23 Aug
|
Naukri Assist
|
Bengaluru
23 Aug
Naukri Assist
Bengaluru
Key Accountabilities
Lead SOC operations in an MSSP environment. (Microsoft Sentinel)
Manage incident detection, investigation, response, and escalation.
Conduct proactive threat hunting and detection engineering.
Administer and optimize Microsoft Sentinel and Elastic Security SIEM platforms.
Design and manage Elastic Cloud Serverless SIEM deployments and integrations.
Develop security use cases, dashboards, alerts, and automation workflows.
Maintain SOC documentation, playbooks, SOPs, and reports.
Support cloud security monitoring across Azure, AWS, and GCP.
Drive AI-enabled security initiatives and operational improvements.
Support security audits, compliance, and governance activities.
Lead and mentor SOC analysts and engineers.
Manage customer engagements, service delivery, and SLA compliance.
Critical Incident Handling (P1) & Closure and Deep investigation and analysis of critical security incidents.
Post-breach forensic incident analysis reporting and Advanced threat hunting.
Develop custom dashboards and reporting templates and Develop complex to customer-specific use cases.
Threat Hunting & Detection Engineering:Develop use cases and detection rules based on emerging threats and attack techniques and perform analysis and map threats to MITRE ATT&CK; framework.
AI & Security Automation:
Implement automation and orchestration workflows to improve SOC efficiency.
Compliance, Audit & Governance Ensure compliance with ISO 27001, SOC 2, PCI-DSS, NIST, CIS Controls, and other regulatory requirements.
Skills & Experience
Experience of leading a team of Security Operations analysts and Engineers.
Experience of working in MSSP in multi-customer workplace.
Experience of working in large-scale, public cloud environments and using cloud-native security monitoring tools such as: -
Azure Security Centre and Microsoft Sentinel
Vulnerability Management: Qualys, Microsoft Defender.
Endpoint Management: CrowdStrike and Microsoft Defender for Point.
GCP Security Command Centre, Chronical.
AWS Security Hub including AWS Guard Duty
Experience with Microsoft Defender XDR suite.
A highly self-motivated and proactive individual who wants to learn and grow and has an attention to detail.
An individual who shows a willingness to go above and beyond in delighting the customer.
A good communicator who can explain security concepts to both technical and nontechnical audiences.
Preferred Certifications
- Microsoft Certified: Cybersecurity Architect Expert (SC-100)
- Microsoft Certified: Security Operations Analyst (SC-200)
- AZ-500: Azure Security Engineer
📌 SOC Lead Cyber Defense (Bengaluru)
🏢 Naukri Assist
📍 Bengaluru