Lead Security Architecture

14 hours ago


Gurugram, India Airtel Full time

Lead Security Architecture & SOC Engineering

Role Overview: We are seeking a highly skilled Lead Security Architecture & SOC Engineering to design, build, and mature Airtel's threat detection and cyber defense capabilities. This critical role spans Airtel's telecom ecosystem — 2G, 4G, 5G SA/NSA, Fixed Wireless Access (Consumer & Enterprise Services), Wi-Fi, Homes & Broadband, NLD/ILD, DTH, Enterprise, and Transport.

The role will combine security architecture review, threat modeling, detection engineering, and automation to ensure end-to-end visibility and resilience. The ideal candidate will bring expertise in SIEM, SOAR, EDR, NDR, UEBA, threat intel platforms, and open-source technologies, with a proven ability to review existing architectures, onboard new technologies, and drive enterprise-wide integrations. The candidate will also lead the MSS Build team and own BCP/DR and FCAPS lifecycle management of Airtel's security technologies & tools.

This role works independently, owning the SOC Build end-to-end, while leading MSS teams for delivery and collaborating with other Leads as part of a unified security leadership team.

Key Responsibilities:

Strategic Impact

  • Own the security detection architecture across Airtel network, ensuring resilience against evolving telecom and enterprise threats.
  • Conduct security architecture reviews of existing technologies and assess suitability of new platforms/tools before onboarding.
  • Lead threat modeling and detection framework adoption using MoTIF, MITRE ATT&CK, NIST CSF, and telecom-specific standards (3GPP, GSMA FS.11, ISO
  • Define Airtel' SOC (network) engineering roadmap covering SIEM, SOAR, EDR, NDR, UEBA, and automation.

Operational Excellence

  • Lead use case lifecycle management: design, development, fine-tuning, and enrichment across Splunk SIEM, SOAR, ELK, and open-source tools.
  • Lead the MSS Build Team, ensuring high-quality delivery of SOC use cases, integrations, and automation.
  • Manage the full lifecycle (FCAPS) of all security tools and Ensure BCP/DR for security platforms, maintaining continuity.
  • Review and suggest policies for EDR and NDR platforms for proactive detection.
  • Build and optimize SOAR playbooks and automation pipelines to reduce manual response efforts.
  • Drive log source strategy and integrations across telecom and enterprise domains (Core NEs, RAN, OSS/BSS, Broadband, DTH, Transport).
  • Enable threat intelligence integration (global & local feeds, TIP platforms) into detection workflows.
  • Perform gap analysis on detection coverage against MoTIF, MITRE ATT&CK, and adversary simulations.
  • Ensure continuous false positive reduction through correlation rule optimization and AI/ML enrichment.

Leadership & Collaboration

  • Partner with domain owners, architecture/design teams, OEMs and MS partners to embed detection requirements into new and existing projects/nodes/services/technologies.
  • Lead SOC engineering teams to deliver detection content, automation, and log onboarding at scale and SLA-driven delivery.
  • Work closely with SOC Ops, VAPT, and GRC teams to ensure detection readiness, audit compliance, and threat-informed defense.
  • Provide executive-level governance reports on detection coverage, technology health, automation adoption, and architecture reviews.
  • Act as the primary reviewer for all new technology integrations.

Required Skills and Experience:

  • 10-12 years in SOC engineering, detection, or security architecture leadership, with telecom exposure.
  • Strong expertise in security platform eg. SIEM: Splunk, ELK, SOAR Phantom, UEBA, EDR CrowdStrike & SentinelOne, NDR, Threat Intel Platforms: MISP,Open-source stacks Wazuh etc.
  • Hands-on with Python, Bash, PowerShell scripting for automation, parser building, and data enrichment.
  • Experience with BCP/DR planning and execution for critical security platforms.
  • Proven expertise in tool lifecycle/FCAPS management and performance optimization.
  • Deep understanding of telecom protocols and threat vectors.

Preferred Qualifications:

  • Certifications: Splunk Architect, TOGAF, CISSP, CISM, GCDA, OSCP/OSWE (advantage).
  • Familiarity with MoTIF, MITRE ATT&CK, NIST CSF, GSMA FS.11, ISO 27011.
  • Experience in telecom SOC engineering or MSS build team leadership.
  • Exposure to cloud-native 5G security architecture and API security.

Why Join Us?

  • Play a critical leadership role in defining Airtel's security architecture and SOC engineering strategy.
  • Lead MSS Build teams and own end-to-end lifecycle of security tools.
  • Drive BCP/DR readiness and FCAPS management of Airtel's security stack.
  • Collaborate with global OEMs, MSSPs, regulators, and threat intel partners.
  • Shape Airtel's next-gen SOC architecture with automation, intelligence, and resilience.

  • Java Lead

    3 days ago


    Gurugram, India Staffing Full time

    Job Title : Java LeadLocation : Gurgaon (Onsite)Experience : 812 YearsEmployment Type : PermanentJoining Timeline : ImmediateInterview Mode : Virtual (3 Technical Rounds)About the Role : We are hiring a Java Lead with strong hands-on experience in Java and Spring Boot who can lead development teams, drive architectural decisions, and deliver robust...


  • Gurugram, India Egon Zehnder Information And Research Services Pvt Ltd. Full time

    Role & responsibilities Lead - Endpoint Security & Tooling The Lead - Endpoint Security & Tooling plays a pivotal role in overseeing and optimizing a diverse array of endpoint security tools and technologies. The Lead will spearhead the configuration, troubleshooting, and maintenance of security tools, develop and implement robust security policies, conduct...


  • Gurugram, India Egon Zehnder Full time

    Egon Zehnder Egon Zehnder ) is trusted partner to many of the world's most respected organizations and is a leading leadership advisory firm, with more than 560+ consultants and 63 offices in 36 countries spanning Europe, the Americas, Asia Pacific, the Middle East and Africa. Our clients range from the largest corporations to emerging growth companies,...

  • IT Security Lead

    15 hours ago


    Gurugram, India orangemantra Full time

    About The RoleWe are hiring an experienced IT Security Lead to lead our enterprise-wide security initiatives in the Banking & Financial Services domain. You will be responsible for defining and enforcing security standards across applications, infrastructure, data, and user environments, ensuring compliance with RBI and other regulatory requirements. This is...

  • IT Security Lead

    14 hours ago


    Gurugram, India Orange Mantra Full time

    Gurgaon 1 4 to 8 years Full Time About the Role We are hiring an experienced IT Security Lead to lead our enterprise-wide security initiatives in the Banking & Financial Services domain. You will be responsible for defining and enforcing security standards across applications, infrastructure, data, and user environments, ensuring compliance with RBI and...

  • Team Lead Architecture

    15 hours ago


    Gurugram, India Jio Full time

    Posted Date 18 Aug 2025- Function/Business Area Others- Location Gurugram- Job Responsibilities Lead and manage the architecture team to meet project goals. Provide technical guidance and support to team members. Oversee the design and implementation of architectural solutions. Facilitate collaboration between the architecture team and departments. ...


  • Gurugram, India Kyndryl Full time

    Job Qualifications Youre good at what you do and possess the required experience to prove it. However, equally as important – you have a growth mindset; keen to drive your own personal and professional development. You are customer-focused – someone who prioritizes customer success in their work. And finally, you're open and borderless – naturally...

  • Tech Lead

    3 days ago


    Gurugram, India K & R Enterprises Full time

    Job Description : - We are looking for a Tech Lead (5-8 years exp) to join our programming team! Someone who wants to do more than just code; we want a dreamer, a creator, a mentor, someone who likes to discuss ideas and enjoys working with others to design and create great features and products. - Someone who understands that 'what you build' is...

  • Azure Security lead

    16 hours ago


    Gurugram, India Kellton Full time

    Required Skills & Experience 8+ years of experience in DevOps/DevSecOps roles with strong emphasis on Azure cloud. Proficient in Terraform for Azure infrastructure automation. Experience with CI/CD tools such as Azure DevOps, GitHub Actions, Jenkins. Proficient in scripting languages (PowerShell, Bash, Python). Strong understanding of Infrastructure as Code...


  • Gurugram, Gurugram, India Ameriprise Financial Services, LLC Full time

    Job Description The Information Security Architect Should Have - Specializes in cloud security, primarily AWS, working consultatively with the Information Security department and Cloud Engineering teams. - AWS security experience including Identity and Access Management (IAM roles, policies, federation), network security (VPCs, security groups, NACLs, VPC...