Security Operations Center

4 days ago


Bengaluru Karnataka, India Grant Thornton INDUS Full time

2 - 6 Years

8 Openings

Bengaluru

**Role description**:
**Position Overview**

**Key Responsibilities**

**Security Monitoring & Analysis**
- Monitor **SIEM dashboards, EDR s, and security telemetry** for suspicious activity across endpoints, networks, and cloud environments.
- Perform **initial triage, classification, and escalation** of security s based on severity and impact.
- Correlate events from multiple sources to identify potential attack patterns and lateral movement.

**Incident Response & End-User Support**
- Provide **first-line and second-line support** for security incidents, including **phishing, malware infections, and account compromises**.
- Guide end-users through **containment and remediation steps** for security-related issues.
- Document incident details, actions taken, and lessons learned in the incident management system.

**Security Investigation & Threat Hunting**
- Conduct **in-depth investigations** of security incidents, including log analysis, forensic review, and root cause determination.
- Participate in **threat hunting activities** to proactively identify indicators of compromise (IOCs) and advanced threats.
- Collaborate with **threat intelligence teams** to enrich investigations with contextual data.

**Red/Blue/Purple Teaming Support**
- Assist in **Blue Team defensive operations** by validating detection rules and improving fidelity.
- Support **Purple Team exercises** by working with Red Team to simulate attacks and validate detection/response capabilities.
- Provide feedback to improve **SOC playbooks and detection engineering**.

**Incident Management & Reporting**
- Follow **incident response playbooks** and escalate incidents to senior analysts or IR teams as needed.
- Generate **daily, weekly, and monthly SOC reports** on incident trends, response metrics, and threat landscape.
- Ensure compliance with **industry standards** (ISO 27001, NIST CSF) and internal security policies.

**Skills**:
**Required Qualifications**

**Experience**
- **2-4 years** in a **SOC, incident response, or security operations role**.
- Hands-on experience with **SIEM platforms (Splunk, Microsoft Sentinel)**, **EDR tools (CrowdStrike, Defender for Endpoint)**, and **network security monitoring**.

**Technical Skills**
- Knowledge of **attack techniques (MITRE ATT&CK)** and common threat vectors.
- Familiarity with **log analysis, packet capture tools, and forensic techniques**.
- Basic scripting skills (PowerShell, Python) for automation and investigation tasks.

**Certifications (preferred)**
- **CompTIA Security+**, **CySA+**, **GCIA**, or **GCIH**.
- Exposure to **Red/Blue/Purple Teaming methodologies** is a plus.

**Preferred Attributes**
- Strong **analytical and problem-solving skills**.
- Ability to work in a **fast-paced, 24x7 SOC environment**.
- Excellent **communication and documentation skills**.

**About Grant Thornton INDUS**:
‘Grant Thornton INDUS’ comprises GT U.S. Shared Services Center India Pvt Ltd and Grant Thornton U.S. Knowledge and Capability Center India Pvt Ltd. Grant Thornton INDUS is the shared services center supporting the operations of Grant Thornton LLP, the U.S. member firm of Grant Thornton International Ltd. Established in 2012, Grant Thornton INDUS employs professionals across a wide range of disciplines including Tax, Audit, Advisory, and other operational functions. What sets us apart isn’t just what we do - it’s how we do it. We support and enable the firm’s purpose of making business more personal and building trust into every result. We’re collaborators - obsessed with quality and ready for anything - who understand the value of strong relationships. Our professionals are well integrated to seamlessly support the U.S. engagement teams, help increase Grant Thornton’s access to a wide talent pool, and improve operational efficiencies. Empowered people, bold leadership, and distinctive client service are imbibed in the culture at Grant Thornton INDUS. We are a transparent, competitive, and excellence-driven firm that offers an opportunity to be part of something significant. In addition, professionals at Grant Thornton INDUS serve communities in India through inspirational and generous services to give back to the communities they work in. Grant Thornton INDUS has its offices in two locations in India - Bengaluru and Kolkata



  • Bengaluru, Karnataka, India Max System Pvt LTD Full time

    We are looking for a **Data Center Operator** to join our dynamic team. As a Data Center Operator, you will be responsible for the day-to-day operations, maintenance, and monitoring of our data center infrastructure. You will ensure the smooth and efficient functioning of servers, network equipment, and storage systems, while troubleshooting and resolving...


  • Bengaluru, Karnataka, India ALIQAN Technologies Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Hiring Security Operations Center (SOC) L3.LinkedIn IDs must.Mode of hire: C2H mode onlyExperience 6 to 10 YearsNotice period: Immediate.Location: Bangalore/ChandigarhWork Mode - HybridIf Interested can share your resume at Job descriptionACCOUNTABILITIES Develop, enhance, and operationalize IT Security processes.Lead, coach, and mentor a...


  • Bengaluru, Karnataka, India ALIQAN Technologies Full time ₹ 1,20,000 - ₹ 6,00,000 per year

    Hiring Security Operations Center (SOC) L3.LinkedIn IDs must.Mode of hire: C2H mode onlyExperience 6 to 10 YearsNotice period: Immediate.Location: Bangalore/ChandigarhWork Mode - HybridJD:Job descriptionACCOUNTABILITIES Develop, enhance, and operationalize IT Security processes. Lead, coach, and mentor a high-performing, highly engaged team, supporting...


  • Bengaluru, India Insight Global Full time

    We are seeking a Security Operations Center (SOC) Analyst with hands-on experience in Secureworks Taegis and Microsoft Defender (Endpoint, Identity, and Cloud) to join our cybersecurity team. This role is critical for monitoring, analyzing, and responding to security threats across cloud and hybrid environments. The ideal candidate will thrive in...


  • Bangalore, Karnataka, India Grant Thornton Full time

    Position Overview We are seeking a highly motivated SOC Operator to join our global security operations team This role is critical in monitoring detecting analyzing and responding to security incidents across the enterprise The ideal candidate will have hands-on experience in incident response security investigations and threat detection with exposure to Red...


  • Bengaluru, India Insight Global Full time

    Required Skills & Experience7-10 years of experience in a SOC or cybersecurity operations role.Proficiency with Secureworks Taegis and Microsoft Defender (Endpoint, Identity, Cloud), including rule tuning, log analysis, and case management.Experience with SIEM tools (e.g., Splunk, QRadar, Elastic Stack) and SOAR platforms.Strong understanding of TCP/IP, DNS,...


  • Bengaluru, India Insight Global Full time

    Required Skills & Experience7-10 years of experience in a SOC or cybersecurity operations role.Proficiency with Secureworks Taegis and Microsoft Defender (Endpoint, Identity, Cloud), including rule tuning, log analysis, and case management.Experience with SIEM tools (e.g., Splunk, QRadar, Elastic Stack) and SOAR platforms.Strong understanding of TCP/IP, DNS,...


  • Bengaluru, India Insight Global Full time

    Required Skills & Experience7-10 years of experience in a SOC or cybersecurity operations role.Proficiency with Secureworks Taegis and Microsoft Defender (Endpoint, Identity, Cloud), including rule tuning, log analysis, and case management.Experience with SIEM tools (e.g., Splunk, QRadar, Elastic Stack) and SOAR platforms.Strong understanding of TCP/IP, DNS,...


  • Bengaluru, India Insight Global Full time

    Required Skills & Experience7-10 years of experience in a SOC or cybersecurity operations role.Proficiency with Secureworks Taegis and Microsoft Defender (Endpoint, Identity, Cloud), including rule tuning, log analysis, and case management.Experience with SIEM tools (e.g., Splunk, QRadar, Elastic Stack) and SOAR platforms.Strong understanding of TCP/IP, DNS,...


  • Bengaluru, India Insight Global Full time

    Required Skills & Experience 7-10 years of experience in a SOC or cybersecurity operations role. Proficiency with Secureworks Taegis and Microsoft Defender (Endpoint, Identity, Cloud), including rule tuning, log analysis, and case management. Experience with SIEM tools (e.g., Splunk, QRadar, Elastic Stack) and SOAR platforms. Strong understanding of TCP/IP,...