Senior Cybersecurity SOC Engineer – Threat Hunting

7 hours ago


Bengaluru, Karnataka, India Triune Infomatics Inc Full time ₹ 20,00,000 - ₹ 25,00,000 per year

Role: Senior Cybersecurity SOC Engineer – Threat Hunting & Incident Response

Working Hours: Monday to Friday, 9 AM – 5 PM PST (U.S. Business Hours)

Reporting To: Security Operations (SecOps) Leader – USA

About the Role:
We are seeking an elite Senior Cybersecurity SOC Engineer—a hands-on security expert with deep technical knowledge and proven experience in threat hunting, incident response, and SOC program maturity. This role will report directly to the SecOps Manager in India and requires someone who thrives in a collaborative environment and leads by example. If you are a true expert with Microsoft Sentinel, CrowdStrike, MDE, SOAR platforms, MITRE ATT&CK framework, APT detection, and scripting, this role offers a great opportunity to build and defend a modern SOC environment.

Please note: This is not a SOC Analyst role.
Candidates must have 7-10+ years of hands-on SOC Engineer experience with deep threat hunting and incident response expertise. Must be available to work U.S. business hours (PST timezone).

Key Responsibilities:

  • Threat Hunting:
  • Lead proactive threat hunting initiatives aligned with MITRE ATT&CK framework to identify, investigate, and mitigate advanced threats and adversary behaviors.
  • Use telemetry from Microsoft Sentinel, CrowdStrike Falcon, MDE, and other tools to detect anomalies and emerging attack patterns.
  • Develop and optimize threat hunting queries and playbooks using KQL, Python, and PowerShell.
  • Continuously improve detection coverage to reduce dwell time and prevent breaches.
  • Incident Response:
  • Design, implement, and maintain an effective Incident Response (IR) program and playbooks covering APTs, ransomware, insider threats, and complex multi-stage attacks.
  • Lead investigations on high-fidelity security alerts, conduct root cause analysis, containment, eradication, and recovery.
  • Utilize CrowdStrike Falcon EDR (including RTR), Microsoft Defender for Endpoint, and Tenable for comprehensive endpoint and vulnerability correlation during incidents.
  • Perform network forensics and packet analysis using Fortinet and Palo Alto firewall logs.
  • Manage cloud security incidents within Azure (Azure Sentinel, Security Center) and Microsoft 365 environments.
  • Coordinate with internal teams and external partners for timely, coordinated response to security incidents.
  • SOC Engineering & Program Maturity:
  • Build and mature the SOC's SIEM and SOAR architecture, detection engineering, and response automation.
  • Develop advanced detection logic, hunting queries, and automation workflows.
  • Mentor junior SOC members and act as a technical escalation point.
  • Collaborate with managed SOC partners and other security teams to enhance detection and response capabilities.

Required Experience & Skills:

  • 7+ years of hands-on experience in SOC engineering, with a strong focus on threat hunting and incident response.

Expertise in:

  • Microsoft Sentinel (SIEM & SOAR) and advanced KQL queries for hunting and IR
  • CrowdStrike Falcon EDR (RTR, IOAs, threat containment)
  • Microsoft Defender for Endpoint (MDE) telemetry and IR
  • Tenable vulnerability correlation during investigations
  • Fortinet and Palo Alto firewalls for forensic analysis
  • Microsoft Entra ID (Azure AD), SSO, Conditional Access, MFA security controls
  • Deep operational knowledge of MITRE ATT&CK for threat hunting, detection tuning, and adversary simulation.
  • Proven ability to analyze and respond to APTs, malware persistence, lateral movement, privilege escalation, command & control, and data exfiltration incidents.
  • Strong scripting skills (KQL, Python, PowerShell) for threat hunting automation and incident response workflows.
  • Experience with SOAR platforms integration and automation (Microsoft Sentinel SOAR, Palo Alto XSOAR).
  • Excellent communication, collaboration, and mentoring abilities.
  • Must be able to work U.S. business hours (PST timezone).

Preferred Certifications:

  • GCFA, GCIH, GCTI, CISSP, AZ-500, MS-500, or equivalent.
  • MITRE ATT&CK Defender (MAD), OSCP, or Red Team certifications are a strong plus.


  • Bengaluru, Karnataka, India ColorTokens Inc. Full time

    About ColorTokensAt ColorTokens, we empower businesses to stay operational and resilient in an increasingly complex cybersecurity landscape. Breaches happen—but with our cutting-edge ColorTokens Xshield platform, companies can minimize the impact of breaches by preventing the lateral spread of ransomware and advanced malware. We enable organizations to...

  • SOC Analyst

    2 days ago


    Bengaluru, Karnataka, India GLOBALTEK PROSOLUTIONS PRIVATE LIMITED Full time ₹ 4,00,000 - ₹ 8,00,000 per year

    Company DescriptionGLOBALTEK PROSOLUTIONS PRIVATE LIMITED is based in Andhra Pradesh, India, with its headquarters located at NO-2D, SDF-II, VSEZ DUVVADA, VISAKHAPATNAM. The company is committed to delivering high-quality and innovative solutions for various business challenges. Driven by expertise and dedication, GLOBALTEK PROSOLUTIONS supports a broad...

  • SOC Lead Engineer

    4 days ago


    Bengaluru, Karnataka, India Versa Networks Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    SOC Lead EngineerLocation:BangaloreExperience: 8- 15 YRSJob SummaryThe SOC Lead Engineer is responsible for overseeing the Security Operations Center team, ensuring 24/7 monitoring, detection, analysis, and response to security threats.This role involves managing incident response processes, optimising security tools, and leading a team of security analysts...

  • Soc Engineer

    2 weeks ago


    Bengaluru, Karnataka, India Bloom Energy Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Bloom Energy, a solid oxide fuel cell company, is currently expanding its cybersecurity incident monitoring and response team and is looking for Security Operations Center (SoC) Analysts. The person working in the SOC team operates the security monitoring solutions, reacting timely to security events as identified. This individual should be a dynamic...

  • SOC L3 Analyst

    1 week ago


    Bengaluru, Karnataka, India Hinduja Global Solutions (HGS) Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Job DescriptionThe SOC L3 Analyst is a senior-level position responsible for handling the most complex security incidents and providing strategic direction for the SOC team. This role involves leading shifts, mentoring junior analysts, and providing strategic oversight to ensure effective detection, analysis, and response to security incidents. The L3...


  • Bengaluru, Karnataka, India Cyble Full time ₹ 8,00,000 - ₹ 12,00,000 per year

    About Cyble:Cyble is revolutionizing the landscape of cybersecurity intelligence. Founded in 2019, Cyble began as a visionary college project and has quickly transformed into a leading force in proactive cyber threat detection and mitigation, that is now globally significant, with people in 20 countries - Headquartered in Alpharetta, Georgia, and with...


  • Bengaluru, Karnataka, India SecPod Full time ₹ 20,00,000 - ₹ 25,00,000 per year

    Job Title: Senior AI Engineer – Cybersecurity (Prevention-First Approach)Location:Bengaluru, India (In-Office)Company:SecPod TechnologiesExperience:6+ years in AI/ML development with a focus on cybersecurity or any technical domainAbout SecPodAtSecPod, we are driven by aPrevention-First philosophy, building intelligent cybersecurity platforms that detect,...


  • Bengaluru, Karnataka, India KnowBe4 Full time ₹ 9,00,000 - ₹ 12,00,000 per year

    About KnowBe4Join the cybersecurity company that puts security first; literally and without compromise. At KnowBe4, our AI-driven Human Risk Management platform empowers over 70,000 organizations worldwide to strengthen their security culture and transform their workforce from their biggest vulnerability into their strongest security asset. As the undisputed...


  • Bengaluru, Karnataka, India Mphasis Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Job Description: Senior Manager – SOC OperationsRole OverviewWe are seeking an experienced, hands-on Senior Manager to lead our Security Operations Center (SOC). The ideal candidate will bring deep technical expertise, proven leadership experience, and a track record of building, optimizing, and maturing SOC functions. This individual will play a critical...


  • Bengaluru, Karnataka, India Fidelity Investments Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Job Description:Job Title: Senior Cybersecurity AnalystThe Purpose of this RoleFidelity's Security Operations Center (SOC) is seeking a Lead SOC Analyst. This is an opportunity to meaningfully contribute to a highly visible security operations function with global impact upon Fidelity, its affiliates, business units, partners, and customers. While working as...