
SOC Content Detection Engineer
10 hours ago
WORK FROM NOIDA OFFICE, PLEASE DON'T APPLY IF YOU ARE LOOKING FOR HYBRID OR WORK FROM HOMEDepartment: Managed Services & Support & Security Operations Center (SOC)Job Type: Full-TimeReports To: SOC Team Lead / Head of Cybersecurity ServicesJob Overview: We are seeking a technically skilled and detail-oriented SOC Content Detection Engineer to lead the development, optimization, and governance of detection content across Microsoft Sentinel and Defender XDR platforms. This role is critical to ensuring high-fidelity alerting, minimizing false positives, and aligning detection logic with threat intelligence and MITRE ATT&CK frameworks. The ideal candidate will have deep experience in KQL, Sigma rule development, and SOC telemetry analysis within MSSP environments. Key Responsibilities: 1. Detection Content Development· Design and implement custom detection rules using KQL , Sigma , and behavioral analytics.· Map detection logic to MITRE ATT&CK techniques and threat actor profiles.· Develop UEBA baselines and anomaly detection use cases.2. Alert Tuning & Optimization· Analyze alert performance and lead biweekly tuning cycles to reduce false positives.· Collaborate with L2/L3 analysts to refine detection thresholds and suppression logic.· Maintain a detection content repository with version control and change logs.3. Telemetry & Visibility Engineering· Conduct log source visibility reviews and telemetry gap analysis.· Recommend log onboarding priorities based on threat coverage and customer environments.· Validate parsing, normalization, and enrichment of ingested data.4. Threat Intelligence Integration· Operationalize threat intelligence into detection content and hunt scenarios.· Integrate IOCs, TTPs, and threat actor indicators into rule logic and enrichment workflows.5. Governance & Documentation· Maintain detection playbooks, rule documentation, and tuning reports.· Ensure detection content aligns with MSSP governance frameworks and audit requirements.· Support change control processes for rule deployment and rollback.6. Collaboration & Enablement· Work closely with SOC analysts, onboarding consultants, and automation engineers.· Provide training and guidance on detection logic, rule writing, and tuning best practices.· Participate in incident post-mortems to identify detection gaps and improvement areas.Required Skills & Qualifications: 1. Education· Bachelor’s degree in Cybersecurity, Computer Science, or related field.2. Certifications· Required: Microsoft Certified: Security Operations Analyst Associate· Preferred: MITRE ATT&CK Defender (MAD), GIAC (GCIA, GMON), CompTIA CySA+3. Technical Skills· Expert-level proficiency in KQL, Microsoft Sentinel, and Defender XDR.· Experience with Sigma rule development, UEBA, and SIEM tuning.· Strong understanding of log source telemetry, data normalization, and alert lifecycle.· Familiarity with threat intelligence platforms and MITRE ATT&CK mapping.4. Soft Skills· Analytical mindset with strong attention to detail.· Excellent documentation and presentation skills.· Ability to collaborate across technical and operational teams.· Fluent English communication skills (spoken and written).Experience: 5+ years in SOC or cybersecurity operations , with at least 2 years in detection engineering or SIEM content development .Prior experience in MSSP environments or multi-tenant SOC platforms is highly preferred.
-
SOC Content Detection Engineer
1 day ago
Noida, India Sanganan IT Solutions Pvt Ltd. Full timeWORK FROM NOIDA OFFICE, PLEASE DON'T APPLY IF YOU ARE LOOKING FOR HYBRID OR WORK FROM HOMEDepartment: Managed Services & Support & Security Operations Center (SOC)Job Type: Full-TimeReports To: SOC Team Lead / Head of Cybersecurity ServicesJob Overview: We are seeking a technically skilled and detail-oriented SOC Content Detection Engineer to lead the...
-
SOC Content Detection Engineer
6 hours ago
Noida, India Sanganan IT Solutions Pvt Ltd. Full timeWORK FROM NOIDA OFFICE, PLEASE DON'T APPLY IF YOU ARE LOOKING FOR HYBRID OR WORK FROM HOMEDepartment: Managed Services & Support & Security Operations Center (SOC)Job Type: Full-TimeReports To: SOC Team Lead / Head of Cybersecurity ServicesJob Overview:We are seeking a technically skilled and detail-oriented SOC Content Detection Engineer to lead the...
-
SOC Content Detection Engineer
5 hours ago
Noida, India Sanganan IT Solutions Pvt Ltd. Full timeWORK FROM NOIDA OFFICE, PLEASE DON'T APPLY IF YOU ARE LOOKING FOR HYBRID OR WORK FROM HOME Department: Managed Services & Support & Security Operations Center (SOC) Job Type: Full-Time Reports To: SOC Team Lead / Head of Cybersecurity Services Job Overview:We are seeking a technically skilled and detail-oriented SOC Content Detection Engineer to lead the...
-
SOC Content Detection Engineer
3 days ago
Noida, Uttar Pradesh, India Sanganan IT Solutions Pvt Ltd. Full time ₹ 8,00,000 - ₹ 18,00,000 per yearWORK FROM NOIDA OFFICE, PLEASE DON'T APPLY IF YOU ARE LOOKING FOR HYBRID OR WORK FROM HOMEDepartment:Managed Services & Support & Security Operations Center (SOC)Job Type:Full-TimeReports To:SOC Team Lead / Head of Cybersecurity ServicesJob Overview:We are seeking a technically skilled and detail-orientedSOC Content Detection Engineerto lead the development,...
-
SOC Content Detection Engineer
1 day ago
Noida, Uttar Pradesh, India, Ghaziabad Sanganan IT Solutions Pvt Ltd. Full timeWORK FROM NOIDA OFFICE, PLEASE DON'T APPLY IF YOU ARE LOOKING FOR HYBRID OR WORK FROM HOMEDepartment: Managed Services & Support & Security Operations Center (SOC)Job Type: Full-TimeReports To: SOC Team Lead / Head of Cybersecurity ServicesJob Overview:We are seeking a technically skilled and detail-oriented SOC Content Detection Engineer to lead the...
-
Noida, India Sanganan IT Solutions Pvt Ltd. Full timeWORK FROM NOIDA OFFICE, PLEASE DON'T APPLY IF YOU ARE LOOKING FOR HYBRID OR WORK FROM HOME Department: Managed Services & Support & Security Operations Center (SOC) Job Type: Full-Time Reports To: SOC Team Lead / Head of Cybersecurity Services Job Overview: We are seeking a technically skilled and detail-oriented SOC Content Detection Engineer to lead the...
-
SOC Operations Specialist
10 hours ago
Noida, India Talentmatics Full timeWe are seeking a SOC Operations Specialist to strengthen our cybersecurity defense and response capabilities. The role involves leading threat detection, investigation, and automation efforts using Microsoft Sentinel and Defender XDR . You’ll be working closely with cross-functional teams to enhance the organization’s overall security posture...
-
SOC Operations Specialist
6 hours ago
Noida, India Talentmatics Full timeWe are seeking a SOC Operations Specialist to strengthen our cybersecurity defense and response capabilities. The role involves leading threat detection, investigation, and automation efforts using Microsoft Sentinel and Defender XDR. You’ll be working closely with cross-functional teams to enhance the organization’s overall security posture through...
-
SOC Operations Specialist
6 hours ago
Noida, India Talentmatics Full timeWe are seeking a SOC Operations Specialist to strengthen our cybersecurity defense and response capabilities. The role involves leading threat detection, investigation, and automation efforts using Microsoft Sentinel and Defender XDR. You’ll be working closely with cross-functional teams to enhance the organization’s overall security posture through...
-
Soc Analyst
1 week ago
Delhi, Gurugram, NCR, Noida, India KPMG Assurance and Consulting Services LLP Full time ₹ 1,04,000 - ₹ 13,08,780 per yearJob Discribtion:Global Security Operation Center (GSOC)KPMGs Global Security Operations Centre (GSOC) is internal SOC team supporting KPMG member firms to detect and respond to cyber-attacks to KPMG across locations.GSOC Operation – Monitoring & Alerting (M&A)GSOC – Engineering Services (ES) – SIEM technology management including onboarding...