Talent.com
No longer accepting applications
(Immediate joiners only)Senior Cybersecurity SOC Engineer – Threat Hunting & Incident Response

(Immediate joiners only)Senior Cybersecurity SOC Engineer – Threat Hunting & Incident Response

Triune Infomatics IncLudhiana, Punjab, India
2 days ago
Job description

Role : Senior Cybersecurity SOC Engineer – Threat Hunting & Incident Response

Working Hours : Monday to Friday, 9 AM – 5 PM PST (U.S. Business Hours)

Reporting To : Security Operations (SecOps) Leader – USA

About the Role :

We are seeking an elite Senior Cybersecurity SOC Engineer—a hands-on security expert with deep technical knowledge and proven experience in threat hunting, incident response, and SOC program maturity. This role will report directly to the SecOps Manager in India and requires someone who thrives in a collaborative environment and leads by example. If you are a true expert with Microsoft Sentinel, CrowdStrike, MDE, SOAR platforms, MITRE ATT&CK framework, APT detection, and scripting, this role offers a great opportunity to build and defend a modern SOC environment.

Please note : This is not a SOC Analyst role.

Candidates must have 7-10+ years of hands-on SOC Engineer experience with deep threat hunting and incident response expertise. Must be available to work U.S. business hours (PST timezone).

Key Responsibilities :

Threat Hunting :

Lead proactive threat hunting initiatives aligned with MITRE ATT&CK framework to identify, investigate, and mitigate advanced threats and adversary behaviors.

Use telemetry from Microsoft Sentinel, CrowdStrike Falcon, MDE, and other tools to detect anomalies and emerging attack patterns.

Develop and optimize threat hunting queries and playbooks using KQL, Python, and PowerShell.

Continuously improve detection coverage to reduce dwell time and prevent breaches.

Incident Response :

Design, implement, and maintain an effective Incident Response (IR) program and playbooks covering APTs, ransomware, insider threats, and complex multi-stage attacks.

Lead investigations on high-fidelity security alerts, conduct root cause analysis, containment, eradication, and recovery.

Utilize CrowdStrike Falcon EDR (including RTR), Microsoft Defender for Endpoint, and Tenable for comprehensive endpoint and vulnerability correlation during incidents.

Perform network forensics and packet analysis using Fortinet and Palo Alto firewall logs.

Manage cloud security incidents within Azure (Azure Sentinel, Security Center) and Microsoft 365 environments.

Coordinate with internal teams and external partners for timely, coordinated response to security incidents.

SOC Engineering & Program Maturity :

Build and mature the SOC’s SIEM and SOAR architecture, detection engineering, and response automation.

Develop advanced detection logic, hunting queries, and automation workflows.

Mentor junior SOC members and act as a technical escalation point.

Collaborate with managed SOC partners and other security teams to enhance detection and response capabilities.

Required Experience & Skills :

7+ years of hands-on experience in SOC engineering, with a strong focus on threat hunting and incident response.

Expertise in :

Microsoft Sentinel (SIEM & SOAR) and advanced KQL queries for hunting and IR

CrowdStrike Falcon EDR (RTR, IOAs, threat containment)

Microsoft Defender for Endpoint (MDE) telemetry and IR

Tenable vulnerability correlation during investigations

Fortinet and Palo Alto firewalls for forensic analysis

Microsoft Entra ID (Azure AD), SSO, Conditional Access, MFA security controls

Deep operational knowledge of MITRE ATT&CK for threat hunting, detection tuning, and adversary simulation.

Proven ability to analyze and respond to APTs, malware persistence, lateral movement, privilege escalation, command & control, and data exfiltration incidents.

Strong scripting skills (KQL, Python, PowerShell) for threat hunting automation and incident response workflows.

Experience with SOAR platforms integration and automation (Microsoft Sentinel SOAR, Palo Alto XSOAR).

Excellent communication, collaboration, and mentoring abilities.

Must be able to work U.S. business hours (PST timezone).

Preferred Certifications :

GCFA, GCIH, GCTI, CISSP, AZ-500, MS-500, or equivalent.

MITRE ATT&CK Defender (MAD), OSCP, or Red Team certifications are a strong plus.

Create a job alert for this search

Cybersecurity Engineer • Ludhiana, Punjab, India

Related jobs
  • Promoted
Senior Security Engineer

Senior Security Engineer

CBTSludhiana, India
Senior level roles as IT Security Architect, IT Security Engineer, IT Security Auditor, Cyber-Security Analyst, Cyber-Intelligence Analyst. Certifications, Accreditations, Licenses.One or more of th...Show moreLast updated: 7 days ago
  • Promoted
DevOps Engineer

DevOps Engineer

IntraEdgeludhiana, India
Seeking a skilled DevOps Engineer with strong expertise in Amazon Web Services (AWS) to join the engineering team.In this role, you will design, implement, and maintain infrastructure that enables ...Show moreLast updated: 5 days ago
  • Promoted
Lead Network & Security Engineer (Hyperscalers – OCI / GCP)

Lead Network & Security Engineer (Hyperscalers – OCI / GCP)

Cloud4C Servicesludhiana, India
Gartner’s Magic Quadrant (2021), is a leading automation-driven Cloud Managed Services Provider (MSP).We specialize in multi-cloud migration, management, and disaster recovery with zero data loss g...Show moreLast updated: 8 days ago
  • Promoted
Senior Consultant

Senior Consultant

Progliteludhiana, India
We are seeking a motivated and skilled.Network / Cloud / Security Engineer.AWS, Google Cloud Platform (GCP), Cisco Meraki, and Palo Alto firewalls. The ideal candidate will be responsible for design...Show moreLast updated: 9 days ago
  • Promoted
Sr Threat Detection Engineer

Sr Threat Detection Engineer

Insight Globalludhiana, India
Exact compensation may vary based on several factors, including skills, experience, and education.Benefit packages for this role will start on the 31st day of employment and include medical, dental...Show moreLast updated: 7 days ago
  • Promoted
L3 Server Engineer – Major Incident Management

L3 Server Engineer – Major Incident Management

Nextbridge IT Solutionsludhiana, India
Nextbridge IT Solutions is a US-based IT solution firm specializing in connecting exceptional talent with organizations driving transformation in infrastructure, cloud, and emerging technologies.We...Show moreLast updated: 9 days ago
  • Promoted
Senior DevOps Engineer

Senior DevOps Engineer

Elestioludhiana, India
Elestio is growing, and we’re looking for a DevOps Expert to join our team!.To support our fast growth, we’re looking for someone passionate about DevOps, open-source technologies, and customer suc...Show moreLast updated: 9 days ago
  • Promoted
Lead Network Engineer (Azure & On-premise, Network Security, 8+ years Exp, Remote Job)

Lead Network Engineer (Azure & On-premise, Network Security, 8+ years Exp, Remote Job)

Client of Prasha Consultancy Services Private Limitedludhiana, India
Remote
Immediate or Early Joiners Only.A US Based IT MNC is looking for Lead Network Engineer for one of their Banking Client.Client is looking for an expert in Manage / Support – firewalls, Checkpoint secu...Show moreLast updated: 9 days ago
  • Promoted
Sr. Lead - Cloud Security

Sr. Lead - Cloud Security

Sycamore Informatics Inc.ludhiana, India
Cloud security framework; Strong scripting skills with PowerShell and.Solid understanding of version control tools, particularly Git. Experience with cloud platforms, including AWS, Azure and GCP.Pr...Show moreLast updated: 7 days ago
  • Promoted
Security & Compliance IT Specialist / Engineer

Security & Compliance IT Specialist / Engineer

aecc - digital innovation hubludhiana, India
Support the organisation’s security posture through monitoring, incident response coordination, and compliance activities. Work closely with IT operations, engineering, and leadership to ensure syst...Show moreLast updated: 5 days ago
  • Promoted
TechOps Engineer

TechOps Engineer

Aquanowludhiana, India
Aquanow is a trading and technology company powering the next generation of financial services.We’re at the forefront of the rapidly evolving digital asset space, empowering businesses to navigate ...Show moreLast updated: 9 days ago
  • Promoted
Actimize Developer

Actimize Developer

Genpactludhiana, India
Inviting applications for the role of Actimize Developer.Implement, configure, and customize Actimize IFM (Integrated Fraud Management) and SAM (Suspicious Activity Monitoring) solutions.Develop an...Show moreLast updated: 9 days ago
  • Promoted
DevOps / Platform Engineer

DevOps / Platform Engineer

iVedha Inc.ludhiana, India
Hiring a seasoned DevOps / Platform Engineer to drive automation, platform reliability, and robust.Design, deploy, and manage CI / CD pipelines and infrastructure automation, leveraging AI for.Implemen...Show moreLast updated: 9 days ago
  • Promoted
Contractor Security Engineer Level 3 – GRC Tech Solutions

Contractor Security Engineer Level 3 – GRC Tech Solutions

Mindlanceludhiana, India
Remote Role | Contractor Security Engineer Level 3 – GRC Tech Solutions.This position focuses on enabling process clarity, automation, and efficiency while creating insights that empower our busine...Show moreLast updated: 8 days ago
  • Promoted
Senior MLOps Engineer

Senior MLOps Engineer

Mitchell Martin Inc.ludhiana, India
Include, but are not limited to, the following : .Own productionizing models—from tracked experiments to governed releases—ensuring resilient services with clear SLOs, runbooks, and fast, safe rollba...Show moreLast updated: 9 days ago
  • Promoted
Oracle Cloud Security and Risk Management (RMC) Consultant

Oracle Cloud Security and Risk Management (RMC) Consultant

Atomludhiana, India
Job Title : Oracle Cloud Security and Risk Management (RMC) Consultant.We are seeking an experienced Oracle Cloud Security and Risk Management (RMC) Consultant to join our team.The ideal candidate w...Show moreLast updated: 9 days ago
  • Promoted
Cyber Security Architect

Cyber Security Architect

Tata Consultancy Servicesludhiana, India
In depth knowledge of IAM for AWS.Architect and automate the management of AWS Cloud IAM services.Support the Identity and Access Management team within the Technology Risk & Information Security O...Show moreLast updated: 9 days ago
  • Promoted
DevOps Engineer

DevOps Engineer

ESB Technologiesludhiana, India
DevOps Engineer – Cloud Infrastructure (AWS / Azure, Terraform).A large-scale digital modernization program is underway to unify inventory, pricing, and e-commerce across. We’re looking for a Senior D...Show moreLast updated: 9 days ago