SOC Specialist
On-sitePune, Maharashtra, India
Job Summary
Oversee daily SOC operations including SIEM/SOAR tuning, alert triage, and coordinated incident response to ensure effective real-time threat monitoring. Lead end-to-end security incident response, covering analysis, containment, mitigation, and reporting while leveraging cross-team coordination for swift resolution. Design detective controls for emerging threats, perform proactive threat hunting, and continuously enhance detection capabilities using threat intelligence. Act as a senior liaison with infrastructure teams, document activities for audit readiness, and conduct post-incident reviews to drive process improvements. Guide junior analysts, maintain asset inventory, and ensure all detection and response processes align with regulatory standards. Participate in a 24/7 on-call rotation to support critical investigations.
Required Qualifications
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field
- 7-11 years of total experience in SOC in a large multi-national organization or in a known MSSP
- minimum 8 years of Incident Response experience
- at least 2 years of experience on SOAR capabilities
- Deep hands-on expertise with technologies like SIEM, SOAR, XDR such as Google Chronicle, Crowdstrike Logscale, Splunk
- Strong working knowledge of endpoint security tools and concepts, including EDR (CrowdStrike, Defender, Cortex), DLP, and MDM
- Strong knowledge of MITRE ATT&CK, NIST CSF frameworks, and cyber kill chain concepts
- Advanced proficiency in automating incident response using SOAR technologies
- Solid understanding of network security, operating systems, and hybrid cloud environments (Cloud, On-Prem, VDI)
- Proficiency in scripting languages (e.g., Python, PowerShell) for automation and analysis
- In-depth knowledge of threat landscapes and technical security concepts
- Strong grasp of network protocols, OS internals, and security technologies
- Familiar with compliance standards such as NIST CSF and ISO 27001
- Strong organizational and time management skills with the ability to coordinate and prioritize multiple tasks simultaneously
- Ability to work under pressure, especially during critical security incidents
- Ability to conduct independent research and analysis, identifying issues, formulating options, and making conclusions and recommendations
- Skilled in developing professional documentation and detailed reporting (including PowerPoint presentations), including policies, standards, processes and procedures
- Very high attention to detail, with strong skills in managing/presenting data and information
- Demonstrable conceptual, analytical and innovative problem-solving and evaluative skills
- Excellent communication and interpersonal skills to effectively collaborate with stakeholders, and internal teams
Desired Qualifications
- A Master's degree or relevant certifications (e.g., CISSP, CISM, SANS/GIAC, ECIH, GCIH, CEH, DFIR)
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.