Lead - SOC Analyst

6 days ago


Chennai, Tamil Nadu, India Freshworks Full time ₹ 13,44,000 - ₹ 24,48,000 per year
Company Description

Organizations everywhere struggle under the crushing costs and complexities of "solutions" that promise to simplify their lives. To create a better experience for their customers and employees. To help them grow. Software is a choice that can make or break a business. Create better or worse experiences. Propel or throttle growth. Business software has become a blocker instead of ways to get work done.

There's another option. Freshworks. With a fresh vision for how the world works.

At Freshworks, we build uncomplicated service software that delivers exceptional customer and employee experiences. Our enterprise-grade solutions are powerful, yet easy to use, and quick to deliver results. Our people-first approach to AI eliminates friction, making employees more effective and organizations more productive. Over 72,000 companies, including Bridgestone, New Balance, Nucor, S&P Global, and Sony Music, trust Freshworks' customer experience (CX) and employee experience (EX) software to fuel customer loyalty and service efficiency. And, over 4,500 Freshworks employees make this possible, all around the world.

Fresh vision. Real impact. Come build it with us.

Job Description

We are seeking a highly experienced and forward-thinking Lead SOC Engineer to help drive the next generation of SOC capabilities. This role requires a strong foundation in cloud security, detection engineering, and SOC operations, along with a working knowledge or hands-on experience in AI/ML to support both advanced detection use cases and agentic analyst automation. You will also be responsible for SOAR engineering, particularly with Palo Alto XSOAR, and for ensuring high-quality delivery of SOC BAU (Business-as-Usual) functions.

Key Responsibilities:

  • Lead SOC engineering efforts, providing technical mentorship and guidance to analysts and junior engineers.

  • Design and implement cloud-native detection use cases leveraging logs and telemetry from AWS, Azure, and SaaS platforms.

  • Develop and optimize detection content using SIEM and cloud-native security tools, aligned with frameworks such as MITRE ATT&CK.

  • Build and apply AI/ML models not only for advanced threat detection but also to automate analyst workflows (agentic analyst automation), such as:

     

    • Intelligent alert triage and enrichment

    • Decision support for incident classification

    • Contextual correlation across incidents

    • Summarization and automated reporting

       

  • Engineer and automate response workflows using Palo Alto XSOAR, including the development of scalable, reusable playbooks.

  • Maintain and continuously improve SOC BAU processes — including alert handling, incident response, documentation, and metrics/reporting.

     

Stay current with evolving threat landscapes, emerging technologies, and innovative applications of AI/ML in cybersecurity.

Qualifications
  • 5+ years of experience in cybersecurity, with at least 2+ years in a senior or lead SOC engineering role.

  • Hands-on experience in cloud environments (AWS, Azure) with a focus on security monitoring and log analysis.

  • Proven expertise with SIEM platforms (e.g., Splunk, Sentinel, QRadar) and developing custom detection rules.

  • Working knowledge or hands-on experience with AI/ML concepts, such as:

     

    • Supervised and unsupervised learning

    • Natural Language Processing (NLP)

    • Large Language Models (LLMs)

    • Model evaluation and deployment pipelines

       

  • Demonstrated interest or experience in agentic automation — using AI to replicate or augment analyst decision-making.

  • Strong experience with SOAR tools (preferably Palo Alto XSOAR), including playbook development and automation logic.

  • Proficiency in scripting languages (e.g., Python, Bash, PowerShell) for automation and integration tasks.

  • Strong understanding of SOC processes, including incident detection, triage, response, threat hunting, and reporting.

  • Excellent communication, collaboration, and documentation skills.

Preferred Certifications:

  • Security certifications: GCIH, GCIA, GCFA, CISSP, CCSP

     

  • Cloud certifications: AWS Certified Security Specialty, Azure Security Engineer Associate, or equivalent

     

  • SOAR/Automation: Palo Alto XSOAR Certified Engineer (or equivalent)

     

  • AI/ML: Certifications or coursework in AI/ML, NLP, or Data Science (Coursera, Google, Microsoft, etc.)

     

Additional Information

At Freshworks, we have fostered an environment that enables everyone to find their true potential, purpose, and passion, welcoming colleagues of all backgrounds, genders, sexual orientations, religions, and ethnicities. We are committed to providing equal opportunity and believe that diversity in the workplace creates a more vibrant, richer environment that boosts the goals of our employees, communities, and business. Fresh vision. Real impact. Come build it with us.


  • SOC Analyst

    4 days ago


    Chennai, Tamil Nadu, India Laya Tech Pvt Ltd Full time

    Job Summary:We are looking for a skilled and proactive SOC Analyst to join our cybersecurity team at Laya Tech Pvt. Ltd. The candidate will be responsible for monitoring, analyzing, and responding to cybersecurity incidents within our Security Operations Center (SOC). The ideal candidate should have hands-on experience with SIEM tools, incident response, and...

  • Senior SOC Analyst

    3 days ago


    Chennai, Tamil Nadu, India Freshworks Full time

    Company Description Organizations everywhere struggle under the crushing costs and complexities of "solutions" that promise to simplify their lives. To create a better experience for their customers and employees. To help them grow. Software is a choice that can make or break a business. Create better or worse experiences. Propel or throttle growth. Business...

  • SOC Coordinator

    2 days ago


    Chennai, Tamil Nadu, India RM Technologies Full time

    We're Hiring – SOC Coordinator (TL / DL)Changepond is looking for experienced professionals to join ourSecurity Operations Center (SOC) Analyst Coordinationteam inChennai. Positions AvailableTeam Lead (TL) – 8+ years Budget: ₹25 LPA Must have team handling experienceDelivery Lead (DL) – 13+ years Budget: ₹30 LPA Role OverviewAs a SOC Coordinator,...


  • Chennai, Tamil Nadu, India DXC Technology Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Job Description:Position request for SOC Analyst (Cortex XSIAM) with 5-7 years experience.SOC L1 Analyst RoleRole and ResponsibilitiesDXC is seeking an experienced SOC Analyst to support our customer. As a SOC Analyst, you will play a key role in the SOC, you will be the frontline defender monitoring and responding to security alerts using advanced security...


  • Chennai, Tamil Nadu, India job Booster Full time ₹ 6,00,000 - ₹ 12,00,000 per year

    8–10 yrs in cybersecurity SOC (L2/L3) experience,current L3, incident response, threat hunting,log analysis & SIEM tools (Sentinel, Splunk, Securonix). Must hold active CISSP, CISM or CEH certifications along with ISO 27001 & NIST framework knowledge


  • Chennai, Tamil Nadu, India Laya Tech Full time ₹ 15,00,000 - ₹ 60,00,000 per year

    Company DescriptionLaya Tech is a System Integration and Security Consulting company dedicated to delivering top-tier IT solutions that help clients achieve their business objectives. Specializing in Enterprise Infrastructure and Cyber Security Architecture, Laya Tech provides services that include consultation, design, and deployment of advanced...


  • Chennai, Tamil Nadu, India Scybers Full time ₹ 4,50,000 - ₹ 9,00,000 per year

    As a GRC Analyst, you will leverage your experience and knowledge of business & industry security issues / trends and will advise our clients on the cyber risks applicable to their business domains. You will be accountable for ensuring a quality delivery of service as per the terms mentioned in the engagement letter.Your role would require you to engage with...

  • Lead

    13 hours ago


    Chennai, Tamil Nadu, India Mindsprint Full time

    Dear Candidate,we are hiring for SOC Tools Engineering and Operation lead at Mindsprint, Chennai.Exp: 5-9 YearsJob location: ChennaiWork Mode: HybridQualification: BE/BTech/MSC/ or equivalent degreeNotice period: 0-30 daysHow to apply: Please send your updated resume to Position Summary:The SOC Engineering and Operational Lead Engineer is responsible for the...


  • Chennai, Tamil Nadu, India EPAM Systems Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    EPAM is a leading global provider of digital platform engineering and development services. We are committed to having a positive impact on our customers, our employees, and our communities. We embrace a dynamic and inclusive culture. Here you will collaborate with multi-national teams, contribute to a myriad of innovative projects that deliver the most...


  • Chennai, Tamil Nadu, India, Tamil Nadu Exela Technologies Full time

    Key ResponsibilitiesThreat Monitoring and Detection:Monitor security alerts, events, and incidents using SIEM tools and other security technologies.Analyze logs and network traffic to identify anomalous behavior or potential security breaches.Incident Response:Investigate security incidents and provide recommendations for containment and...