Talent.com
This job offer is not available in your country.
(Immediate joiners only)Senior Cybersecurity SOC Engineer – Threat Hunting & Incident Response

(Immediate joiners only)Senior Cybersecurity SOC Engineer – Threat Hunting & Incident Response

Triune Infomatics IncBengaluru, Karnataka, India
13 days ago
Job description

Role : Senior Cybersecurity SOC Engineer – Threat Hunting & Incident Response

Working Hours : Monday to Friday, 9 AM – 5 PM PST (U.S. Business Hours)

Reporting To : Security Operations (SecOps) Leader – USA

About the Role : We are seeking an elite Senior Cybersecurity SOC Engineer—a hands-on security expert with deep technical knowledge and proven experience in threat hunting, incident response, and SOC program maturity. This role will report directly to the SecOps Manager in India and requires someone who thrives in a collaborative environment and leads by example. If you are a true expert with Microsoft Sentinel, CrowdStrike, MDE, SOAR platforms, MITRE ATT&CK framework, APT detection, and scripting, this role offers a great opportunity to build and defend a modern SOC environment.

Please note : This is not a SOC Analyst role. Candidates must have 7-10+ years of hands-on SOC Engineer experience with deep threat hunting and incident response expertise. Must be available to work U.S. business hours (PST timezone).

Key Responsibilities :

  • Threat Hunting :
  • Lead proactive threat hunting initiatives aligned with MITRE ATT&CK framework to identify, investigate, and mitigate advanced threats and adversary behaviors.
  • Use telemetry from Microsoft Sentinel, CrowdStrike Falcon, MDE, and other tools to detect anomalies and emerging attack patterns.
  • Develop and optimize threat hunting queries and playbooks using KQL, Python, and PowerShell.
  • Continuously improve detection coverage to reduce dwell time and prevent breaches.
  • Incident Response :
  • Design, implement, and maintain an effective Incident Response (IR) program and playbooks covering APTs, ransomware, insider threats, and complex multi-stage attacks.
  • Lead investigations on high-fidelity security alerts, conduct root cause analysis, containment, eradication, and recovery.
  • Utilize CrowdStrike Falcon EDR (including RTR), Microsoft Defender for Endpoint, and Tenable for comprehensive endpoint and vulnerability correlation during incidents.
  • Perform network forensics and packet analysis using Fortinet and Palo Alto firewall logs.
  • Manage cloud security incidents within Azure (Azure Sentinel, Security Center) and Microsoft 365 environments.
  • Coordinate with internal teams and external partners for timely, coordinated response to security incidents.
  • SOC Engineering & Program Maturity :
  • Build and mature the SOC’s SIEM and SOAR architecture, detection engineering, and response automation.
  • Develop advanced detection logic, hunting queries, and automation workflows.
  • Mentor junior SOC members and act as a technical escalation point.
  • Collaborate with managed SOC partners and other security teams to enhance detection and response capabilities.

Required Experience & Skills :

  • 7+ years of hands-on experience in SOC engineering, with a strong focus on threat hunting and incident response.
  • Expertise in :

  • Microsoft Sentinel (SIEM & SOAR) and advanced KQL queries for hunting and IR
  • CrowdStrike Falcon EDR (RTR, IOAs, threat containment)
  • Microsoft Defender for Endpoint (MDE) telemetry and IR
  • Tenable vulnerability correlation during investigations
  • Fortinet and Palo Alto firewalls for forensic analysis
  • Microsoft Entra ID (Azure AD), SSO, Conditional Access, MFA security controls
  • Deep operational knowledge of MITRE ATT&CK for threat hunting, detection tuning, and adversary simulation.
  • Proven ability to analyze and respond to APTs, malware persistence, lateral movement, privilege escalation, command & control, and data exfiltration incidents.
  • Strong scripting skills (KQL, Python, PowerShell) for threat hunting automation and incident response workflows.
  • Experience with SOAR platforms integration and automation (Microsoft Sentinel SOAR, Palo Alto XSOAR).
  • Excellent communication, collaboration, and mentoring abilities.
  • Must be able to work U.S. business hours (PST timezone).
  • Preferred Certifications :

  • GCFA, GCIH, GCTI, CISSP, AZ-500, MS-500, or equivalent.
  • MITRE ATT&CK Defender (MAD), OSCP, or Red Team certifications are a strong plus.
  • Create a job alert for this search

    Cybersecurity Engineer • Bengaluru, Karnataka, India

    Related jobs
    • Promoted
    SOC Engineer

    SOC Engineer

    Webologix Ltd / INCBengaluru, Karnataka, India
    Review daily operational activities and timely mentor junior analysts.Conduct detailed analysis on escalated events and handover the call to the Incident Response team along with appropriate eviden...Show moreLast updated: 30+ days ago
    • Promoted
    SOC Lead Engineer

    SOC Lead Engineer

    Versa NetworksBengaluru, Karnataka, India
    The SOC Lead Engineer is responsible for overseeing the Security Operations Center team, ensuring 24 / 7 monitoring, detection, analysis, and response to security threats. This role involves managing ...Show moreLast updated: 30+ days ago
    • Promoted
    Versa Networks - Lead Security Operations Center Engineer - Compliance & Risk Management

    Versa Networks - Lead Security Operations Center Engineer - Compliance & Risk Management

    VERSA NETWORKS INDIA PRIVATE LIMITEDBangalore
    SOC Lead Engineer Location : Bangalore Job Summary : The SOC Lead Engineer is respon...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    (Immediate joiners only)Senior Cybersecurity SOC Engineer - Threat Hunting & Incident Response

    (Immediate joiners only)Senior Cybersecurity SOC Engineer - Threat Hunting & Incident Response

    Triune Infomatics IncBengaluru, Karnataka, India
    Role : Senior Cybersecurity SOC Engineer – Threat Hunting & Incident Response Working Hours : Monday to Friday, 9 AM – 5 PM PST (U. Business Hours) Reporting To : Security Operations (SecOps) Leader ...Show moreLast updated: less than 1 hour ago
    • Promoted
    Cloud Security Lead - HIPAA / SOC II

    Cloud Security Lead - HIPAA / SOC II

    Catalyst IQBangalore
    Job Summary : Lead our cloud security efforts to ensure the protection of patient data and healthcare workflows in line ...Show moreLast updated: 30+ days ago
    SOC Analyst (d / f / m) - Urgently Hiring!

    SOC Analyst (d / f / m) - Urgently Hiring!

    HenkelBengaluru, KA, India
    Analysis, Coordinate the containment and eradication of malicious activities with internal and external parties and investigate, document, and report on any information security (InfoSec) issues .M...Show moreLast updated: 30+ days ago
    SOC Analyst (d / f / m) - Now Hiring!

    SOC Analyst (d / f / m) - Now Hiring!

    HenkelBengaluru, KA, India
    Analysis, Coordinate the containment and eradication of malicious activities with internal and external parties and investigate, document, and report on any information security (InfoSec) issues .M...Show moreLast updated: 30+ days ago
    Director of SOC (Engineering and Response)-First Advantage-Bangalore / Mumbai

    Director of SOC (Engineering and Response)-First Advantage-Bangalore / Mumbai

    First AdvantageBangalore, Karnataka, IN
    Quick Apply
    Position Overview The Director of SOC Engineering and Response is a senior leadership role responsible for the strategic vision, engineering, and operational effectiveness of the Security Operation...Show moreLast updated: 30+ days ago
    • Promoted
    Cyber Security Engineer

    Cyber Security Engineer

    Sonata SoftwareHosur, Tamil Nadu, India
    JD : A SOC Analyst background with 2 to 3 years of hands-on experience, ideally transitioning or already transitioned into an Engineer role. Strong expertise in XDR / EDR tools (Microsoft Defender...Show moreLast updated: 1 day ago
    • Promoted
    FACULTY – Computer Science Engineering

    FACULTY – Computer Science Engineering

    GITAM Deemed UniversityDodda Ballapur, Karnataka, India
    Faculty Recruitment – Computer Science Engineering | GITAM (Deemed to be University), Bengaluru Campus.Department of Computer Science Engineering at GITAM. Algorithms, Complexity, Graph Theory, Form...Show moreLast updated: 9 days ago
    • Promoted
    • New!
    (Immediate Start) SOC Lead Engineer

    (Immediate Start) SOC Lead Engineer

    Versa NetworksBengaluru, Karnataka, India
    SOC Lead Engineer Location : Bangalore Experience : 8- 15 YRS Job Summary The SOC Lead Engineer is responsible for overseeing the Security Operations Center team, ensuring 24 / 7 monitoring, detect...Show moreLast updated: less than 1 hour ago
    • Promoted
    • New!
    Lead Software Engineer - Cybersecurity Research

    Lead Software Engineer - Cybersecurity Research

    Topskill.ioHosur, Tamil Nadu, India
    Industry : Energy & Cybersecurity Solutions Location : Remote Employment Type : Full-time About the Rol eOur client, a global leader in energy and critical infrastructure technology, is seeking a ...Show moreLast updated: 20 hours ago
    Senior Information Security Engineer

    Senior Information Security Engineer

    Epergne SolutionsBangalore Rural, Karnataka, India
    Quick Apply
    Senior Information Security Engineer.Job Roles & Responsibilities : .Docker, Kubernetes), databases, and web services.Create and maintain comprehensive documentation including.SOPs, technical rep...Show moreLast updated: 30+ days ago
    • Promoted
    Media Streaming Engineer

    Media Streaming Engineer

    Tata Consultancy ServicesBangalore Rural, Karnataka, India
    Role • • : Media Streaming Engineer.Required Technical Skill Set : Media Streaming Engineer.Desired Experience Range : 12 - 17 yrs. Notice Period : Immediate to 90Days only.We are currently planning to do...Show moreLast updated: 6 days ago
    • Promoted
    In-Person Hiring Drive-T&T-Cyber-SOC Operations-Endpoint Security Specialist-Palo Alto / xDR-2 to 9 years-Bangalore Prestige Trade Tower Office@13 Sep'25 (Saturday)

    In-Person Hiring Drive-T&T-Cyber-SOC Operations-Endpoint Security Specialist-Palo Alto / xDR-2 to 9 years-Bangalore Prestige Trade Tower Office@13 Sep'25 (Saturday)

    DeloitteBengaluru, Karnataka, India
    India’s impact on the global economy has increased at an exponential rate and Deloitte presents an opportunity to unleash and realise your potential amongst cutting edge leaders, and organisations ...Show moreLast updated: 24 days ago
    SOC (Security Operations Center) Detection Engineer - First Advantage (Mumbai / Bangalore)

    SOC (Security Operations Center) Detection Engineer - First Advantage (Mumbai / Bangalore)

    First AdvantageBangalore, Karnataka, IN
    Quick Apply
    A SOC (Security Operations Center) Detection Engineer is a critical member of the cybersecurity team, responsible for designing, implementing, and maintaining systems and methodologies for detectin...Show moreLast updated: 30+ days ago
    • Promoted
    Cyber Security Engineer (PCI, SOC, ISO / IEC 27001 etc.)

    Cyber Security Engineer (PCI, SOC, ISO / IEC 27001 etc.)

    FICOBengaluru, Karnataka, India
    FICO is seeking Cyber Security Engineer to join our growing GRC Team.This is a full-time regular position (hybrid), and a great opportunity for an individual with strong PCI, ISO 27001, SOC2 audit ...Show moreLast updated: 30+ days ago
    • Promoted
    SOC Analyst Level3

    SOC Analyst Level3

    Tekskills Inc.Bengaluru, Karnataka, India
    Job Title : Senior Security Operations Center (SOC) Analyst.Work Location : Bangalore (Hybrid Role).Minimum 4+ years of experience. Minimum 5+ years of experience.Knowledge of organizational risks and...Show moreLast updated: 1 day ago