Talent.com
This job offer is not available in your country.
(Immediate joiners only)Senior Cybersecurity SOC Engineer – Threat Hunting & Incident Response

(Immediate joiners only)Senior Cybersecurity SOC Engineer – Threat Hunting & Incident Response

Triune Infomatics Inckollam, kerala, in
23 days ago
Job description

Role : Senior Cybersecurity SOC Engineer – Threat Hunting & Incident Response

Working Hours : Monday to Friday, 9 AM – 5 PM PST (U.S. Business Hours)

Reporting To : Security Operations (SecOps) Leader – USA

About the Role : We are seeking an elite Senior Cybersecurity SOC Engineer—a hands-on security expert with deep technical knowledge and proven experience in threat hunting, incident response, and SOC program maturity. This role will report directly to the SecOps Manager in India and requires someone who thrives in a collaborative environment and leads by example. If you are a true expert with Microsoft Sentinel, CrowdStrike, MDE, SOAR platforms, MITRE ATT&CK framework, APT detection, and scripting, this role offers a great opportunity to build and defend a modern SOC environment.

Please note : This is not a SOC Analyst role. Candidates must have 7-10+ years of hands-on SOC Engineer experience with deep threat hunting and incident response expertise. Must be available to work U.S. business hours (PST timezone).

Key Responsibilities :

  • Threat Hunting :
  • Lead proactive threat hunting initiatives aligned with MITRE ATT&CK framework to identify, investigate, and mitigate advanced threats and adversary behaviors.
  • Use telemetry from Microsoft Sentinel, CrowdStrike Falcon, MDE, and other tools to detect anomalies and emerging attack patterns.
  • Develop and optimize threat hunting queries and playbooks using KQL, Python, and PowerShell.
  • Continuously improve detection coverage to reduce dwell time and prevent breaches.
  • Incident Response :
  • Design, implement, and maintain an effective Incident Response (IR) program and playbooks covering APTs, ransomware, insider threats, and complex multi-stage attacks.
  • Lead investigations on high-fidelity security alerts, conduct root cause analysis, containment, eradication, and recovery.
  • Utilize CrowdStrike Falcon EDR (including RTR), Microsoft Defender for Endpoint, and Tenable for comprehensive endpoint and vulnerability correlation during incidents.
  • Perform network forensics and packet analysis using Fortinet and Palo Alto firewall logs.
  • Manage cloud security incidents within Azure (Azure Sentinel, Security Center) and Microsoft 365 environments.
  • Coordinate with internal teams and external partners for timely, coordinated response to security incidents.
  • SOC Engineering & Program Maturity :
  • Build and mature the SOC’s SIEM and SOAR architecture, detection engineering, and response automation.
  • Develop advanced detection logic, hunting queries, and automation workflows.
  • Mentor junior SOC members and act as a technical escalation point.
  • Collaborate with managed SOC partners and other security teams to enhance detection and response capabilities.

Required Experience & Skills :

  • 7+ years of hands-on experience in SOC engineering, with a strong focus on threat hunting and incident response.
  • Expertise in :

  • Microsoft Sentinel (SIEM & SOAR) and advanced KQL queries for hunting and IR
  • CrowdStrike Falcon EDR (RTR, IOAs, threat containment)
  • Microsoft Defender for Endpoint (MDE) telemetry and IR
  • Tenable vulnerability correlation during investigations
  • Fortinet and Palo Alto firewalls for forensic analysis
  • Microsoft Entra ID (Azure AD), SSO, Conditional Access, MFA security controls
  • Deep operational knowledge of MITRE ATT&CK for threat hunting, detection tuning, and adversary simulation.
  • Proven ability to analyze and respond to APTs, malware persistence, lateral movement, privilege escalation, command & control, and data exfiltration incidents.
  • Strong scripting skills (KQL, Python, PowerShell) for threat hunting automation and incident response workflows.
  • Experience with SOAR platforms integration and automation (Microsoft Sentinel SOAR, Palo Alto XSOAR).
  • Excellent communication, collaboration, and mentoring abilities.
  • Must be able to work U.S. business hours (PST timezone).
  • Preferred Certifications :

  • GCFA, GCIH, GCTI, CISSP, AZ-500, MS-500, or equivalent.
  • MITRE ATT&CK Defender (MAD), OSCP, or Red Team certifications are a strong plus.
  • Create a job alert for this search

    Cybersecurity Engineer • kollam, kerala, in

    Related jobs
    • Promoted
    Workday Security System Analyst

    Workday Security System Analyst

    AvalaraThiruvananthapuram, IN
    Avalara is an AI-first company.We expect every engineer, manager, and to actively leverage AI to enhance productivity, quality, innovation, and customer value. AI is embedded in our workflows, and p...Show moreLast updated: 1 day ago
    • Promoted
    • New!
    Tripwire Cyber Security Expert

    Tripwire Cyber Security Expert

    RapidBrainsKollam, IN
    Bachelor’s degree in Computer Science, Information Security, or related field.SIEM, vulnerability management, endpoint security, and compliance frameworks. Familiarity with Windows and Linux environ...Show moreLast updated: 12 hours ago
    • Promoted
    Quantiphi - Senior Cyber Security Engineer - DAST / SAST

    Quantiphi - Senior Cyber Security Engineer - DAST / SAST

    Quantiphi AnalyticsTrivandrum
    Role : Senior Cyber Security Engineer.Experience Level : 3+ Years.Work location : Mumbai, Bangalore & Trivandrum.Role & Responsibilities : ...Show moreLast updated: 30+ days ago
    Architect - IT Security (Endpoint Security Architect)

    Architect - IT Security (Endpoint Security Architect)

    EnvestnetTrivandrum, KL, IN
    Manage and optimize endpoint protection platforms (EDR / XDR, AV, DLP, disk encryption, host firewalls) for a range of environments, including development workstations, virtual desktops (Citrix, AWS ...Show moreLast updated: 30+ days ago
    • Promoted
    CyberArk Engineer

    CyberArk Engineer

    Next VenturesAlappuzha, IN
    Job Opportunity : CyberArk Engineer.Contract / Permanent / Fixed Term.Privileged Access Management (PAM) implementations using CyberArk technologies. CyberArk Core-PAS, AAM, PTA, HTML5 Gateway.AUTOIT...Show moreLast updated: 1 day ago
    • Promoted
    Cyber Security Consultant

    Cyber Security Consultant

    Paramount Computer SystemsThiruvananthapuram, Kerala, India
    As a IAM Consultant in Access Management, your role will involve : .Designing, implementing, optimizing and supporting identity and access management (IAM) solutions for enterprise clients.Your exper...Show moreLast updated: 2 days ago
    • Promoted
    Security Architect

    Security Architect

    Tata Consultancy Servicesthiruvananthapuram, kerala, in
    Experience in datacentre, cloud and network.Hands-on experience in AWS and GCP cloud.Experience in Containers, Kubernetes and micro services. Experience in advance networking in public cloud.Terrafo...Show moreLast updated: 1 day ago
    • Promoted
    Vulnerability Management Specialist_9+years_Remote

    Vulnerability Management Specialist_9+years_Remote

    Tekgence IncKollam, IN
    Remote
    Job Title : Vulnerability Management Specialist (AWS & Wiz).Duration : 12+ months , extendable.We are seeking a skilled Vulnerability Management Specialist with hands-on experience in AWS environment...Show moreLast updated: 1 day ago
    • Promoted
    • New!
    OT Security Consultant

    OT Security Consultant

    iO Associatesthiruvananthapuram, kerala, in
    Operational Technology (OT) Cybersecurity Consultant.An excellent opportunity has arisen for an experienced.The company helps organizations strengthen their digital defenses and ensure compliance w...Show moreLast updated: 6 hours ago
    • Promoted
    • New!
    Senior Detection Engineer - MITRE ATT&CK framework - XDR - EDR - AI - Cyber Security Startup - Remote - CTC INR 50 L

    Senior Detection Engineer - MITRE ATT&CK framework - XDR - EDR - AI - Cyber Security Startup - Remote - CTC INR 50 L

    CareerXperts Consultingthiruvananthapuram, kerala, in
    Remote
    This role goes beyond traditional detection engineering : you’ll help improve and build our.AI feedback, and quantify detection efficacy at enterprise scale. Design and maintain modular, high-fideli...Show moreLast updated: 18 hours ago
    • Promoted
    Cyber Security Engineer / Lead-Automotive

    Cyber Security Engineer / Lead-Automotive

    ConfidentialThiruvananthapuram / Trivandrum, Chennai, Bengaluru / Bangalore
    Location- Bengaluru / Chennai / Trivandrum.If interested, please apply with updated resume.Automotive Cybersecurity system Engineers and Leads. Good understanding of ASPICE - SWE.Experience in implement...Show moreLast updated: 24 days ago
    • Promoted
    Cyber Security Engineer

    Cyber Security Engineer

    Paramount Computer SystemsAlappuzha, IN
    Identity Governance and Administration (IGA).The role involves designing, implementing, and supporting enterprise-grade IGA solutions to ensure secure, efficient, and compliant identity lifecycle m...Show moreLast updated: 11 days ago
    • Promoted
    Network Security Engineer (Zeek / Suricata / Elastic- OT / Network Focus)

    Network Security Engineer (Zeek / Suricata / Elastic- OT / Network Focus)

    Microminder Cyber SecurityThiruvananthapuram, IN
    We are looking for a Network Security Engineer with experience in deploying and managing open-source network security platforms. The role involves setting up visibility sensors, handling network tra...Show moreLast updated: 1 day ago
    • Promoted
    AWS security engineer

    AWS security engineer

    JRD SystemsThiruvananthapuram, IN
    We are seeking a highly skilled.Senior DevOps / Platform Engineer.The ideal candidate will have deep expertise in infrastructure automation, Terraform, and cloud platform management, with a strong De...Show moreLast updated: 11 days ago
    • Promoted
    Cyber Security Architect

    Cyber Security Architect

    Tata Consultancy Servicesalappuzha, kerala, in
    In depth knowledge of IAM for AWS.Architect and automate the management of AWS Cloud IAM services.Support the Identity and Access Management team within the Technology Risk & Information Security O...Show moreLast updated: 1 day ago
    • Promoted
    Cyber Security Engineer

    Cyber Security Engineer

    Nexoria Techworks Inc.alappuzha, kerala, in
    Job Description : Cybersecurity Engineer.Cybersecurity, Information Security, Threat Management.Your core responsibilities will include : . Implement security measures to proactively identify and mitig...Show moreLast updated: 1 day ago
    • Promoted
    Vulnerability Management Specialist -8+ years - Bangalore

    Vulnerability Management Specialist -8+ years - Bangalore

    Tekgence Incalappuzha, kerala, in
    Vulnerability Management Specialist.Location : Bangalore, India - remote.Design, implement, and maintain automation scripts and frameworks using. Collaborate with cross-functional teams to identify op...Show moreLast updated: 22 days ago
    • Promoted
    Expert Secure Platform Architect

    Expert Secure Platform Architect

    beBeeSecurityKollam, Kerala, India
    We are seeking an experienced security engineer to join our team.As a secure platform engineer, you will design, build, and maintain secure platforms and tooling that empower development teams to d...Show moreLast updated: 1 day ago
    • Promoted
    • New!
    Cyber Security Analyst

    Cyber Security Analyst

    Quess Corp Limitedalappuzha, kerala, in
    The purpose for this role ‘SOAR Developer’ is to provide SOAR development expertise and contribute to the success of the Cyber Security Operations center’s (CSOC) SOAR enhancement program by implem...Show moreLast updated: 6 hours ago
    • Promoted
    Expert Cyber Security Professional Wanted

    Expert Cyber Security Professional Wanted

    beBeeCybersecurityKollam, Kerala, India
    We are seeking a seasoned professional with expertise in identity governance and administration, specifically Saviynt.The role entails designing, implementing, and supporting enterprise-grade solut...Show moreLast updated: 2 days ago