+ Basic understanding of network and system architecture, protocols, and security controls.
+ Ability to analyze security incidents and assess potential risks.
+ Ability to work both independently and collaboratively in a fast-paced environment.
**Academic qualifications and certifications:**
+ Bachelor's degree or equivalent in information security, cybersecurity, computer science, or related.
+ Security certifications such as CompTIA Security+, Certified Information Systems Security Professional (CISSP), or Certified Information Security Manager (CISM) are advantageous.
**Required experience:**
+ Moderate level of demonstrated experience in information security or cybersecurity, or related roles.
+ Moderate level of demonstrated experience working in a global IT organization.
+ Moderate level of demonstrated experience with computer network penetration testing and techniques.
+ Moderate level of demonstrated experience with security assessment and vulnerability scanning tools.
**Workplace type** **:**
On-site Working
**About NTT DATA**
NTT DATA is a $30+ billion trusted global innovator of business and technology services. We serve 75% of the Fortune Global 100 and are committed to helping clients innovate, optimize and transform for long-term success. We invest over $3.6 billion each year in R&D to help organizations and society move confidently and sustainably into the digital future. As a Global Top Employer, we have diverse experts in more than 50 countries and a robust partner ecosystem of established and start-up companies. Our services include business and technology consulting, data and artificial intelligence, industry solutions, as well as the development, implementation and management of applications, infrastructure, and connectivity. We are also one of the leading providers of digital and AI infrastructure in the world. NTT DATA is part of NTT Group and headquartered in Tokyo.
**Equal Opportunity Employer**
NTT DATA is proud to be an Equal Opportunity Employer with a global culture that embraces diversity. We are committed to providing an environment free of unfair discrimination and harassment. We do not discriminate based on age, race, colour, gender, sexual orientation, religion, nationality, disability, pregnancy, marital status, veteran status, or any other protected category. Join our growing global team and accelerate your career with us. Apply today.
**Third parties fraudulently posing as NTT DATA recruiters**
NTT DATA recruiters will never ask job seekers or candidates for payment or banking information during the recruitment process, for any reason. Please remain vigilant of third parties who may attempt to impersonate NTT DATA recruiters-whether in writing or by phone-in order to deceptively obtain personal data or money from you. All email communications from an NTT DATA recruiter will come from an **@nttdata.com** email address. If you suspect any fraudulent activity, please contact us ( ) .
SOC Engineer - L2
Posted 2 days ago
Job Viewed
Job Description
Join a company that is pushing the boundaries of what is possible. We are renowned for our technical excellence and leading innovations, and for making a difference to our clients and society. Our workplace embraces diversity and inclusion - it's a place where you can grow, belong and thrive.
**Your day at NTT DATA**
As a Security Managed Services Engineer (L2) at NTT DATA, your role will be to ensure that our clients' security infrastructures and systems remain operational. With a proactive approach, you'll monitor, identify, investigate, and resolve technical incidents and problems, restoring service efficiently. Your primary objective will be to handle client requests or tickets with technical expertise, ensuring they are resolved within the agreed service level agreement (SLA).
You'll actively manage work queues, perform operational tasks, and update tickets with resolution actions. By identifying issues and errors early on, you'll log incidents promptly and provide second-level support, communicating effectively with other teams and clients to extend support when needed. Your role includes executing changes responsibly, flagging risks and mitigation plans, and ensuring all changes have proper approvals.
Collaborative efforts are at the heart of this role. You'll work closely with automation teams to optimize efforts and automate routine tasks, ensuring seamless handovers during shift changes. Your analytical skills will be key in auditing incident and request tickets for quality, recommending improvements, and contributing to trend analysis reports to identify automation opportunities.
As a go-to for initial client escalations, you'll assist L1 Security Engineers with triage and troubleshooting, and support project work when required. Your contributions to the change management process will ensure thorough documentation, effective planning and execution of maintenance activities, and compliance with standard procedures.
**To thrive in this role, you need to have:**
+ Experience with managed services handling security infrastructure and working knowledge of ticketing tools, preferably ServiceNow.
+ Proficiency in active listening, with techniques like paraphrasing and probing for further information.
+ Excellent planning skills, able to anticipate and adjust to changing circumstances.
+ Strong ability to communicate and engage across different cultures and social groups.
+ Adaptability to changing conditions and flexibility in approach.
+ Client-focused mindset, always putting their needs and positive experience first.
+ A positive outlook and the ability to work well under pressure.
+ Willingness to put in longer hours when necessary.
+ Bachelor's degree or equivalent qualification in IT/Computing, or relevant work experience.
**Workplace type** **:**
On-site Working
**About NTT DATA**
NTT DATA is a $30+ billion trusted global innovator of business and technology services. We serve 75% of the Fortune Global 100 and are committed to helping clients innovate, optimize and transform for long-term success. We invest over $3.6 billion each year in R&D to help organizations and society move confidently and sustainably into the digital future. As a Global Top Employer, we have diverse experts in more than 50 countries and a robust partner ecosystem of established and start-up companies. Our services include business and technology consulting, data and artificial intelligence, industry solutions, as well as the development, implementation and management of applications, infrastructure, and connectivity. We are also one of the leading providers of digital and AI infrastructure in the world. NTT DATA is part of NTT Group and headquartered in Tokyo.
**Equal Opportunity Employer**
NTT DATA is proud to be an Equal Opportunity Employer with a global culture that embraces diversity. We are committed to providing an environment free of unfair discrimination and harassment. We do not discriminate based on age, race, colour, gender, sexual orientation, religion, nationality, disability, pregnancy, marital status, veteran status, or any other protected category. Join our growing global team and accelerate your career with us. Apply today.
**Third parties fraudulently posing as NTT DATA recruiters**
NTT DATA recruiters will never ask job seekers or candidates for payment or banking information during the recruitment process, for any reason. Please remain vigilant of third parties who may attempt to impersonate NTT DATA recruiters-whether in writing or by phone-in order to deceptively obtain personal data or money from you. All email communications from an NTT DATA recruiter will come from an **@nttdata.com** email address. If you suspect any fraudulent activity, please contact us ( ) .
SOC Engineer - L3
Posted 2 days ago
Job Viewed
Job Description
Join a company that is pushing the boundaries of what is possible. We are renowned for our technical excellence and leading innovations, and for making a difference to our clients and society. Our workplace embraces diversity and inclusion - it's a place where you can grow, belong and thrive.
**Additional Career Level Description:**
**Knowledge and application:**
+ Seasoned, experienced professional; has complete knowledge and understanding of area of specialization.
+ Uses evaluation, judgment, and interpretation to select right course of action.
**Problem solving:**
+ Works on problems of diverse scope where analysis of information requires evaluation of identifiable factors.
+ Resolves and assesses a wide range of issues in creative ways and suggests variations in approach.
**Interaction:**
+ Enhances relationships and networks with senior internal/external partners who are not familiar with the subject matter often requiring persuasion.
+ Works with others outside of own area of expertise, with the ability to adapt style to differing audiences and often advises others on difficult matters.
**Impact:**
+ Impacts short to medium term goals through personal effort or influence over team members.
**Accountability:**
+ Accountable for own targets with work reviewed at critical points.
+ Work is done independently and is reviewed at critical points.
**Workplace type** **:**
On-site Working
**About NTT DATA**
NTT DATA is a $30+ billion trusted global innovator of business and technology services. We serve 75% of the Fortune Global 100 and are committed to helping clients innovate, optimize and transform for long-term success. We invest over $3.6 billion each year in R&D to help organizations and society move confidently and sustainably into the digital future. As a Global Top Employer, we have diverse experts in more than 50 countries and a robust partner ecosystem of established and start-up companies. Our services include business and technology consulting, data and artificial intelligence, industry solutions, as well as the development, implementation and management of applications, infrastructure, and connectivity. We are also one of the leading providers of digital and AI infrastructure in the world. NTT DATA is part of NTT Group and headquartered in Tokyo.
**Equal Opportunity Employer**
NTT DATA is proud to be an Equal Opportunity Employer with a global culture that embraces diversity. We are committed to providing an environment free of unfair discrimination and harassment. We do not discriminate based on age, race, colour, gender, sexual orientation, religion, nationality, disability, pregnancy, marital status, veteran status, or any other protected category. Join our growing global team and accelerate your career with us. Apply today.
SOC Engineer - L2
Posted 2 days ago
Job Viewed
Job Description
Join a company that is pushing the boundaries of what is possible. We are renowned for our technical excellence and leading innovations, and for making a difference to our clients and society. Our workplace embraces diversity and inclusion - it's a place where you can grow, belong and thrive.
**Your day at NTT DATA**
The Senior Associate Information Security Analyst is a developing subject matter expert, responsible for designing and implementing security systems to protect the organization's computer networks from cyber-attacks, and to help set and maintain security standards.
This role is required to monitor the organization's computer networks for security issues, install security software, and document any security issues or breaches found.
The Senior Associate Information Security Analyst is responsible for assisting in the planning, implementation, and management of information security measures to safeguard the organization's digital assets and systems and contributes to maintaining a secure and compliant environment.
**What you'll be doing**
**Key Responsibilities:**
+ Monitors security alerts and events from various sources, investigates potential threats, and escalates incidents as necessary.
+ Assists in the implementation and monitoring of security controls, including firewalls, intrusion detection systems, and access controls.
+ Performs regular vulnerability assessments, analyses scan results, and assists in prioritizing and remediating identified vulnerabilities.
+ Supports the incident response team in investigating security incidents, documenting findings, and participating in remediation efforts.
+ Assists in ensuring compliance with industry standards (for example, GDPR, ISO 27001) by conducting assessments and implementing necessary controls.
+ Installs security measures and operates software to protect systems and information infrastructure, including firewalls and data encryption programs.
+ Documents security breaches and assess the damage they cause.
+ Works with the security team to perform tests and uncover network vulnerabilities.
+ Fixes detected vulnerabilities to maintain a high-security standard.
+ Develops organizational best practices for IT security.
+ Performs penetration testing and upgrades systems to unable security software.
+ Installs and upgrades antivirus software and tests and evaluates new technology.
+ Assists with the installation of security software and understands information security management.
+ Researches security enhancements and makes recommendations to management.
+ Stays abreast of information technology trends and security standards.
+ Contributes to security awareness initiatives by creating training materials, conducting workshops, and educating employees about best security practices.
+ Maintains accurate records of security incidents, assessments, and actions taken for reporting and audit purposes.
+ Assists in the management and maintenance of security tools, including antivirus software, encryption tools, and security information and event management (SIEM) systems.
+ Participates in risk assessments to identify potential security threats, vulnerabilities, and associated risks to the organization.
+ Collaborates with cross-functional teams, IT, and other teams to ensure security measures are integrated into the organization's processes and projects.
+ Performs any other related task as required.
**Knowledge and Attributes:**
+ Good communication skills to effectively convey technical information to non-technical stakeholders.
+ Good analytical thinking and problem-solving skills to prevent hacking on a network.
+ Ability to identify and evaluate potential risks and to develop solutions.
+ Ability to identify and mitigate network vulnerabilities and explain how to avoid them.
+ Understands firewalls, proxies, SIEM, antivirus, and IDPS concepts.
+ Understands patch management with the ability to deploy patches in a timely manner whilst understanding business impact.
+ Developing proficiency with MAC and OS.
+ Familiarity with security frameworks, standards, and regulations (for example, NIST, CIS, GDPR).
+ Basic understanding of network and system architecture, protocols, and security controls.
+ Ability to analyze security incidents and assess potential risks.
+ Ability to work both independently and collaboratively in a fast-paced environment.
**Academic Qualifications and Certifications:**
+ Bachelor's degree or equivalent in information security, cybersecurity, computer science, or related.
+ Security certifications such as CompTIA Security+, Certified Information Systems Security Professional (CISSP), or Certified Information Security Manager (CISM) are advantageous.
**Required Experience:**
+ Moderate level of demonstrated experience in information security or cybersecurity, or related roles.
+ Moderate level of demonstrated experience working in a global IT organization.
+ Moderate level of demonstrated experience with computer network penetration testing and techniques.
+ Moderate level of demonstrated experience with security assessment and vulnerability scanning tools.
**Workplace type** **:**
On-site Working
**About NTT DATA**
NTT DATA is a $30+ billion trusted global innovator of business and technology services. We serve 75% of the Fortune Global 100 and are committed to helping clients innovate, optimize and transform for long-term success. We invest over $3.6 billion each year in R&D to help organizations and society move confidently and sustainably into the digital future. As a Global Top Employer, we have diverse experts in more than 50 countries and a robust partner ecosystem of established and start-up companies. Our services include business and technology consulting, data and artificial intelligence, industry solutions, as well as the development, implementation and management of applications, infrastructure, and connectivity. We are also one of the leading providers of digital and AI infrastructure in the world. NTT DATA is part of NTT Group and headquartered in Tokyo.
**Equal Opportunity Employer**
NTT DATA is proud to be an Equal Opportunity Employer with a global culture that embraces diversity. We are committed to providing an environment free of unfair discrimination and harassment. We do not discriminate based on age, race, colour, gender, sexual orientation, religion, nationality, disability, pregnancy, marital status, veteran status, or any other protected category. Join our growing global team and accelerate your career with us. Apply today.
Be The First To Know
About the latest Soc engineer Jobs in India !
Senior Security Operations Center (SOC) Engineer
Posted 11 days ago
Job Viewed
Job Description
Responsibilities:
- Manage, monitor, and optimize Security Information and Event Management (SIEM) systems.
- Configure and maintain Intrusion Detection/Prevention Systems (IDS/IPS), Endpoint Detection and Response (EDR) solutions, and other security tools.
- Analyze security alerts and logs from various sources to identify potential threats and policy violations.
- Lead incident response activities, including investigation, containment, eradication, and recovery.
- Develop and implement correlation rules, detection logic, and playbooks for the SOC.
- Integrate new data sources and security tools into the SIEM and overall SOC infrastructure.
- Stay current with the latest threat intelligence, vulnerabilities, and attack methodologies.
- Collaborate with other security teams (e.g., incident response, threat hunting, vulnerability management) to enhance security posture.
- Develop and maintain documentation for SOC procedures, tools, and processes.
- Mentor and guide junior SOC analysts.
- Perform security assessments and recommend improvements to security controls.
- Contribute to the development and execution of the incident response plan.
Qualifications:
- Proven experience in a Security Operations Center (SOC) environment, preferably in a senior or lead role.
- In-depth knowledge of SIEM technologies (e.g., Splunk, QRadar, LogRhythm), IDS/IPS, EDR, and threat intelligence platforms.
- Strong understanding of networking protocols, operating systems, and common attack vectors.
- Experience with incident response methodologies and tools.
- Proficiency in scripting languages (e.g., Python, PowerShell) for automation is a plus.
- Excellent analytical, problem-solving, and critical-thinking skills.
- Strong communication and interpersonal skills, with the ability to work effectively in a remote team.
- Relevant security certifications such as CompTIA Security+, CEH, GSEC, CISSP are desirable.
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field.
- Demonstrated ability to work independently and manage complex technical issues.
This position offers a significant opportunity to enhance an organization's security defenses from a remote location. You will be at the forefront of threat detection and response, contributing to the security resilience that protects our operations, including those serving the region of Indore, Madhya Pradesh, IN .
Lead Security Operations Center (SOC) Engineer
Posted 14 days ago
Job Viewed
Job Description
Responsibilities:
- Lead the development, implementation, and ongoing management of the Security Operations Center (SOC).
- Build, train, and mentor a team of SOC analysts and engineers.
- Oversee the deployment, configuration, and tuning of security monitoring tools, including SIEM, IDS/IPS, EDR, and threat intelligence platforms.
- Define and refine incident detection, analysis, and response procedures and workflows.
- Manage the incident response process, ensuring timely and effective resolution of security incidents.
- Develop and maintain security playbooks and standard operating procedures (SOPs).
- Monitor security alerts and events, prioritizing and escalating threats as necessary.
- Conduct threat hunting activities to proactively identify potential security risks.
- Collaborate with IT and other business units to ensure effective security integration and response.
- Analyze security incidents and provide detailed post-mortem reports, identifying root causes and recommending preventative measures.
- Stay current with the latest cybersecurity threats, vulnerabilities, and mitigation techniques.
- Develop and deliver security awareness training to internal teams.
- Bachelor's degree in Computer Science, Cybersecurity, or a related field; Master's degree preferred.
- 8+ years of experience in information security, with a minimum of 5 years focused on Security Operations Center (SOC) management or advanced SOC engineering.
- Proven experience in building and leading SOC teams and operations.
- In-depth knowledge of SIEM platforms (e.g., Splunk, QRadar, ELK Stack) and their effective use for threat detection.
- Strong understanding of network security, endpoint security, cloud security, and incident response methodologies.
- Experience with scripting languages (e.g., Python, PowerShell) for automation is highly desirable.
- Relevant security certifications such as CISSP, GSEC, GCIA, GCIH, or SC-200 are a strong advantage.
- Excellent analytical, problem-solving, and decision-making skills.
- Exceptional communication and interpersonal skills, with the ability to effectively manage and mentor a team remotely.
- Ability to work independently and under pressure in a fast-paced environment.