
(Immediate joiners only)Senior Cybersecurity SOC Engineer – Threat Hunting
1 day ago
Role: Senior Cybersecurity SOC Engineer – Threat Hunting & Incident ResponseWorking Hours: Monday to Friday, 9 AM – 5 PM PST (U.S. Business Hours)Reporting To: Security Operations (SecOps) Leader – USAAbout the Role: We are seeking an elite Senior Cybersecurity SOC Engineer—a hands-on security expert with deep technical knowledge and proven experience in threat hunting, incident response, and SOC program maturity. This role will report directly to the SecOps Manager in India and requires someone who thrives in a collaborative environment and leads by example. If you are a true expert with Microsoft Sentinel, CrowdStrike, MDE, SOAR platforms, MITRE ATT&CK framework, APT detection, and scripting, this role offers a great opportunity to build and defend a modern SOC environment.Please note: This is not a SOC Analyst role. Candidates must have 7-10+ years of hands-on SOC Engineer experience with deep threat hunting and incident response expertise. Must be available to work U.S. business hours (PST timezone).Key Responsibilities:- Threat Hunting: - Lead proactive threat hunting initiatives aligned with MITRE ATT&CK framework to identify, investigate, and mitigate advanced threats and adversary behaviors. - Use telemetry from Microsoft Sentinel, CrowdStrike Falcon, MDE, and other tools to detect anomalies and emerging attack patterns. - Develop and optimize threat hunting queries and playbooks using KQL, Python, and PowerShell. - Continuously improve detection coverage to reduce dwell time and prevent breaches. - Incident Response: - Design, implement, and maintain an effective Incident Response (IR) program and playbooks covering APTs, ransomware, insider threats, and complex multi-stage attacks. - Lead investigations on high-fidelity security alerts, conduct root cause analysis, containment, eradication, and recovery. - Utilize CrowdStrike Falcon EDR (including RTR), Microsoft Defender for Endpoint, and Tenable for comprehensive endpoint and vulnerability correlation during incidents. - Perform network forensics and packet analysis using Fortinet and Palo Alto firewall logs. - Manage cloud security incidents within Azure (Azure Sentinel, Security Center) and Microsoft 365 environments. - Coordinate with internal teams and external partners for timely, coordinated response to security incidents. - SOC Engineering & Program Maturity: - Build and mature the SOC’s SIEM and SOAR architecture, detection engineering, and response automation. - Develop advanced detection logic, hunting queries, and automation workflows. - Mentor junior SOC members and act as a technical escalation point. - Collaborate with managed SOC partners and other security teams to enhance detection and response capabilities.Required Experience & Skills:- 7+ years of hands-on experience in SOC engineering, with a strong focus on threat hunting and incident response.Expertise in:- Microsoft Sentinel (SIEM & SOAR) and advanced KQL queries for hunting and IR - CrowdStrike Falcon EDR (RTR, IOAs, threat containment) - Microsoft Defender for Endpoint (MDE) telemetry and IR - Tenable vulnerability correlation during investigations - Fortinet and Palo Alto firewalls for forensic analysis - Microsoft Entra ID (Azure AD), SSO, Conditional Access, MFA security controls - Deep operational knowledge of MITRE ATT&CK for threat hunting, detection tuning, and adversary simulation. - Proven ability to analyze and respond to APTs, malware persistence, lateral movement, privilege escalation, command & control, and data exfiltration incidents. - Strong scripting skills (KQL, Python, PowerShell) for threat hunting automation and incident response workflows. - Experience with SOAR platforms integration and automation (Microsoft Sentinel SOAR, Palo Alto XSOAR). - Excellent communication, collaboration, and mentoring abilities. - Must be able to work U.S. business hours (PST timezone).Preferred Certifications:- GCFA, GCIH, GCTI, CISSP, AZ-500, MS-500, or equivalent. - MITRE ATT&CK Defender (MAD), OSCP, or Red Team certifications are a strong plus.
-
Cybersecurity Technology Delivery Leader
1 day ago
New Delhi, India Microland Limited Full timeMicroland is seeking aCybersecurity Technology Delivery Leaderwith deep expertise in Security Operations Center (SOC) solutions to lead complex, multi-client cybersecurity programs. This senior leadership role is part of our Technology Delivery Unit and is critical to delivering robust, scalable, and resilient SOC services across enterprise environments.As...
-
Threat Hunter
1 day ago
New Delhi, India Persistent Systems Full timeAbout Position:Threat Hunter to proactively seek out and identify advanced threats that evade traditional security measures.Role: Threat Hunter Location: Pune and Hyderabad Experience: 4+ Years Job Type: Full Time EmploymentWhat You'll Do:Analyze security events and incidents to determine the tactics, techniques, and procedures (TTPs) used by threat actors....
-
soc
1 week ago
Gurugram, New Delhi, Noida, India ERM Placement Services Full time US$ 90,000 - US$ 1,20,000 per yearResponsibilities -L1 - Minimum 2 years of relevant experience in SOC/Incident Management/Incident Response /Threat Detection Engineering/ Vulnerability Management/ SOC platform management/ Automation/Asset Integration/ Threat Intel Management /Threat Hunting.L2 - Minimum 4 years of relevant experience in SOC/Incident Management/Incident Response /Threat...
-
Cybersecurity Engineer
6 days ago
Delhi, NCR, New Delhi, India Gigabit Technologies Full time ₹ 4,00,000 - ₹ 12,00,000 per yearPreferred candidate profile2 to 4 years of experience in cybersecurity, SOC operations or endpoint/identity security engineering.Hands-on expertise with Cortex XDR, Cortex SOAR, Cortex XSIAM, MDM solutions, and Okta.Strong understanding of endpoint protection, threat detection, and incident response workflows.Solid grasp of identity management principles,...
-
SOC Administrator
2 days ago
Delhi, India Women Entrepreneur Network Full time**SOC administrator*** Summary Experience Required: **3 - 6 Years** **Location**: **Delhi** Category: **Management Consulting** **Experience**: - Minimum 8 years of experience out of which, minimum 5 years relevant experience in SOC services, SOC administration, threat analysis and hunting, SOC configuration and management. - Certification in security...
-
Security Operations Center
1 day ago
New Delhi, India ColorTokens Inc. Full timeAbout ColorTokens AtColorTokens , we empower businesses to stay operational and resilient in an increasingly complex cybersecurity landscape. Breaches happen—but with our cutting-edgeColorTokens Xshield™ platform , companies can minimize the impact of breaches by preventing the lateral spread of ransomware and advanced malware. We enable organizations to...
-
Threat Intelligence Lead
2 days ago
New Delhi, India Resecurity Full timeCompany DescriptionResecurity is an American cybersecurity company based in Los Angeles, California. They specialize in providing next-generation endpoint protection and intelligence-driven cybersecurity solutions to leading Fortune 500 corporations and governments globally.Role DescriptionThis is a full-time hybrid role for a Threat Intelligence Lead at...
-
Threat intelligence lead
3 weeks ago
New Delhi, India Resecurity Full timeCompany Description Resecurity is an American cybersecurity company based in Los Angeles, California. They specialize in providing next-generation endpoint protection and intelligence-driven cybersecurity solutions to leading Fortune 500 corporations and governments globally. Role Description This is a full-time hybrid role for a Threat Intelligence Lead at...
-
Threat Intelligence Lead
1 day ago
New Delhi, India Resecurity Full timeCompany Description Resecurity is an American cybersecurity company based in Los Angeles, California. They specialize in providing next-generation endpoint protection and intelligence-driven cybersecurity solutions to leading Fortune 500 corporations and governments globally.Role Description This is a full-time hybrid role for a Threat Intelligence Lead at...
-
Threat Intelligence Lead
1 day ago
new delhi, India Resecurity Full timeCompany Description Resecurity is an American cybersecurity company based in Los Angeles, California. They specialize in providing next-generation endpoint protection and intelligence-driven cybersecurity solutions to leading Fortune 500 corporations and governments globally. Role Description This is a full-time hybrid role for a Threat Intelligence Lead at...