Job Description – Information Security Analyst (Defensive Security)
Location : Thane, Maharashtra, India (On-site)
Employment Type : Third-Party Payroll
Location - Thane
Client- Aditya Birla Group
Role summary
We are seeking a hands-on SOC Infra Security Engineer to operate, maintain, govern perimeter and endpoint security technologies (NGFW, EDR, DLP, Secure Proxy, VPN, IPS / IDS and policy automation). This is an operational role you will drive day-to-day activities, tune controls, enforce policies, support incident response, and work under the direction of the SOC Infra Security manager to ensure stable and secure service delivery.
Key responsibilities
- Operate and monitor perimeter and endpoint security tools (NGFW, EDR, DLP, Secure Proxy, VPN, IPS / IDS).
- Implement and validate routine firewall / NGFW rule changes and access requests following change governance.
- Support periodic audits and compliance requests by providing logs, reports and evidence of controls.
- Perform periodic rule reviews and housekeeping to remove obsolete or risky rules (under guidance).
- Tune EDR / DLP / IPS detections to reduce false positives and improve signal-to-noise.
- Ability to present updates and respond to business queries during weekly and monthly review calls with stakeholders and management.
- Maintain and operate security policy automation / configuration management tools (apply templates, run validations, assist in automation workflows).
- Maintain runbooks, standard operating procedures (SOPs), and accurate configuration documentation.
- Coordinate with network, cloud and vendor teams for troubleshooting, deployments, and capacity or outage escalations.
- Participate in patching / upgrade activities for security appliances and validate postpatch functionality.
- Assist in PoC of new security features and capture functional feedback.
- Participate in on-call rotation and provide timely updates during incidents.
- Provide guidance to junior operators and share knowledge on tooling and playbooks.
Qualifications
Bachelor’s degree in Computer Science, Information Technology, or related field.Security certifications preferred : CISSP, CISM, CEH, CCNA Security, or equivalent .Good to Have
Exposure to cloud security (AWS / Azure security controls).Familiarity with data security solutions and web security platforms .Experience working with global SOC operations .