Security Operations Center Analyst

5 days ago


Hyderabad, Telangana, India ServCrust Full time

About US

At ServCrust, we're transforming the way stone aggregates are sourced and delivered for construction

projects. Our digital platform simplifies procurement, improves efficiency, and ensures consistent quality

— helping construction companies, contractors, and developers access the materials they need quickly

and reliably. We blend innovation and technology to bring transparency and ease to the construction

supply chain.

Role Overview

We are seeking a skilled and proactive SOC Analyst / Threat Hunter (L2) to join our Security Operations

Center. This role is responsible for conducting in-depth investigations of security events, engaging in

proactive threat hunting,and contributing to incident response activities. The analyst will also support the

tuning of detection logic, monitoring tool health, and security operations across both on-premises and

AWS cloud environments. The role sits at the core of our operational defense capability.

Key Responsibilities

1. Security Operations, Incident Response & Cloud Security


• Triage and investigate alerts from SIEM, EDR, NDR, and CSPM platforms.


• Correlate logs from endpoints, network, and cloud-native services.


• Investigate escalated alerts related to IAM misuse, anomalous API calls, privilege

escalations, exposed storage (e.g., S3 buckets), and suspicious cloud workloads.


• Assist in containment and response of cloud-based incidents: isolate workloads, revoke

keys, suspend IAM users, apply NSG/security group modifications.


• Perform root cause analysis and support recovery actions for both cloud and on-prem

threats.


• Validate security tool status across environments, including CSPM/CIEM tools and ensure

coverage across cloud workloads.


• Participate in post-incident reviews, update cloud-specific playbooks and ensure IR

readiness across hybrid environments.

2. Threat Hunting, Detection Engineering & Continuous Improvement


• Conduct proactive threat hunts across cloud and on-prem logs to uncover hidden threats.


• Use cloud telemetry to detect behavioral anomalies or policy violations.


• Leverage threat intel and TTPs to hunt for signs of known actor techniques across the

environment (MITRE ATT&CK for Cloud).


• Work with engineering teams to fine-tune and improve cloud-specific detections (e.g.,

alerting on disabled logging, overly permissive IAM, use of stolen API keys).


• Develop or update detection rules and recommend automation playbooks for cloud

incident response.


• Share hunting findings and detection improvements in weekly SOC knowledge sessions.


• Document use cases, lessons learned, and detection enhancements for broader SOC

adoption.

Weekly / Monthly Contributions


• Participate in IR reviews and quality assurance across hybrid threats.


• Review cloud account posture using CSPM tools and flag unresolved misconfigurations.


• Analyze cloud activity trends and deliver reporting on identity risks, misconfigurations, and

emerging attack patterns.


• Contribute to red team debriefs and cloud simulation test cases, update and maintain

playbooks.


• Support cross-training within SOC for improved cloud security operations maturity.

Required Qualifications


• 2–4 years in a SOC, IR, or security monitoring role.


• Hands-on experience with log analysis and investigation in cloud platforms: AWS

(CloudWatch, CloudTrail, GuardDuty).


• Solid grasp of attacker TTPs in cloud environments: exposed credentials, over-permissioned

roles, container abuse, cloud lateral movement.


• Proficiency with SIEM/EDR platforms and investigation workflows.


• Basic scripting or automation knowledge (Python, PowerShell, Boto3, etc.).


• Familiarity with cloud-native security tools (AWS Config).


• Certifications like CySA+, AWS Security Specialty are desirable.

Soft Skills & Traits


• Investigative mindset with high attention to detail.


• Collaborative team player with strong communication skills.


• Ability to work under pressure in live incidents or fast-paced SOC environments.


• Curiosity-driven attitude toward evolving threats and cloud services.



  • Hyderabad, Telangana, India Insight Global Full time ₹ 9,00,000 - ₹ 12,00,000 per year

    We are seeking a Security Operations Center (SOC) Analyst with hands-on experience in Google SecOps Chronicle to join our cybersecurity team. This role is critical to monitoring, analyzing, and responding to security threats across cloud and hybrid environments. The ideal candidate will be comfortable working in high-pressure situations, collaborating across...


  • Hyderabad, Telangana, India Jeppesen, a Boeing Company Full time

    This is a 6 month contract to hire role and would require a candidate to start within 30 days.Position - L4 SecOps AnalystLocation - 5 days onsite in Hyderabad , 500033, IndiaShifts - 8-4 IST, 4-12 IST, 12-8 ISTPay Range - $9-15 USD per hourThis candidate must have experience with Google Chronicle.We are seeking a Security Operations Center (SOC) Analyst...


  • Hyderabad, Telangana, India, Telangana Insight Global Full time

    We are seeking a Security Operations Center (SOC) Analyst with hands-on experience in Google SecOps Chronicle to join our cybersecurity team. This role is critical to monitoring, analyzing, and responding to security threats across cloud and hybrid environments. The ideal candidate will be comfortable working in high-pressure situations, collaborating across...


  • Hyderabad, Telangana, India Castellum Labs Full time ₹ 5,00,000 - ₹ 15,00,000 per year

    Attention Please apply only if you are an immediate joinerThis is a full time position, with from office work only (NO WFH)Position is based out of Hyderabad, IndiaCompany DescriptionCastellum Labs is a Next Gen Cyber Security Technology Venture that started in 2018, from Hyderabad, India with global ambitions, to change the cybersecurity service model. The...


  • Hyderabad, Telangana, India, Telangana Castellum Labs Full time

    !! Attention !! Please apply only if you are an immediate joinerThis is a full time position, with from office work only (NO WFH)Position is based out of Hyderabad, IndiaCompany DescriptionCastellum Labs is a Next Gen Cyber Security Technology Venture that started in 2018, from Hyderabad, India with global ambitions, to change the cybersecurity service...


  • Hyderabad, Telangana, India Lookout Inc Full time ₹ 4,00,000 - ₹ 12,00,000 per year

    Lookout, Inc. is a globally recognized cybersecurity leader delivering advanced protection for the most vulnerable element of any enterprise security strategy — human error and manipulation. Cloud-native by design, the Lookout platform offers rapid, scalable deployment and simplified security operations, defending the frontline of human-centric...


  • Hyderabad, Telangana, India Insight Global Full time ₹ 7,20,000 - ₹ 14,40,000 per year

    Required Skills & Experience7-10 years of experience in a SOC or cybersecurity operations role.Proficiency with Google Chronicle, including rule tuning, log analysis, and case management.Experience with SIEM tools (e.g., Splunk, QRadar, Elastic Stack) and SOAR platforms.Strong understanding of TCP/IP, DNS, HTTP/S, and other network protocols.Familiarity with...


  • Hyderabad, Telangana, India MosChip® Full time ₹ 9,00,000 - ₹ 12,00,000 per year

    Company Description:MosChip Technologies is a publicly traded company specializing in Silicon and Product Engineering solutions. With over 1300 engineers located in Silicon Valley and India, MosChip offers end-to-end engineering solutions including silicon design, verification, systems, software, and device engineering. The company has a proven track record...


  • Hyderabad, Telangana, India, Telangana Insight Global Full time

    Required Skills & Experience7-10 years of experience in a SOC or cybersecurity operations role.Proficiency with Google Chronicle, including rule tuning, log analysis, and case management.Experience with SIEM tools (e.g., Splunk, QRadar, Elastic Stack) and SOAR platforms.Strong understanding of TCP/IP, DNS, HTTP/S, and other network protocols.Familiarity with...


  • Hyderabad, Telangana, India Nityo Infotech Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Job Title: Technical Account Manager – Lead AnalystExperience: 4+ YearsLocation: Hyderabad/BangaloreJob Summary:Summary:We are seeking a highly skilled and experienced Technical Account Manager in (MDR) Services /Security Operations Centre (SOC) Manager to lead our team in safeguarding our customers informationassets.The ideal candidate will possess a...