Talent.com
This job offer is not available in your country.
(Immediate joiners only)Senior Cybersecurity SOC Engineer – Threat Hunting & Incident Response

(Immediate joiners only)Senior Cybersecurity SOC Engineer – Threat Hunting & Incident Response

Triune Infomatics Inckottayam, kerala, in
26 days ago
Job description

Role : Senior Cybersecurity SOC Engineer – Threat Hunting & Incident Response

Working Hours : Monday to Friday, 9 AM – 5 PM PST (U.S. Business Hours)

Reporting To : Security Operations (SecOps) Leader – USA

About the Role : We are seeking an elite Senior Cybersecurity SOC Engineer—a hands-on security expert with deep technical knowledge and proven experience in threat hunting, incident response, and SOC program maturity. This role will report directly to the SecOps Manager in India and requires someone who thrives in a collaborative environment and leads by example. If you are a true expert with Microsoft Sentinel, CrowdStrike, MDE, SOAR platforms, MITRE ATT&CK framework, APT detection, and scripting, this role offers a great opportunity to build and defend a modern SOC environment.

Please note : This is not a SOC Analyst role. Candidates must have 7-10+ years of hands-on SOC Engineer experience with deep threat hunting and incident response expertise. Must be available to work U.S. business hours (PST timezone).

Key Responsibilities :

  • Threat Hunting :
  • Lead proactive threat hunting initiatives aligned with MITRE ATT&CK framework to identify, investigate, and mitigate advanced threats and adversary behaviors.
  • Use telemetry from Microsoft Sentinel, CrowdStrike Falcon, MDE, and other tools to detect anomalies and emerging attack patterns.
  • Develop and optimize threat hunting queries and playbooks using KQL, Python, and PowerShell.
  • Continuously improve detection coverage to reduce dwell time and prevent breaches.
  • Incident Response :
  • Design, implement, and maintain an effective Incident Response (IR) program and playbooks covering APTs, ransomware, insider threats, and complex multi-stage attacks.
  • Lead investigations on high-fidelity security alerts, conduct root cause analysis, containment, eradication, and recovery.
  • Utilize CrowdStrike Falcon EDR (including RTR), Microsoft Defender for Endpoint, and Tenable for comprehensive endpoint and vulnerability correlation during incidents.
  • Perform network forensics and packet analysis using Fortinet and Palo Alto firewall logs.
  • Manage cloud security incidents within Azure (Azure Sentinel, Security Center) and Microsoft 365 environments.
  • Coordinate with internal teams and external partners for timely, coordinated response to security incidents.
  • SOC Engineering & Program Maturity :
  • Build and mature the SOC’s SIEM and SOAR architecture, detection engineering, and response automation.
  • Develop advanced detection logic, hunting queries, and automation workflows.
  • Mentor junior SOC members and act as a technical escalation point.
  • Collaborate with managed SOC partners and other security teams to enhance detection and response capabilities.

Required Experience & Skills :

  • 7+ years of hands-on experience in SOC engineering, with a strong focus on threat hunting and incident response.
  • Expertise in :

  • Microsoft Sentinel (SIEM & SOAR) and advanced KQL queries for hunting and IR
  • CrowdStrike Falcon EDR (RTR, IOAs, threat containment)
  • Microsoft Defender for Endpoint (MDE) telemetry and IR
  • Tenable vulnerability correlation during investigations
  • Fortinet and Palo Alto firewalls for forensic analysis
  • Microsoft Entra ID (Azure AD), SSO, Conditional Access, MFA security controls
  • Deep operational knowledge of MITRE ATT&CK for threat hunting, detection tuning, and adversary simulation.
  • Proven ability to analyze and respond to APTs, malware persistence, lateral movement, privilege escalation, command & control, and data exfiltration incidents.
  • Strong scripting skills (KQL, Python, PowerShell) for threat hunting automation and incident response workflows.
  • Experience with SOAR platforms integration and automation (Microsoft Sentinel SOAR, Palo Alto XSOAR).
  • Excellent communication, collaboration, and mentoring abilities.
  • Must be able to work U.S. business hours (PST timezone).
  • Preferred Certifications :

  • GCFA, GCIH, GCTI, CISSP, AZ-500, MS-500, or equivalent.
  • MITRE ATT&CK Defender (MAD), OSCP, or Red Team certifications are a strong plus.
  • Create a job alert for this search

    Cybersecurity Engineer • kottayam, kerala, in

    Related jobs
    • Promoted
    L2 Security Analyst- SOC Advanced

    L2 Security Analyst- SOC Advanced

    Art Technology and SoftwareKochi, Kerala, India
    Job Title : Infosec L2 Security Analyst (Security Operations Center - Advanced).Location : From Kochi Office (Onsite).The L2 Security Analyst is responsible for performing advanced incident analysis,...Show moreLast updated: 3 days ago
    • Promoted
    Network Security Engineer Operations (Palo Alto + Zscaler + F5)-Hybrid / Bengaluru / Gurgaon

    Network Security Engineer Operations (Palo Alto + Zscaler + F5)-Hybrid / Bengaluru / Gurgaon

    IHAlappuzha, IN
    Degree holder in Computer Engineering, Telecommunications, or related disciplines.Be considered as a network security expert, with deep subject matter expertise in a number of technologies and a br...Show moreLast updated: 1 day ago
    • Promoted
    SOC / NOC Team Lead (Tier-2) – MSSP Operations (India-Based, Full-Time)

    SOC / NOC Team Lead (Tier-2) – MSSP Operations (India-Based, Full-Time)

    Symosis SecurityKottayam, IN
    Symosis is a cybersecurity consulting firm purpose-built for the AI-native, cloud-first era.We help public-sector and enterprise clients mature their security operations through managed services, o...Show moreLast updated: 3 days ago
    • Promoted
    Security Operations Center Analyst

    Security Operations Center Analyst

    Soffit Infrastructure Services (P) LtdKochi, Kerala, India
    Security Operation Centre (SOC).Information Security Analyst are the first level responsible for ensuring the protection of digital assets from unauthorized access, identify security incidents and ...Show moreLast updated: 23 days ago
    • Promoted
    Senior DevOps Enginner

    Senior DevOps Enginner

    GlowingbudAlappuzha, IN
    Glowingbud is a rapidly growing eSIM services platform that simplifies connectivity with powerful APIs, robust B2B and B2C interfaces, and seamless integrations with Telna.Our platform enables glob...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    Network Security Engineer (Azure & On-premise, Remote Job)

    Network Security Engineer (Azure & On-premise, Remote Job)

    Client of Prasha Consultancy Services Private LimitedKochi, IN
    Remote
    Immediate or Early Joiners Only.A US Based IT MNC is looking for Network Engineer for one of their Banking Client.Client is looking for an expert in Manage / Support – firewalls, Checkpoint security,...Show moreLast updated: 2 hours ago
    • Promoted
    Incident Manager

    Incident Manager

    TalentojKochi, IN
    Act as the primary point of contact for major incidents and escalations, ensuring rapid response and communication across technical and business teams. Lead and coordinate incident resolution effort...Show moreLast updated: 30+ days ago
    • Promoted
    CyberArk Engineer

    CyberArk Engineer

    Next VenturesAlappuzha, IN
    Job Opportunity : CyberArk Engineer.Contract / Permanent / Fixed Term.Privileged Access Management (PAM) implementations using CyberArk technologies. CyberArk Core-PAS, AAM, PTA, HTML5 Gateway.AUTOIT...Show moreLast updated: 3 days ago
    • Promoted
    Transaction Risk Executive – E-commerce(L1) (2 to 5 Years)

    Transaction Risk Executive – E-commerce(L1) (2 to 5 Years)

    AIMLEAPKottayam, IN
    Transaction Risk Executive – E-commerce (L1) (2 to 5 Years).Commerce fraud or risk operations.Review transactions flagged as potentially high-risk using. IP, geo, velocity, and account behavior).ATO...Show moreLast updated: 1 day ago
    • Promoted
    Cyber Security Specialist

    Cyber Security Specialist

    Tiger AdvisoryAlappuzha, IN
    Tiger Advisory provides premier cybersecurity consulting services, helping clients manage risks, strengthen resilience, and achieve compliance in an ever-evolving digital landscape.Our mission is t...Show moreLast updated: 14 days ago
    • Promoted
    L3 Server Engineer – Major Incident Management

    L3 Server Engineer – Major Incident Management

    Nextbridge IT SolutionsKottayam, IN
    Nextbridge IT Solutions is a US-based IT solution firm specializing in connecting exceptional talent with organizations driving transformation in infrastructure, cloud, and emerging technologies.We...Show moreLast updated: 26 days ago
    • Promoted
    Senior DevOps / Platform Engineer (Contract)

    Senior DevOps / Platform Engineer (Contract)

    nineDots.ioAlappuzha, IN
    Senior DevOps / Platform Engineer (Contract) – FinTech.Help build and scale backend infrastructure for a financial services platform in the Middle East. You’ll join a team working to strengthen AWS ar...Show moreLast updated: 30+ days ago
    • Promoted
    (Immediate joiners only)Senior Cybersecurity SOC Engineer – Threat Hunting & Incident Response

    (Immediate joiners only)Senior Cybersecurity SOC Engineer – Threat Hunting & Incident Response

    Triune Infomatics Incmount, kerala, in
    Role : Senior Cybersecurity SOC Engineer – Threat Hunting & Incident Response.Working Hours : Monday to Friday, 9 AM – 5 PM PST (U. Reporting To : Security Operations (SecOps) Leader – USA.We are seeki...Show moreLast updated: 26 days ago
    • Promoted
    Fortinet with Azure Migration

    Fortinet with Azure Migration

    Sonata SoftwareAlappuzha, IN
    Azure Network Security Engineer.The ideal candidate will have strong experience in designing, implementing, and migrating on-premise networks into. Design and implement secure and scalable.DNS serve...Show moreLast updated: 3 days ago
    • Promoted
    Senior Cloud Engineer

    Senior Cloud Engineer

    AptonetKochi, IN
    Senior Cloud Developer – Offshore (India | Remote).Contract Role | Multi-Cloud Security Projects | Cutting-Edge AI & Automation. This role offers the opportunity to work on.Python preferred; also Ja...Show moreLast updated: 14 days ago
    • Promoted
    Security Engineer (Detection and Response)

    Security Engineer (Detection and Response)

    FoodsmartAlappuzha, IN
    Foodsmart is the leading telenutrition and foodcare solution, backed by a robust network of Registered Dietitians.Our platform is designed to foster healthier food choices, drive lasting behavior c...Show moreLast updated: 1 day ago
    • Promoted
    Cyber Security Engineer

    Cyber Security Engineer

    Paramount Computer SystemsKottayam, IN
    Identity Governance and Administration (IGA).The role involves designing, implementing, and supporting enterprise-grade IGA solutions to ensure secure, efficient, and compliant identity lifecycle m...Show moreLast updated: 14 days ago
    • Promoted
    Vulnerability Management Specialist_9+years_Remote

    Vulnerability Management Specialist_9+years_Remote

    Tekgence IncAlappuzha, IN
    Remote
    Job Title : Vulnerability Management Specialist (AWS & Wiz).Duration : 12+ months , extendable.We are seeking a skilled Vulnerability Management Specialist with hands-on experience in AWS environment...Show moreLast updated: 3 days ago
    • Promoted
    Lead Security Engineer

    Lead Security Engineer

    ArcanaKochi, IN
    As our Lead Security Engineer, you'll own and elevate Arcana's overall security posture - cloud, on-prem, and everything in between. You'll design and enforce policies, automate controls, and harden...Show moreLast updated: 30+ days ago
    • Promoted
    Workday Security System Analyst

    Workday Security System Analyst

    AvalaraKottayam, IN
    Avalara is an AI-first company.We expect every engineer, manager, and to actively leverage AI to enhance productivity, quality, innovation, and customer value. AI is embedded in our workflows, and p...Show moreLast updated: 3 days ago