Talent.com
This job offer is not available in your country.
(Immediate joiners only)Senior Cybersecurity SOC Engineer – Threat Hunting & Incident Response

(Immediate joiners only)Senior Cybersecurity SOC Engineer – Threat Hunting & Incident Response

Triune Infomatics Incmumbai, maharashtra, in
8 days ago
Job description

Role : Senior Cybersecurity SOC Engineer – Threat Hunting & Incident Response

Working Hours : Monday to Friday, 9 AM – 5 PM PST (U.S. Business Hours)

Reporting To : Security Operations (SecOps) Leader – USA

About the Role : We are seeking an elite Senior Cybersecurity SOC Engineer—a hands-on security expert with deep technical knowledge and proven experience in threat hunting, incident response, and SOC program maturity. This role will report directly to the SecOps Manager in India and requires someone who thrives in a collaborative environment and leads by example. If you are a true expert with Microsoft Sentinel, CrowdStrike, MDE, SOAR platforms, MITRE ATT&CK framework, APT detection, and scripting, this role offers a great opportunity to build and defend a modern SOC environment.

Please note : This is not a SOC Analyst role. Candidates must have 7-10+ years of hands-on SOC Engineer experience with deep threat hunting and incident response expertise. Must be available to work U.S. business hours (PST timezone).

Key Responsibilities :

  • Threat Hunting :
  • Lead proactive threat hunting initiatives aligned with MITRE ATT&CK framework to identify, investigate, and mitigate advanced threats and adversary behaviors.
  • Use telemetry from Microsoft Sentinel, CrowdStrike Falcon, MDE, and other tools to detect anomalies and emerging attack patterns.
  • Develop and optimize threat hunting queries and playbooks using KQL, Python, and PowerShell.
  • Continuously improve detection coverage to reduce dwell time and prevent breaches.
  • Incident Response :
  • Design, implement, and maintain an effective Incident Response (IR) program and playbooks covering APTs, ransomware, insider threats, and complex multi-stage attacks.
  • Lead investigations on high-fidelity security alerts, conduct root cause analysis, containment, eradication, and recovery.
  • Utilize CrowdStrike Falcon EDR (including RTR), Microsoft Defender for Endpoint, and Tenable for comprehensive endpoint and vulnerability correlation during incidents.
  • Perform network forensics and packet analysis using Fortinet and Palo Alto firewall logs.
  • Manage cloud security incidents within Azure (Azure Sentinel, Security Center) and Microsoft 365 environments.
  • Coordinate with internal teams and external partners for timely, coordinated response to security incidents.
  • SOC Engineering & Program Maturity :
  • Build and mature the SOC’s SIEM and SOAR architecture, detection engineering, and response automation.
  • Develop advanced detection logic, hunting queries, and automation workflows.
  • Mentor junior SOC members and act as a technical escalation point.
  • Collaborate with managed SOC partners and other security teams to enhance detection and response capabilities.

Required Experience & Skills :

  • 7+ years of hands-on experience in SOC engineering, with a strong focus on threat hunting and incident response.
  • Expertise in :

  • Microsoft Sentinel (SIEM & SOAR) and advanced KQL queries for hunting and IR
  • CrowdStrike Falcon EDR (RTR, IOAs, threat containment)
  • Microsoft Defender for Endpoint (MDE) telemetry and IR
  • Tenable vulnerability correlation during investigations
  • Fortinet and Palo Alto firewalls for forensic analysis
  • Microsoft Entra ID (Azure AD), SSO, Conditional Access, MFA security controls
  • Deep operational knowledge of MITRE ATT&CK for threat hunting, detection tuning, and adversary simulation.
  • Proven ability to analyze and respond to APTs, malware persistence, lateral movement, privilege escalation, command & control, and data exfiltration incidents.
  • Strong scripting skills (KQL, Python, PowerShell) for threat hunting automation and incident response workflows.
  • Experience with SOAR platforms integration and automation (Microsoft Sentinel SOAR, Palo Alto XSOAR).
  • Excellent communication, collaboration, and mentoring abilities.
  • Must be able to work U.S. business hours (PST timezone).
  • Preferred Certifications :

  • GCFA, GCIH, GCTI, CISSP, AZ-500, MS-500, or equivalent.
  • MITRE ATT&CK Defender (MAD), OSCP, or Red Team certifications are a strong plus.
  • Create a job alert for this search

    Cybersecurity Engineer • mumbai, maharashtra, in

    Related jobs
    • Promoted
    Information Security Analyst- Urgent-Thane

    Information Security Analyst- Urgent-Thane

    Aditya Birla GroupThane, Maharashtra, India
    Job Description – Information Security Analyst (Defensive Security).Thane, Maharashtra, India (On-site).Job Description – Senior Information Security Analyst (SOC Function).Senior Information Secur...Show moreLast updated: 7 days ago
    • Promoted
    Cloud Security Engineer

    Cloud Security Engineer

    AquanowKalyan-Dombivli, IN
    Aquanow, a leading infrastructure and liquidity provider that provides institutional and enterprise application platforms for digital assets, is looking for a Cloud Security Engineer to join our te...Show moreLast updated: 26 days ago
    • Promoted
    Practice Lead

    Practice Lead

    Network Intelligencethane, maharashtra, in
    Strategic Leadership & Practice Development.MDR, CES, and MSSP lines of business (LOB).Security Operations & Threat Management. Security Operations Center (SOC).SIEM, EDR, SOAR, and threat intellige...Show moreLast updated: 26 days ago
    • Promoted
    Technical Consultant – Cybersecurity

    Technical Consultant – Cybersecurity

    Embee SoftwareMumbai, Maharashtra, India
    Job Description – Technical Consultant – Cybersecurity.The Deployment Engineer – Cybersecurity will play a key role in delivering Embee’s cybersecurity projects by applying deep technical expertise...Show moreLast updated: 18 days ago
    • Promoted
    Senior DevOps Security Engineer

    Senior DevOps Security Engineer

    JRD SystemsMumbai, IN
    We are seeking a highly skilled Senior DevOps / Platform Engineer to join our dynamic team.The ideal candidate will have extensive experience in managing and automating infrastructure, improving depl...Show moreLast updated: 4 days ago
    • Promoted
    • New!
    Senior Security Engineer

    Senior Security Engineer

    TAC Securitymumbai, maharashtra, in
    As a Security Engineer - VAPT, you will be responsible for conducting comprehensive security assessments, identifying vulnerabilities, and implementing effective remediation strategies.Leveraging y...Show moreLast updated: 4 hours ago
    • Promoted
    Cyber Security Engineer

    Cyber Security Engineer

    YASH Technologiesthane, maharashtra, in
    The AppSec Engineer is a specialized cybersecurity role focused on DevOps engineering principles.While the expectation of their sibling role – SAE – is to have practical working security knowledge,...Show moreLast updated: 24 days ago
    • Promoted
    DevSecOps / AppSecOps Staff Engineer

    DevSecOps / AppSecOps Staff Engineer

    First American (India)thane, maharashtra, in
    Our people-first culture empowers bold thinkers and passionate technologists to solve real-world challenges through scalable architecture and innovative design. If you're driven by impact, thrive in...Show moreLast updated: 8 days ago
    • Promoted
    Sr. CyberArk Engineer

    Sr. CyberArk Engineer

    CyberSolveKalyan-Dombivli, IN
    CyberSolve is a fastest growing IAM Specialist firm in the US with aspirations of becoming the world's largest company in the IAM space. CyberSolve’s 350+ specialists solve interesting puzzles in IG...Show moreLast updated: 16 days ago
    • Promoted
    Cyber Security Engineer

    Cyber Security Engineer

    Vista Applied Solutions Group IncThane, IN
    Hiring Sr Cyber Security Engineer | Long Term Contract | Remote.Job Title : Sr Cyber Security Engineer – Product Security. Location : Mostly Indian business hours, some cross over with US and EU teams...Show moreLast updated: 8 days ago
    • Promoted
    Cyber Security Engineer - Vulnerability & Risk Management

    Cyber Security Engineer - Vulnerability & Risk Management

    BDX INDIA PRIVATE LIMITEDNavi Mumbai
    Company Overview : BDx is Asias fastest-growing data center platform, delivering colocation, build-to-suit, managed services, and interconnection solutions for hyper...Show moreLast updated: 30+ days ago
    • Promoted
    Security Lead

    Security Lead

    Eventus Securitynavi mumbai, maharashtra, in
    Job Title : Security Lead (SOC).Location : Ahmedabad and Navi Mumbai.Responsibility Areas – Security Lead (L3) – SOC.Lead high-priority security investigations and incident response activities, ensur...Show moreLast updated: 30+ days ago
    • Promoted
    SOC Analyst - Cyber Security

    SOC Analyst - Cyber Security

    Xanika InfotechMumbai
    Job Summary : We are seeking a skilled and experienced Cybersecurity Analyst with hands-on expertise in DLP, EDR, and security device management.T...Show moreLast updated: 14 days ago
    • Promoted
    Cyber Security Presales Head

    Cyber Security Presales Head

    Antal InternationalMumbai
    Senior Cybersecurity Presales Consultant We are seeking an experienced Senior Cybersecurity Presales Consultant to lead enterprise-level solution design and pre-sales...Show moreLast updated: 30+ days ago
    • Promoted
    Cybersecurity TWG Lead

    Cybersecurity TWG Lead

    Job Listings by BabblebotsMumbai, Maharashtra, India
    Experience : 6-10 years of experience.To establish, lead, and manage the Cybersecurity Working Group, ensuring group- wide adoption of robust security policies, standards, and practices while aligni...Show moreLast updated: 3 days ago
    • Promoted
    • New!
    SOC Head

    SOC Head

    IDFC FIRST Bankmumbai, maharashtra, in
    Responsible for managing the end-to-end operations and strategic evolution of our Security Operations Centre (SOC), Threat Hunting & Incident Response, Threat Intelligence, Digital Forensics, and S...Show moreLast updated: 8 hours ago
    • Promoted
    • New!
    Security Engineer (Remote)

    Security Engineer (Remote)

    DigiHelic Solutions Pvt. Ltd.thane, maharashtra, in
    Remote
    We are looking for a proactive and experienced.In this role, you will design, implement, and maintain.The ideal candidate will have deep. Monitor cloud environments for.AWS-native and third-party to...Show moreLast updated: 8 hours ago
    • Promoted
    Jr. Incident Responder

    Jr. Incident Responder

    Eventus SecurityNavi Mumbai, Maharashtra, India
    Job Location : Vashi, Navi Mumbai.Cybersecurity professional specializing in Digital Forensics & Incident Response with hands-on experience in Windows and Linux forensics, malware analysis, and thre...Show moreLast updated: 6 days ago
    • Promoted
    • New!
    IAM Senior Engineer – CyberArk / Privileged Access Management (PAM)

    IAM Senior Engineer – CyberArk / Privileged Access Management (PAM)

    PerfictThane, IN
    The IAM Senior Engineer will be responsible for the service design, build, deploy, and support of key elements of the Privileged Access Management (PAM) platform built leveraging the CyberArk Cloud...Show moreLast updated: 11 hours ago
    • Promoted
    SOC SME

    SOC SME

    WTW GLOBAL DELIVERY AND SOLUTIONS INDIA PVT LTD.Mumbai
    Summary of Role : Willis Towers Watson (WTW) Technology Compliance SOC SME will ensure that the organization meets its regulatory obligations through application of a...Show moreLast updated: 7 days ago