Talent.com
No longer accepting applications
(Immediate joiners only)Senior Cybersecurity SOC Engineer – Threat Hunting & Incident Response

(Immediate joiners only)Senior Cybersecurity SOC Engineer – Threat Hunting & Incident Response

Triune Infomatics IncMumbai, Maharashtra, India
6 days ago
Job description

Role : Senior Cybersecurity SOC Engineer – Threat Hunting & Incident Response

Working Hours : Monday to Friday, 9 AM – 5 PM PST (U.S. Business Hours)

Reporting To : Security Operations (SecOps) Leader – USA

About the Role :

We are seeking an elite Senior Cybersecurity SOC Engineer—a hands-on security expert with deep technical knowledge and proven experience in threat hunting, incident response, and SOC program maturity. This role will report directly to the SecOps Manager in India and requires someone who thrives in a collaborative environment and leads by example. If you are a true expert with Microsoft Sentinel, CrowdStrike, MDE, SOAR platforms, MITRE ATT&CK framework, APT detection, and scripting, this role offers a great opportunity to build and defend a modern SOC environment.

Please note : This is not a SOC Analyst role.

Candidates must have 7-10+ years of hands-on SOC Engineer experience with deep threat hunting and incident response expertise. Must be available to work U.S. business hours (PST timezone).

Key Responsibilities :

Threat Hunting :

Lead proactive threat hunting initiatives aligned with MITRE ATT&CK framework to identify, investigate, and mitigate advanced threats and adversary behaviors.

Use telemetry from Microsoft Sentinel, CrowdStrike Falcon, MDE, and other tools to detect anomalies and emerging attack patterns.

Develop and optimize threat hunting queries and playbooks using KQL, Python, and PowerShell.

Continuously improve detection coverage to reduce dwell time and prevent breaches.

Incident Response :

Design, implement, and maintain an effective Incident Response (IR) program and playbooks covering APTs, ransomware, insider threats, and complex multi-stage attacks.

Lead investigations on high-fidelity security alerts, conduct root cause analysis, containment, eradication, and recovery.

Utilize CrowdStrike Falcon EDR (including RTR), Microsoft Defender for Endpoint, and Tenable for comprehensive endpoint and vulnerability correlation during incidents.

Perform network forensics and packet analysis using Fortinet and Palo Alto firewall logs.

Manage cloud security incidents within Azure (Azure Sentinel, Security Center) and Microsoft 365 environments.

Coordinate with internal teams and external partners for timely, coordinated response to security incidents.

SOC Engineering & Program Maturity :

Build and mature the SOC’s SIEM and SOAR architecture, detection engineering, and response automation.

Develop advanced detection logic, hunting queries, and automation workflows.

Mentor junior SOC members and act as a technical escalation point.

Collaborate with managed SOC partners and other security teams to enhance detection and response capabilities.

Required Experience & Skills :

7+ years of hands-on experience in SOC engineering, with a strong focus on threat hunting and incident response.

Expertise in :

Microsoft Sentinel (SIEM & SOAR) and advanced KQL queries for hunting and IR

CrowdStrike Falcon EDR (RTR, IOAs, threat containment)

Microsoft Defender for Endpoint (MDE) telemetry and IR

Tenable vulnerability correlation during investigations

Fortinet and Palo Alto firewalls for forensic analysis

Microsoft Entra ID (Azure AD), SSO, Conditional Access, MFA security controls

Deep operational knowledge of MITRE ATT&CK for threat hunting, detection tuning, and adversary simulation.

Proven ability to analyze and respond to APTs, malware persistence, lateral movement, privilege escalation, command & control, and data exfiltration incidents.

Strong scripting skills (KQL, Python, PowerShell) for threat hunting automation and incident response workflows.

Experience with SOAR platforms integration and automation (Microsoft Sentinel SOAR, Palo Alto XSOAR).

Excellent communication, collaboration, and mentoring abilities.

Must be able to work U.S. business hours (PST timezone).

Preferred Certifications :

GCFA, GCIH, GCTI, CISSP, AZ-500, MS-500, or equivalent.

MITRE ATT&CK Defender (MAD), OSCP, or Red Team certifications are a strong plus.

Create a job alert for this search

Cybersecurity Engineer • Mumbai, Maharashtra, India

Related jobs
  • Promoted
Network Security Technician

Network Security Technician

Wimmer SolutionsKalyan-Dombivli, IN
At Wimmer Solutions, we believe care creates community.We work smart; we have built a reputation for results-oriented, innovative, business and technology solutions that help companies execute on t...Show moreLast updated: 19 days ago
  • Promoted
Program / Project Manager – Cybersecurity

Program / Project Manager – Cybersecurity

AiiR ResponseKalyan-Dombivli, IN
AiiR Response specializes in AI-driven breach response and extortion management, automating negotiations, investigations, and recovery to significantly reduce incident costs and response times.With...Show moreLast updated: 30+ days ago
  • Promoted
Application Security Engineer

Application Security Engineer

FoodsmartKalyan-Dombivli, IN
Foodsmart is the leading telenutrition and foodcare solution, backed by a robust network of Registered Dietitians.Our platform is designed to foster healthier food choices, drive lasting behavior c...Show moreLast updated: 17 days ago
  • Promoted
Cyber Security Specialist

Cyber Security Specialist

Tiger AdvisoryKalyan-Dombivli, IN
Tiger Advisory provides premier cybersecurity consulting services, helping clients manage risks, strengthen resilience, and achieve compliance in an ever-evolving digital landscape.Our mission is t...Show moreLast updated: 30+ days ago
  • Promoted
Sr Threat Detection Engineer

Sr Threat Detection Engineer

Insight GlobalThane, IN
Exact compensation may vary based on several factors, including skills, experience, and education.We are seeking a highly experienced Senior Detection Engineer to lead the development and optimizat...Show moreLast updated: 11 days ago
  • Promoted
Contractor Security Engineer Level 3 – GRC Tech Solutions

Contractor Security Engineer Level 3 – GRC Tech Solutions

MindlanceKalyan-Dombivli, IN
Remote Role | Contractor Security Engineer Level 3 – GRC Tech Solutions.This position focuses on enabling process clarity, automation, and efficiency while creating insights that empower our busine...Show moreLast updated: 12 days ago
  • Promoted
Lead Security Engineer

Lead Security Engineer

ArcanaThane, IN
As our Lead Security Engineer, you'll own and elevate Arcana's overall security posture - cloud, on-prem, and everything in between. You'll design and enforce policies, automate controls, and harden...Show moreLast updated: 30+ days ago
  • Promoted
Security & Compliance IT Specialist / Engineer

Security & Compliance IT Specialist / Engineer

aecc - digital innovation hubThane, IN
Support the organisation’s security posture through monitoring, incident response coordination, and compliance activities. Work closely with IT operations, engineering, and leadership to ensure syst...Show moreLast updated: 9 days ago
  • Promoted
Network Security Engineer

Network Security Engineer

Tata Consultancy ServicesMumbai, Maharashtra, India
Network security or a similar role.Certification in Fortigate, Palo Alto, Checkpoint.Hands-on experience with firewalls, IDS / IPS, VPN, NAC, and SIEM tools. Strong understanding of TCP / IP, routing pr...Show moreLast updated: 29 days ago
  • Promoted
Cyber Threat Investigator

Cyber Threat Investigator

ColorTokens Inc.Kalyan-Dombivli, IN
At ColorTokens, we empower businesses to stay operational and resilient in an increasingly complex cybersecurity landscape. Breaches happen—but with our cutting-edge ColorTokens Xshield™ platform, c...Show moreLast updated: 12 days ago
  • Promoted
L3 Server Engineer – Major Incident Management

L3 Server Engineer – Major Incident Management

Nextbridge IT SolutionsKalyan-Dombivli, IN
Nextbridge IT Solutions is a US-based IT solution firm specializing in connecting exceptional talent with organizations driving transformation in infrastructure, cloud, and emerging technologies.We...Show moreLast updated: 30+ days ago
  • Promoted
Cyber Security Architect

Cyber Security Architect

Tata Consultancy ServicesMumbai, Maharashtra, India
We are looking for Expert level technical experience with Cyber Security Skills.Required Infrastructure Skills : .Own the design and implementation phases of new and innovative Security architecture...Show moreLast updated: 16 days ago
  • Promoted
Oracle HCM Cloud - Security Functional Consultant

Oracle HCM Cloud - Security Functional Consultant

Affintrix TechnologiesThane, IN
Candidates should have a minimum of 8-10 years of experience in Oracle HCM Cloud and must be able to join us immediately or within 15days. Extensive knowledge of Security configuration using Securit...Show moreLast updated: 17 days ago
  • Promoted
Security Engineer (Detection and Response)

Security Engineer (Detection and Response)

FoodsmartKalyan-Dombivli, IN
Foodsmart is the leading telenutrition and foodcare solution, backed by a robust network of Registered Dietitians.Our platform is designed to foster healthier food choices, drive lasting behavior c...Show moreLast updated: 17 days ago
  • Promoted
Principal Identity and Access Management Engineer

Principal Identity and Access Management Engineer

AutodeskKalyan-Dombivli, IN
At Autodesk, our Cyber Defense - IAM team is dedicated to securing and enhancing the organization’s digital ecosystem We lead impactful initiatives, such as strengthening enterprise identity standa...Show moreLast updated: 9 days ago
  • Promoted
L3 Network Security Engineer - Palo Alto Firewall

L3 Network Security Engineer - Palo Alto Firewall

ConsultBae India Private LimitedMumbai
Position : Network Security Engineer - L3 Experience : 10-15 Years Location : Mumbai, India Show moreLast updated: 30+ days ago
  • Promoted
Senior Security Architect

Senior Security Architect

DautomThane, IN
Role : Senior Security Architect.Location : Offshore, India (Remote).You’ll drive end-to-end security design across platforms, lead threat modeling and control gap assessments, oversee IT security r...Show moreLast updated: 9 days ago
  • Promoted
L2 Network Security Engineer

L2 Network Security Engineer

Zeal ConsultantsNavi Mumbai
Description : Role : PROXY - L2 Experience : 3 to 6 years of experience working on Network Security Location : MumbaiShow moreLast updated: 27 days ago