SOC Manager

6 days ago


Mumbai, India NTT DATA Full time

Job Description

Make an impact with NTT DATA
Join a company that is pushing the boundaries of what is possible. We are renowned for our technical excellence and leading innovations, and for making a difference to our clients and society. Our workplace embraces diversity and inclusion – it’s a place where you can grow, belong and thrive.

Your day at NTT DATA

The Manager, Information Security Incident Response is a management role, responsible for managing the Information Security Incident Response Management team. This role ensures their team is equipped and enabled to detect and monitor threats and suspicious activity affecting the organization's technology domain.

This role serves as the escalation point for incidents workflows and participates in the delivery of security measures through analytics and threat hunting processes.

The Senior Manager, Information Security Incident Response manages a team of security professionals whilst fostering a collaborative and innovative team culture focused on operational excellence.

What you'll be doing

Key Responsibilities:

Provides coaching and mentoring to a team whilst establishing and monitoring individual and team KPIs ensuring that the team achieve business objectives and goals.Acts as the escalation point for incident workflows and oversees the performance of weekly threat hunting activities.Oversees the review of current configurations of company production information systems and networks against compliance standards.Manages the team who provides technical support by ensuring that security alerts, events, and notifications are processed. For example, via email, ticketing, virus warning, intelligence feeds, workflow, etc.Engages with internal and/or external teams according to agreed alert priority levels, and escalation trees and ensures the monitoring of events for suspicious events, investigation, and escalate where applicable.Ensures the prioritization of threat analysis based on risks associated with each threat and working with the appropriate teams to ensure related communications are in line with company best practice and recommendations.Ensures the team is equipped and enabled to act as a subject matter expert for the Computer Incident Response Team.Works on strategic custom software projects which analyzes the vast amount of log, audit trail, and other recorded activity information that modern systems record.Participates in the design of automated scripts, contingency plans, and other program responses which are launched when an attack against organizational systems has been detected.Works on strategic projects and supports the work of others related to middleware, and other system integration tools.Fine-tunes the existing security monitoring systems so that false positives and false negatives are minimized.Participates in product evaluations for those information security monitoring systems that are being seriously considered for use on organizational production information systems.Manages the prevention and resolution of security breaches and ensures that the required incident and problem management processes are initiated to ensure compliance to policy.Conducts presentations of the security breaches findings to the business and advise on new measures required to prevent reoccurrence of similar breaches.Reviews incident and problem management reports to identify potential security weaknesses and perform an impact and risk analysis, developing recommendations for highlighted risks, ensuring that these risks and solutions are presented to the relevant stakeholders.Ensures that security service audit schedules are implemented and agreed with the business.


Knowledge and Attributes:

Ability to remain calm and focused during stressful situations.Ability to listen and adapt to changing situations.Ability to lead effectively by motivating their team(s) to perform better.Ability to recognize potential problems and take steps to fix the issues.Advanced understanding of complex inter-relationships in an overall system or process.Advanced knowledge of technological advances within the information security arena.Demonstrates analytical thinking and a proactive approach.Displays consistent client focus and orientation.Advanced knowledge of information security management and policies.Advanced understanding of current and emerging threats, vulnerabilities, and trends.Advanced understanding of malware forensics, network forensics, and computer forensics also highly desirable.Ability to statically and dynamically analyze malware to determine target and intention.Ability to uncover and document tools, techniques, procedures used by cyber adversaries in attacking managed infrastructure.Sound decision making abilities with demonstrate teamwork and collaboration skills.Displays good planning and organizing ability.


Academic Qualifications and Certifications:

Bachelor’s degree or equivalent in Information Technology, Computer Science or related field.SANS GIAC Security Essentials (GSEC) or equivalent preferred.SANS GIAC Certified Intrusion Analyst (GCIA) or equivalent preferred.SANS GIAC Certified Incident Handler (GCIH) or equivalent preferred.Industry Certifications such as CISSP, CISM, CISA, CEH, CHFI preferred.Information Technology / ITILSM / ICT Security / ITIL v3 preferred.


Required Experience:

Advanced experience in a Technology Information Security Industry.Advanced prior experience working in a SOC/CSIR.Comprehension and practical knowledge of the “Cyber Threat Kill Chains”.Advanced knowledge of Tools, Techniques and Processes (TTP) used by threat actors.Advanced practical knowledge of “indicators of compromise” (IOC’s).Advanced experience with End Point Protection and Enterprise Detention and Response Software.Advanced experience or knowledge of SIEM and IPS technologies.Advanced experience with Wireshark, tcpdump, Remnux, decoders for conducting payload analysis.Knowledge of malware analysis, hacking techniques, latest vulnerabilities, and security trends.Preferably an interest, or knowledge of, or experience with SIEM and IPS technologies.Advanced knowledge of network technologies including routers, switches, firewallsAdvanced prior demonstrated experience managing and leading a team in a related field.

Workplace type:

On-site Working

About NTT DATA
NTT DATA is a $30+ billion trusted global innovator of business and technology services. We serve 75% of the Fortune Global 100 and are committed to helping clients innovate, optimize and transform for long-term success. We invest over $3.6 billion each year in R&D to help organizations and society move confidently and sustainably into the digital future. As a Global Top Employer, we have diverse experts in more than 50 countries and a robust partner ecosystem of established and start-up companies. Our services include business and technology consulting, data and artificial intelligence, industry solutions, as well as the development, implementation and management of applications, infrastructure, and connectivity. We are also one of the leading providers of digital and AI infrastructure in the world. NTT DATA is part of NTT Group and headquartered in Tokyo.

Equal Opportunity Employer
NTT DATA is proud to be an Equal Opportunity Employer with a global culture that embraces diversity. We are committed to providing an environment free of unfair discrimination and harassment. We do not discriminate based on age, race, colour, gender, sexual orientation, religion, nationality, disability, pregnancy, marital status, veteran status, or any other protected category. Join our growing global team and accelerate your career with us. Apply today.

Apply Apply Back to search results
  • SOC L3

    6 months ago


    Mumbai, India Fossgen Technologies Full time

    Position: SOC L3 Location: Lower Parel, Mumbai **Roles and Responsibilities** - Lead and mentor junior SOC analysts - Conduct in-depth investigations into complex security incidents - Identify and analyse emerging threats and vulnerabilities - Develop and implement security incident response plans - Participate in vulnerability assessments and penetration...

  • SOC Sme

    7 months ago


    Mumbai, Maharashtra, India Willis Towers Watson Full time

    This role will support and report to Technology Compliance SOC Team Lead and work closely with Lines of Business responsible for client needs relating to compliance reporting requirements. - Accountable for supporting delivery of all SOC, ISAE and AAF audits leveraging technology scoped controls. - Support key technology compliance impacting projects to...

  • SOC & Threat Hunter

    5 months ago


    Mumbai, Maharashtra, India Locuz Enterprise Solutions Full time

    **We are looking for SOC Lead & Threat Hunter with a good knowledge in splunk and threat hunting technologies.** **Roles & Responsibilities**: - Must have experience in any SIEM Management tool **Splunk**, QRADAR, HP Arc sight, Triage Specialist - Separating the wheat from the chaff.- **Vulnerability Management tools like Tenable, Rapid 7, Qualys, Nmap,...

  • SOC L3 Consultant

    2 months ago


    Mumbai, India Talpro Full time

    Key Responsibilities : 24/7 Operational Support : - Provide continuous operational support for Securonix, ensuring effective security event monitoring and incident management.- Perform security event monitoring, prioritization, and alerting/notification based on severity and impact.Incident Management : - Manage incident response and resolution, including...


  • Navi Mumbai, India Eventus Security Full time

    Company Description Eventus Security is a cybersecurity service provider that offers custom-tailored solutions to ensure cyber resilience. The company has successfully carried out 100+ security testing and consulting projects, catering to different industries using its unique blend of offerings in Cyber Resilience, Managed SOC. Key Responsibilities: ...

  • SOC Lead

    3 days ago


    Mumbai, India Tata Consultancy Services Full time

    Greetings from TCS!!!!Role: Soc LeadExpereince:6+yearsLocation: MumbaiJob Description:Lead and drive cross-functional delivery team, working with Program Managers, Delivery Head & Group CISO to ensure successful delivery of security operations by establishing Key Performance Indicators (KPIs).Provide the first-line supervision of Security Operations Center...

  • SOC Infra

    6 months ago


    Mumbai, Maharashtra, India Sequretek Full time

    SOC Infra**Job Location** - Mumbai, India**About Us and Vision** Sequretek is one of the very few cybersecurity companies in the world, to offer their own AI-based security products around endpoint security, user access governance, and security monitoring. Sequretek has its 5 offices across US (New Jersey, Arkansas) and India (Mumbai, Delhi, Bangalore)...

  • Managed SOC

    6 months ago


    Mumbai, India Varutra Full time

    Job Location: - Mumbai ( Thane )- Required Experience: - 6 to 8 Years- Skills: - Security Operation Center (SOC), EDR Platform, Deception platform, Securonix SIEM, Palo Alto or Crowdstrike or Microsoft EDR**Work Experience & skills**: - Years of experience: 6-8 years (Relevant experience in security should be 6+ years) - Worked in security infra domain with...

  • IT SOC ANALYST

    4 weeks ago


    mumbai, India Travelex Full time

    Experience and Skillsets required:- At least 3-5 years experience of Cyber security / operations in a global organisation- Must have prior experience in SOC, investigating security incidents and performing RCA of such incidents.- Must be used to operating within SLA's across different incident types including response times and remediation times- Should have...

  • It soc analyst

    3 weeks ago


    Mumbai, India Travelex Full time

    Experience and Skillsets required: At least 3-5 years experience of Cyber security / operations in a global organisation Must have prior experience in SOC, investigating security incidents and performing RCA of such incidents. Must be used to operating within SLA's across different incident types including response times and remediation times ...

  • It soc analyst

    4 weeks ago


    Mumbai, India Travelex Full time

    Experience and Skillsets required:- At least 3-5 years experience of Cyber security / operations in a global organisation- Must have prior experience in SOC, investigating security incidents and performing RCA of such incidents.- Must be used to operating within SLA's across different incident types including response times and remediation times- Should have...

  • IT SOC ANALYST

    4 weeks ago


    mumbai, India Travelex Full time

    Experience and Skillsets required:At least 3-5 years experience of Cyber security / operations in a global organisationMust have prior experience in SOC, investigating security incidents and performing RCA of such incidents.Must be used to operating within SLA's across different incident types including response times and remediation timesShould have...


  • Navi Mumbai, India Eventus Security Full time

    Company DescriptionEventus Security is a cybersecurity service provider that offers custom-tailored solutions to ensure cyber resilience. The company has successfully carried out 100+ security testing and consulting projects, catering to different industries using its unique blend of offerings in Cyber Resilience, Managed SOC.Key...

  • Soc-l1

    5 months ago


    Mumbai, Maharashtra, India IBM Full time

    Introduction At IBM, work is more than a job - it's a calling: To build. To design. To code. To consult. To think along with clients and sell. To make markets. To invent. To collaborate. Not just to do something better, but to attempt things you've never thought possible. Are you ready to lead in this new era of technology and solve some of the world's most...


  • mumbai, India 7Rays Semiconductors India Private Limited Full time

    About Company At 7Rays Semiconductors ( , we provide end-to-end VLSI design solutions to help our clients achieve execution excellence. Our team of experts specializes in architecture, RTL design, verification, validation, physical design, implementation, and post-silicon validation using the latest technologies and methodologies We work closely with our...

  • IT SOC ANALYST

    4 weeks ago


    Mumbai, India Travelex Full time

    Experience and Skillsets required: At least 3-5 years experience of Cyber security / operations in a global organisation Must have prior experience in SOC, investigating security incidents and performing RCA of such incidents. Must be used to operating within SLA's across different incident types including response times and remediation times ...


  • Mumbai, India Deloitte Full time

    Your potential, unleashed. Indias impact on the global economy has increased at an exponential rate and Deloitte presents an opportunity to unleash and realise your potential amongst cutting edge leaders, and organisations shaping the future of the region, and indeed, the world beyond. At Deloitte, your whole self to work, every day. Combine that with...

  • SOC Analyst

    1 month ago


    Navi Mumbai, India Jio Full time

    Job Description - SOC L1/L2 AnalystLocationNavi Mumbai (On-Site)Qualifications BE/ B.Tech/ M.Tech/ MCA with 60%+ throughout the academics. Security certifications like CEH or equivalent is a must have.Experience and Skillset Minimum 2 years hands-on experience with one or more SIEM tools (McAfee, Log Logic, LogRhythm, Splunk, QRadar, ArcSight etc.)....

  • SOC Lead

    3 days ago


    Mumbai Metropolitan Region, India Tata Consultancy Services Full time

    Greetings from TCS!!!!Role: Soc LeadExpereince:6+yearsLocation: MumbaiJob Description:Lead and drive cross-functional delivery team, working with Program Managers, Delivery Head & Group CISO to ensure successful delivery of security operations by establishing Key Performance Indicators (KPIs).Provide the first-line supervision of Security Operations Center...

  • SOC Lead

    3 days ago


    Mumbai Metropolitan Region, India Tata Consultancy Services Full time

    Greetings from TCS!!!! Role: Soc Lead Expereince:6+years Location: Mumbai Job Description: Lead and drive cross-functional delivery team, working with Program Managers, Delivery Head & Group CISO to ensure successful delivery of security operations by establishing Key Performance Indicators (KPIs). Provide the first-line supervision of Security Operations...