Talent.com
(Immediate joiners only)Senior Cybersecurity SOC Engineer – Threat Hunting & Incident Response

(Immediate joiners only)Senior Cybersecurity SOC Engineer – Threat Hunting & Incident Response

Triune Infomatics Inchyderabad, India
4 days ago
Job description

Role : Senior Cybersecurity SOC Engineer – Threat Hunting & Incident Response

Working Hours : Monday to Friday, 9 AM – 5 PM PST (U.S. Business Hours)

Reporting To : Security Operations (SecOps) Leader – USA

About the Role : We are seeking an elite Senior Cybersecurity SOC Engineer—a hands-on security expert with deep technical knowledge and proven experience in threat hunting, incident response, and SOC program maturity. This role will report directly to the SecOps Manager in India and requires someone who thrives in a collaborative environment and leads by example. If you are a true expert with Microsoft Sentinel, CrowdStrike, MDE, SOAR platforms, MITRE ATT&CK framework, APT detection, and scripting, this role offers a great opportunity to build and defend a modern SOC environment.

Please note : This is not a SOC Analyst role. Candidates must have 7-10+ years of hands-on SOC Engineer experience with deep threat hunting and incident response expertise. Must be available to work U.S. business hours (PST timezone).

Key Responsibilities :

  • Threat Hunting :
  • Lead proactive threat hunting initiatives aligned with MITRE ATT&CK framework to identify, investigate, and mitigate advanced threats and adversary behaviors.
  • Use telemetry from Microsoft Sentinel, CrowdStrike Falcon, MDE, and other tools to detect anomalies and emerging attack patterns.
  • Develop and optimize threat hunting queries and playbooks using KQL, Python, and PowerShell.
  • Continuously improve detection coverage to reduce dwell time and prevent breaches.
  • Incident Response :
  • Design, implement, and maintain an effective Incident Response (IR) program and playbooks covering APTs, ransomware, insider threats, and complex multi-stage attacks.
  • Lead investigations on high-fidelity security alerts, conduct root cause analysis, containment, eradication, and recovery.
  • Utilize CrowdStrike Falcon EDR (including RTR), Microsoft Defender for Endpoint, and Tenable for comprehensive endpoint and vulnerability correlation during incidents.
  • Perform network forensics and packet analysis using Fortinet and Palo Alto firewall logs.
  • Manage cloud security incidents within Azure (Azure Sentinel, Security Center) and Microsoft 365 environments.
  • Coordinate with internal teams and external partners for timely, coordinated response to security incidents.
  • SOC Engineering & Program Maturity :
  • Build and mature the SOC’s SIEM and SOAR architecture, detection engineering, and response automation.
  • Develop advanced detection logic, hunting queries, and automation workflows.
  • Mentor junior SOC members and act as a technical escalation point.
  • Collaborate with managed SOC partners and other security teams to enhance detection and response capabilities.

Required Experience & Skills :

  • 7+ years of hands-on experience in SOC engineering, with a strong focus on threat hunting and incident response.
  • Expertise in :

  • Microsoft Sentinel (SIEM & SOAR) and advanced KQL queries for hunting and IR
  • CrowdStrike Falcon EDR (RTR, IOAs, threat containment)
  • Microsoft Defender for Endpoint (MDE) telemetry and IR
  • Tenable vulnerability correlation during investigations
  • Fortinet and Palo Alto firewalls for forensic analysis
  • Microsoft Entra ID (Azure AD), SSO, Conditional Access, MFA security controls
  • Deep operational knowledge of MITRE ATT&CK for threat hunting, detection tuning, and adversary simulation.
  • Proven ability to analyze and respond to APTs, malware persistence, lateral movement, privilege escalation, command & control, and data exfiltration incidents.
  • Strong scripting skills (KQL, Python, PowerShell) for threat hunting automation and incident response workflows.
  • Experience with SOAR platforms integration and automation (Microsoft Sentinel SOAR, Palo Alto XSOAR).
  • Excellent communication, collaboration, and mentoring abilities.
  • Must be able to work U.S. business hours (PST timezone).
  • Preferred Certifications :

  • GCFA, GCIH, GCTI, CISSP, AZ-500, MS-500, or equivalent.
  • MITRE ATT&CK Defender (MAD), OSCP, or Red Team certifications are a strong plus.
  • Create a job alert for this search

    Cybersecurity Engineer • hyderabad, India

    Related jobs
    • Promoted
    SOC / SIEM

    SOC / SIEM

    Tata Consultancy ServicesHyderabad, Telangana, India
    Incidents investigation and Triaging.Analyze complex security incidents escalated from L1 and L2.Identify root cause and attack vectors. Proactively search for hidden threats or intrusions that bypa...Show moreLast updated: 11 days ago
    • Promoted
    Security Operations Center Analyst

    Security Operations Center Analyst

    MyRemoteTeam IncHyderabad, IN
    Hiring : Senior SOC Analyst (Remote).Tier 2 or higher) for a potential long-term project.If you’re a cybersecurity professional passionate about investigation, threat analysis, and proactive defense...Show moreLast updated: 1 day ago
    • Promoted
    Senior Cyber Security Engineer - Vulnerability Management

    Senior Cyber Security Engineer - Vulnerability Management

    OSI Systems Pvt. Ltd.Hyderabad
    Overview : OSI Systems, Inc.We sell our products and provide related services in diversified markets, including homeland...Show moreLast updated: 30+ days ago
    • Promoted
    Cyber Security Engineer

    Cyber Security Engineer

    Nexoria Techworks Inc.hyderabad, telangana, in
    Job Description : Cybersecurity Engineer.Cybersecurity, Information Security, Threat Management.Your core responsibilities will include : . Implement security measures to proactively identify and mitig...Show moreLast updated: 11 days ago
    • Promoted
    SOC Analyst

    SOC Analyst

    TeizoSoft Private LimitedHyderabad
    Monitor and analyze security alerts from multiple SIEM platforms to detect and escalate potential security incidents.Lead triage, investigation, and response of complex security incidents, performi...Show moreLast updated: 15 days ago
    • Promoted
    Vulnerability Management and SOC Analyst

    Vulnerability Management and SOC Analyst

    GenpactHyderabad, Telangana, India
    Vulnerability Management and SOC Analyst.Kindly share resume to with Sub of "Vulnerability Management" along with notice period. Oversee identification, assessment, remediation, and reporting of v...Show moreLast updated: 2 days ago
    • Promoted
    SOC L3 & Threat Hunting

    SOC L3 & Threat Hunting

    ConfidentialHyderabad / Secunderabad, Telangana
    Around 8-10 years working experience in Global SOC.Must have experience in any SIEM Management tool Splunk, QRADAR, HP Arc sight,. Triage Specialist - Separating the wheat from the chaff.Vulnerabili...Show moreLast updated: 30+ days ago
    • Promoted
    SOC T1 Analyst

    SOC T1 Analyst

    ConfidentialHyderabad / Secunderabad, Telangana
    In this vital role, you will be responsible for the initial response to security events and incidents within a 24 / 7 Cybersecurity Operations Center (CSOC). This role involves following established p...Show moreLast updated: 30+ days ago
    • Promoted
    L2 SOC Analyst - SIEM

    L2 SOC Analyst - SIEM

    Mintopps Pvt LTdHyderabad
    Position Summary : We are hiring a Level 2 SOC Analyst to strengthen our 24x7 Security Operations Center.The ideal candidate will have hands-on experience with FortiSIEM, Fort...Show moreLast updated: 3 days ago
    • Promoted
    • New!
    3 Days Left : SOC / SIEM

    3 Days Left : SOC / SIEM

    Tata Consultancy ServicesHyderabad, Telangana, India
    Greetings from TCS!!! Role : SOC Architect Experience : 10-13 years Location : Pan India Must-Have • • 1.Incidents investigation and Triaging 5. Threat Hunting Job Description : - Analyze complex ...Show moreLast updated: 3 hours ago
    • Promoted
    JLR-Global SOC- Cyber Threat intelligence Lead

    JLR-Global SOC- Cyber Threat intelligence Lead

    ConfidentialHyderabad / Secunderabad, Telangana, Bengaluru / Bangalore
    Threat Intelligence Lead detects, reports and proposes measures to mitigate cyber threats.Threat intelligence lead is responsible for implementing threat intelligence platform.Responsible to collec...Show moreLast updated: 30+ days ago
    • Promoted
    SOC Cyber Security Manager

    SOC Cyber Security Manager

    ConfidentialHyderabad / Secunderabad, Telangana, Bengaluru / Bangalore
    Strong understanding of critical PM concepts such as activity plans, milestones, task dependencies, risk and issue tracking, status reporting. Strong understanding of Agile Methodologies and ability...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Associate Engineer - Security

    Senior Associate Engineer - Security

    ConfidentialHyderabad / Secunderabad, Telangana
    ISSQUARED Inc is looking for a Senior Information Security Operations Analyst to be the lead role in maintaining and enhancing the Cybersecurity posture for clients and the company.The ideal candid...Show moreLast updated: 30+ days ago
    • Promoted
    Security Operations Center Analyst

    Security Operations Center Analyst

    Insight Global, LLCHyderabad
    Description : - We are seeking a Security Operations Center (SOC) Analyst with hands-on experience in Google SecOps Chro...Show moreLast updated: 3 days ago
    • Promoted
    Senior Security Engineer - SIEM, DevSecOps, IPS / IDS

    Senior Security Engineer - SIEM, DevSecOps, IPS / IDS

    EmburseHyderabad, Telangana, India
    Emburse software engineers contribute to the development of an engaging and interconnected set of system solutions.As an engineer, you will enhance the experiences of your customers, solve interest...Show moreLast updated: 21 days ago
    • Promoted
    SOC T1 Shift leader

    SOC T1 Shift leader

    ConfidentialHyderabad / Secunderabad, Telangana
    Serve as the technical lead for the CSOC Tier 1 shift, ensuring adherence to SOPs.Analyze security events to identify threat actor tactics, techniques, and procedures (TTPs).Continuously improve cy...Show moreLast updated: 30+ days ago
    • Promoted
    (Immediate joiners only)Senior Cybersecurity SOC Engineer – Threat Hunting & Incident Response

    (Immediate joiners only)Senior Cybersecurity SOC Engineer – Threat Hunting & Incident Response

    Triune Infomatics Inchyderabad, telangana, in
    Role : Senior Cybersecurity SOC Engineer – Threat Hunting & Incident Response.Working Hours : Monday to Friday, 9 AM – 5 PM PST (U. Reporting To : Security Operations (SecOps) Leader – USA.We are seeki...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Information Security Engineer

    Senior Information Security Engineer

    QualiZealHyderabad, Telangana, India
    We are looking for an experienced Security Information Engineer to strengthen our cloud and infrastructure security posture. The ideal candidate will be certified in Microsoft Azure Security (AZ-500...Show moreLast updated: 30+ days ago
    • Promoted
    SOC Analyst

    SOC Analyst

    ConfidentialBengaluru / Bangalore, Hyderabad / Secunderabad, Telangana
    Senior Technical Incident Responder.Acting as a technical leader for alerts and incidents within the SOC.Communicating technical threat insights across the Cyber division, including the SOC Manager...Show moreLast updated: 30+ days ago
    • Promoted
    SOC Manager

    SOC Manager

    ConfidentialBengaluru / Bangalore, Hyderabad / Secunderabad, Telangana
    Establish goals and priorities by working closely with your team to identify the most critical focus areas.Improving incident response times. Reducing false positives and other extraneous alerts.Enh...Show moreLast updated: 30+ days ago