Talent.com
This job offer is not available in your country.
Urgent Search : (Immediate joiners only)Senior Cybersecurity SOC Engineer - Threat Hunting & Incident

Urgent Search : (Immediate joiners only)Senior Cybersecurity SOC Engineer - Threat Hunting & Incident

Triune Infomatics IncIndia
4 hours ago
Job description

Role : Senior Cybersecurity SOC Engineer – Threat Hunting & Incident Response

Working Hours : Monday to Friday, 9 AM – 5 PM PST (U.S. Business Hours)

Reporting To : Security Operations (SecOps) Leader – USA

About the Role : We are seeking an elite Senior Cybersecurity SOC Engineer—a hands-on security expert with deep technical knowledge and proven experience in threat hunting, incident response, and SOC program maturity. This role will report directly to the SecOps Manager in India and requires someone who thrives in a collaborative environment and leads by example. If you are a true expert with Microsoft Sentinel, CrowdStrike, MDE, SOAR platforms, MITRE ATT&CK framework, APT detection, and scripting, this role offers a great opportunity to build and defend a modern SOC environment.

Please note : This is not a SOC Analyst role. Candidates must have 7-10+ years of hands-on SOC Engineer experience with deep threat hunting and incident response expertise. Must be available to work U.S. business hours (PST timezone).

Key Responsibilities :

  • Threat Hunting :
  • Lead proactive threat hunting initiatives aligned with MITRE ATT&CK framework to identify, investigate, and mitigate advanced threats and adversary behaviors.
  • Use telemetry from Microsoft Sentinel, CrowdStrike Falcon, MDE, and other tools to detect anomalies and emerging attack patterns.
  • Develop and optimize threat hunting queries and playbooks using KQL, Python, and PowerShell.
  • Continuously improve detection coverage to reduce dwell time and prevent breaches.
  • Incident Response :
  • Design, implement, and maintain an effective Incident Response (IR) program and playbooks covering APTs, ransomware, insider threats, and complex multi-stage attacks.
  • Lead investigations on high-fidelity security alerts, conduct root cause analysis, containment, eradication, and recovery.
  • Utilize CrowdStrike Falcon EDR (including RTR), Microsoft Defender for Endpoint, and Tenable for comprehensive endpoint and vulnerability correlation during incidents.
  • Perform network forensics and packet analysis using Fortinet and Palo Alto firewall logs.
  • Manage cloud security incidents within Azure (Azure Sentinel, Security Center) and Microsoft 365 environments.
  • Coordinate with internal teams and external partners for timely, coordinated response to security incidents.
  • SOC Engineering & Program Maturity :
  • Build and mature the SOC’s SIEM and SOAR architecture, detection engineering, and response automation.
  • Develop advanced detection logic, hunting queries, and automation workflows.
  • Mentor junior SOC members and act as a technical escalation point.
  • Collaborate with managed SOC partners and other security teams to enhance detection and response capabilities.

Required Experience & Skills :

  • 7+ years of hands-on experience in SOC engineering, with a strong focus on threat hunting and incident response.
  • Expertise in :

  • Microsoft Sentinel (SIEM & SOAR) and advanced KQL queries for hunting and IR
  • CrowdStrike Falcon EDR (RTR, IOAs, threat containment)
  • Microsoft Defender for Endpoint (MDE) telemetry and IR
  • Tenable vulnerability correlation during investigations
  • Fortinet and Palo Alto firewalls for forensic analysis
  • Microsoft Entra ID (Azure AD), SSO, Conditional Access, MFA security controls
  • Deep operational knowledge of MITRE ATT&CK for threat hunting, detection tuning, and adversary simulation.
  • Proven ability to analyze and respond to APTs, malware persistence, lateral movement, privilege escalation, command & control, and data exfiltration incidents.
  • Strong scripting skills (KQL, Python, PowerShell) for threat hunting automation and incident response workflows.
  • Experience with SOAR platforms integration and automation (Microsoft Sentinel SOAR, Palo Alto XSOAR).
  • Excellent communication, collaboration, and mentoring abilities.
  • Must be able to work U.S. business hours (PST timezone).
  • Preferred Certifications :

  • GCFA, GCIH, GCTI, CISSP, AZ-500, MS-500, or equivalent.
  • MITRE ATT&CK Defender (MAD), OSCP, or Red Team certifications are a strong plus.
  • Create a job alert for this search

    Urgent Cybersecurity • India

    Related jobs
    • Promoted
    Senior Security Engineer

    Senior Security Engineer

    TAC SecurityIndia
    Job description As a Security Engineer - VAPT, you will be responsible for conducting comprehensive security assessments, identifying vulnerabilities, and implementing effective remediation strateg...Show moreLast updated: 30+ days ago
    • Promoted
    Cybersecurity Operations Lead - PTA

    Cybersecurity Operations Lead - PTA

    Northern TrustIndia
    Responsible for developing and administering the solutions that meet system expectations relative to scalability, performance, fault tolerance, usability, and data integrity.Also delivers solutions...Show moreLast updated: 7 days ago
    • Promoted
    • New!
    (Immediate joiners only)Senior Cybersecurity SOC Engineer - Threat Hunting & Incident Response (Imme

    (Immediate joiners only)Senior Cybersecurity SOC Engineer - Threat Hunting & Incident Response (Imme

    Triune Infomatics IncIndia
    Role : Senior Cybersecurity SOC Engineer – Threat Hunting & Incident Response.Working Hours : Monday to Friday, 9 AM – 5 PM PST (U. Reporting To : Security Operations (SecOps) Leader – USA.About the Ro...Show moreLast updated: less than 1 hour ago
    • Promoted
    Cyber Threat Intelligence

    Cyber Threat Intelligence

    CapgeminiIndia
    Job Summary : Capgemini is expanding its Cyber Threat Intelligence (CTI) capabilities in Bengaluru.As the CTI Team Lead, you will be responsible for building and managing a high-performing team, ens...Show moreLast updated: 19 days ago
    • Promoted
    PCSMS & TARA Expert (Automotive Cybersecurity)

    PCSMS & TARA Expert (Automotive Cybersecurity)

    Tata TechnologiesIndia
    Exciting Opportunity : -PCSMS & TARA Expert (Automotive Cybersecurity) Location : .Bangalore (with deputation to Sweden post joining) Experience : . Key Responsibilities & Skills : Good knowledge of.AI int...Show moreLast updated: 26 days ago
    • Promoted
    Cyber Security-Eng II (Mandatory 4+ years of experience with ZIA, DLP, Splunk)

    Cyber Security-Eng II (Mandatory 4+ years of experience with ZIA, DLP, Splunk)

    FICOIndia
    This role would require you to work from our Bangalore office 3days in a week.We are seeking a proactive and technically skilled Cyber Security Engineer II to join our Data Protection & AI Operatio...Show moreLast updated: 7 days ago
    • Promoted
    Senior Engineer - OT Security

    Senior Engineer - OT Security

    Network IntelligenceIndia
    Experience with ICS systems and ICS security industry practices with exposure to Operational technologies.Minimum 3 years with supporting PLC, DCS, SIS, HMI or SCADA systems.Experience supporting a...Show moreLast updated: 28 days ago
    • Promoted
    SOC Specialist

    SOC Specialist

    PeoplefyIndia
    I am on lookout for SOC Specialist for leading.Should have experience with Security and Threat monitoring Should have good experience with concepts of SIEM Should have strong experience in Threat a...Show moreLast updated: 16 days ago
    • Promoted
    SOC Engineer

    SOC Engineer

    Tata Consultancy ServicesIndia
    Continuously monitor : Monitor security alerts and events from various sources, including Microsoft Sentinel, Defender for Endpoint and Defender for Cloud. Perform log management : Perform log ingesti...Show moreLast updated: 5 days ago
    • Promoted
    Senior Cloud Security Engineer

    Senior Cloud Security Engineer

    NopalCyberIndia
    NopalCyber makes cybersecurity manageable, affordable, reliable, and powerful for companies that need to be resilient and compliant. Through Managed Extended Detection and Response (MXDR), Attack Su...Show moreLast updated: 19 days ago
    • Promoted
    OT SOC Analyst

    OT SOC Analyst

    L&T Technology ServicesIndia
    Role Summary : As an L2 OT SOC Analyst, you will be responsible for advanced threat detection, incident response, and forensic analysis within Operational Technology (OT) environments using Claroty ...Show moreLast updated: 19 days ago
    • Promoted
    SOC Engineer

    SOC Engineer

    Webologix Ltd / INCIndia
    Job Position : SOC Engineer Location : PAN.Experience : 5+ to 10+ Years Must have : Forensics - Others Roles Responsibilities Review daily operational activities and timely mentor junior analysts Condu...Show moreLast updated: 30+ days ago
    • Promoted
    Cyber Security Engineer

    Cyber Security Engineer

    Paramount Computer SystemsNagpur, IN
    Identity Governance and Administration (IGA).The role involves designing, implementing, and supporting enterprise-grade IGA solutions to ensure secure, efficient, and compliant identity lifecycle m...Show moreLast updated: 7 days ago
    • Promoted
    SOC Lead Engineer

    SOC Lead Engineer

    Versa NetworksIndia
    The SOC Lead Engineer is responsible for overseeing the Security Operations Center team, ensuring 24 / 7 monitoring, detection, analysis, and response to security threats. This role involves managing ...Show moreLast updated: 30+ days ago
    • Promoted
    Cloud Security-Engineer I (with Threat Management exp.)

    Cloud Security-Engineer I (with Threat Management exp.)

    FICOIndia
    FICO (NYSE : FICO) is a leading global analytics software company, helping businesses in 100+ countries make better decisions. Join our world-class team today and fulfill your career potential!.This ...Show moreLast updated: 7 days ago
    • Promoted
    SOC Head

    SOC Head

    IDFC FIRST BankIndia
    Responsible for managing the end-to-end operations and strategic evolution of our Security Operations Centre (SOC), Threat Hunting & Incident Response, Threat Intelligence, Digital Forensics, and S...Show moreLast updated: 12 days ago
    • Promoted
    Senior Security Engineer - SIEM, DevSecOps, IPS / IDS

    Senior Security Engineer - SIEM, DevSecOps, IPS / IDS

    EmburseIndia
    Emburse software engineers contribute to the development of an engaging and interconnected set of system solutions.As an engineer, you will enhance the experiences of your customers, solve interest...Show moreLast updated: 7 days ago
    • Promoted
    • New!
    ▷ (Apply Now) (Immediate joiners only)Senior Cybersecurity SOC Engineer – Threat Hunting & Incident

    ▷ (Apply Now) (Immediate joiners only)Senior Cybersecurity SOC Engineer – Threat Hunting & Incident

    Triune Infomatics IncIndia
    Role : Senior Cybersecurity SOC Engineer – Threat Hunting & Incident Response.Working Hours : Monday to Friday, 9 AM – 5 PM PST (U. Reporting To : Security Operations (SecOps) Leader – USA.About the Ro...Show moreLast updated: less than 1 hour ago
    • Promoted
    Senior Security Engineer, SOC

    Senior Security Engineer, SOC

    PoshmarkIndia
    Monitor and analyze security event logs and alerts to detect potential incidents, and lead investigations for containment, eradication, and recovery. Lead security incident investigation, containmen...Show moreLast updated: 16 days ago
    • Promoted
    Cyber Security Engineer

    Cyber Security Engineer

    Futurism Technologies, INC.India
    Urgent Hiring for Cyber security engineerL3.Job Title : Cyber Security Engineer L3.Job Location : Hinjewadi Phase-1, Pune (WFO). Shift : Rotational Shift (5 Days Working).We are seeking a highly skille...Show moreLast updated: 30+ days ago