Description : Location : Pune
Experience : 7+ years
Shifts : Rotational Shifts
Notice Period : Short Joiners (Immediate or Currently Serving)
About the Role :
We are immediately hiring a highly skilled Senior SOC Specialist with 7+ years of hands-on experience in cybersecurity operations to join our dynamic team in Pune. This role is crucial for enhancing our threat detection capabilities, managing critical security incidents, and safeguarding our corporate and production environments. The ideal candidate thrives in fast-paced, rotational shift environments and possesses deep technical proficiency in SIEM, EDR, and comprehensive threat monitoring practices.
Key Responsibilities :
- Threat Detection & Monitoring : Serve as a subject matter expert within the Security Operations Center (SOC), performing real-time analysis of security alerts and events generated from various security controls.
- SIEM Operations & Tuning : Utilize hands-on experience with SIEM tools (e.g., Splunk, Azure Sentinel, or equivalent platforms) for advanced log correlation, custom rule creation, and continuous tuning to reduce false positives.
- Incident Response & Mitigation : Lead and execute the full incident response and mitigation lifecycle, including triage, detailed investigation, containment, eradication, and post-incident analysis.
- Endpoint Security : Demonstrate proficiency in Endpoint Detection & Response (EDR) solutions, specifically working with Microsoft Defender (or comparable platforms like CrowdStrike / SentinelOne) for deep endpoint analysis and threat hunting.
- Vulnerability Management : Drive threat monitoring activities, integrating vulnerability data into the incident process and coordinating with engineering teams to prioritize and track remediation of critical security weaknesses.
- Analysis and Documentation : Conduct root cause analysis (RCA) for security incidents and maintain comprehensive documentation, Standard Operating Procedures (SOPs), and runbooks for SOC operations.
- Shift Work : Operate effectively within a Rotational Shifts environment to provide 24x7 coverage for critical security operations.
Required Skill Set (Mandatory Skills) :
Experience : 7+ years of professional experience focused on cybersecurity, with significant tenure in a Security Operations Center (SOC) environment.SIEM Expertise : Mandatory hands-on experience with SIEM tools such as Splunk, Azure Sentinel, QRadar, or similar enterprise platforms for alert investigation and correlation.Endpoint Defense : Strong proficiency in Endpoint Detection & Response (EDR) tools, with direct experience utilizing Microsoft Defender or other industry-leading EDR / XDR platforms.Core Security Processes : Strong experience in threat monitoring, vulnerability management, and developing proactive security controls.Incident Handling : Proven skills in managing and executing technical incident response and mitigation across various platforms (cloud, network, endpoint).Work Style : Ability to thrive in fast-paced environments and work effectively in Rotational Shifts.Preferred Skills :
Experience with cloud security monitoring tools (Azure Security Center, AWS Security Hub).Knowledge of threat intelligence platforms (TIP) and their integration into SIEM systems.Relevant certifications such as Security+, CySA+, or SANS GIAC certifications (GCIH, GCIA).(ref : hirist.tech)