We’re seeking a future team member for the role of Senior Specialist-SOC Analyst to join our Security Operations center team. This role is located in Pune, India
In this role, you’ll make an impact in the following ways:
- Lead triage and investigation of security alerts, escalating and coordinating incident response as needed.
- Perform root cause analysis, scope affected assets, and drive containment, eradication, and recovery.
- Correlate events across SIEM, EDR, IDS/IPS, firewalls, cloud logs, and identity platforms to identify true positives and reduce false positives.
- Develop, refine, and maintain SOC playbooks, runbooks, and detection logic aligned to the MITRE ATT&CK framework.
- Mentor junior analysts and provide guidance on investigation techniques, documentation standards, and operational best practices.
- Coordinate with Threat Intelligence to enrich investigations, track adversary TTPs, and proactively hunt for indicators of compromise.
- Partner with Engineering teams to tune detections, improve log fidelity, and strengthen preventive controls.
- Create clear, actionable incident reports and executive summaries; contribute to metrics and trend analysis.
- Support purple team exercises and post-incident reviews to capture lessons learned and drive continuous improvement.
- Ensure adherence to regulatory and security policies; maintain audit-ready documentation for investigations and incidents.
To be successful in this role, we’re seeking the following:
- 5+ years of experience in SOC operations, incident response, or threat detection (Tier 2 level).
- Strong hands-on expertise with: SIEM platforms (e.g., Splunk, Sentinel, QRadar) , EDR tools (e.g., CrowdStrike, Microsoft Defender) , SOAR platforms
- Deep understanding of: Network security, Windows/Linux systems, and identity management , Cloud logging and security monitoring
- Experience with: MITRE ATT&CK framework, threat hunting, and detection tuning , Incident response frameworks (NIST 800-61, NIST CSF, CIS Controls)
- Strong analytical, problem-solving, and stakeholder management skills.
- Proficiency in scripting/automation (Python, PowerShell).
- Excellent documentation and communication skills, including executive reporting.
- Relevant certifications such as GCIH, GCIA, GCFA, GNFA, CISSP, or CCSP or equivalent experience
- Experience with: Case management tools (e.g., ServiceNow) , Threat intelligence platforms and malware analysis tools
- Prior exposure to large-scale enterprise SOC environments.
- The position requires flexibility to work across shifts and to support weekend and public holiday coverage as operational needs require.
- Locations
- Pune, Maharashtra, India
- Experience
- 5+ years