Incident Response Analyst

1 day ago


India Gruve Full time ₹ 12,00,000 - ₹ 36,00,000 per year

About Gruve

Gruve is an innovative software services startup dedicated to transforming enterprises to AI powerhouses. We specialize in cybersecurity, customer experience, cloud infrastructure, and advanced technologies such as Large Language Models (LLMs). Our mission is to assist our customers in their business strategies utilizing their data to make more intelligent decisions. As a well-funded early-stage startup, Gruve offers a dynamic environment with strong customer and partner networks.


About the Role:

The SOC Consultant is responsible for providing expert guidance, implementation support, and optimization strategies for Security Operations Center (SOC) operations. The consultant works closely with client teams to assess, design, implement, and improve SOC processes, technologies, and detection capabilities, ensuring effective threat monitoring, detection, and incident response.

Key Responsibilities:

Roles and Responsibility

  • Conduct SOC maturity assessments, gap analysis, and capability reviews.
  • Provide recommendations on SOC design, architecture, and technology stack.
  • Advise on SOC processes, workflows, and governance aligned with frameworks (NIST, ISO 27001, MITRE ATT&CK).
  • Assist with SIEM, SOAR, EDR, and threat intelligence platform deployment and tuning.
  • Support integration of log sources, endpoints, cloud services, and third-party tools.
  • Develop detection use cases, correlation rules, and automated workflows.
  • Recommend and implement advanced analytics, ML/AI-based anomaly detection, and threat hunting strategies.
  • Provide guidance on incident response playbooks, triage, and escalation procedures.
  • Conduct workshops, training sessions, and hands-on exercises for SOC teams.
  • Develop documentation, SOPs, and best practices for client SOC operations.
  • Mentor SOC analysts on advanced detection, incident handling, and threat hunting techniques.
  • Support generation of SOC KPIs, dashboards, and executive reports.
  • Assist clients in preparing for cybersecurity assessments, audits, or certifications.
  • Ensure alignment with compliance, audit, and regulatory requirements.
  • Keep abreast of emerging threats, attack techniques, and industry trends.
  • Suggest improvements to enhance efficiency, reduce false positives, and strengthen SOC capabilities.
  • Recommend SOC process optimizations and technology upgrades.

Basic Qualifications:

  • Bachelor's degree in Cybersecurity, Computer Science, or related field; Master's preferred.
  • 5 –10 years of experience in SOC operations, threat hunting, incident response, or cybersecurity consulting.
  • Strong understanding of SIEM, SOAR, EDR/XDR, and network security technologies.
  • Experience in designing or tuning detection use cases and correlation rules.
  • Knowledge of cybersecurity frameworks: MITRE ATT&CK, NIST, ISO 27001, CIS Controls.
  • Strong analytical, problem-solving, and incident response skills.

Preferred Qualifications:

  • Relevant certifications preferred: CISSP, CISM, GCIH, GCIA, CEH, CCSP, or vendor-specific SIEM/SOAR certifications.

Why Gruve

At Gruve, we foster a culture of innovation, collaboration, and continuous learning. We are committed to building a diverse and inclusive workplace where everyone can thrive and contribute their best work. If you're passionate about technology and eager to make an impact, we'd love to hear from you.

Gruve is an equal opportunity employer. We welcome applicants from all backgrounds and thank all who apply; however, only those selected for an interview will be contacted.



  • India Optel Group Full time

    OPTEL Responsible Agile Innovative OPTEL is a global company that develops transformative software middleware and hardware solutions to secure and ensure supply chain compliance in major industry sectors such as pharmaceuticals and food with the goal of reducing the effects of climate change and enabling sustainable living If you are driven by the desire to...


  • Bengaluru, India Vontier Full time

    Job Description As the Information Security Senior Global Incident Response Analyst, you will play a critical role in the organization's cybersecurity efforts. The position is responsible for acting as a senior analyst during security incidents, coordinating efforts with various members of the Incident Response Team, ensuring Preparation, Identification,...


  • Hyderabad, India Capgemini Full time

    Job Description Our Client is one of the United States largest insurers, providing a wide range of insurance and financial services products with gross written premium well over US$25 Billion (P&C). They proudly serve more than 10 million U.S. households with more than 19 million individual policies across all 50 states through the efforts of over 48,000...


  • Hyderabad - Patrikanagar, India Johnson Controls Ltd Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Tech Spprt Rep III What you will do The Global Incident Analyst will utilize internal processes and external tools to identify real or potential risks related to the safety and security of the client personnel and assets. The Analyst accurately synthesizes emerging and developing information, communicates actionable intelligence, contributes to travel...


  • Pune, India Global Payments Full time

    Job Description Every day, Global Payments makes it possible for millions of people to move money between buyers and sellers using our payments solutions for credit, debit, prepaid and merchant services. Our worldwide team helps over 3 million companies, more than 1,300 financial institutions and over 600 million cardholders grow with confidence and achieve...

  • Incident Manager

    3 weeks ago


    India Talentoj Full time

    Roles and Responsibilities: Act as the primary point of contact for major incidents and escalations, ensuring rapid response and communication across technical and business teams. Lead and coordinate incident resolution efforts involving multiple support teams and stakeholders to restore service as quickly as possible. Manage the end-to-end incident...


  • Noida, India Global Payments Inc. Full time

    Job Description Summary DescriptionSummary of This Role Works to perform a set of activities where specialized roles / functions provide value to customers in the form of Incident Management, Change Management, and/or Problem Management. Collaborates with internal technical resources for incident and problem management, responding to issues with actual or...

  • Incident Manager

    3 weeks ago


    India Talentoj Full time

    Roles and Responsibilities:Act as the primary point of contact for major incidents and escalations, ensuring rapid response and communication across technical and business teams.Lead and coordinate incident resolution efforts involving multiple support teams and stakeholders to restore service as quickly as possible.Manage the end-to-end incident lifecycle...

  • Incident Manager

    3 weeks ago


    india, IN Talentoj Full time

    Roles and Responsibilities:Act as the primary point of contact for major incidents and escalations, ensuring rapid response and communication across technical and business teams.Lead and coordinate incident resolution efforts involving multiple support teams and stakeholders to restore service as quickly as possible.Manage the end-to-end incident lifecycle...


  • India NR Consulting Full time

    Title SIEM Analyst Incident Responder Threat Hunter - L2 Location Hybrid Exp 3-5 yrs Ability to work with very large and complex network Self-motivated individual and creative thinker who will take ownership of tasks and projects able to work with the team and manages tasks effectively and has a proven track record of consist and organized outputs The ideal...