Role Overview:
We are seeking an Information Security Operations professional to support and strengthen our organization's cybersecurity posture. This role will serve as the internal owner of security operations activities, working closely with our Managed Security Operations Center (SOC) provider, internal IT teams, and business stakeholders.
The successful candidate will be responsible for reviewing and responding to security alerts, coordinating incident remediation, overseeing dark web monitoring activities, supporting vulnerability management, assisting with security assessments, and contributing to the continuous improvement of the organization's security operations program.
Key Responsibilities
- Monitor, review, and coordinate response to security alerts and incidents reported by the Managed SOC provider.
- Investigate security events, assess business impact, and work with internal teams to ensure timely remediation and closure.
- Oversee dark web monitoring and threat intelligence activities, including credential leak and data exposure investigations.
- Collaborate with security vendors and SOC partners to improve detection capabilities, security processes, and SOAR playbooks.
- Maintain incident records, security documentation, and operational runbooks.
- Prepare security reports, track key security metrics, and provide recommendations to enhance the organization's security posture.
Required Qualifications
- Bachelor's degree in Cybersecurity, Information Security, Information Technology, Computer Science, or related field.
- 2–3 years of experience in Information Security Operations, Security Operations Center (SOC), Incident Response, or Cybersecurity Operations.
- Experience reviewing and investigating security alerts.
- Understanding of incident response and threat management processes.
- Familiarity with dark web monitoring and threat intelligence concepts.
Preferred Technical Skills
- SIEM platforms (Splunk, QRadar, LogRhythm, etc.)
- EDR & DLP solutions
- Azure, AWS, or GCP security fundamentals
- Threat intelligence platforms
- SOAR platforms and workflow automation
- MITRE ATT&CK framework knowledge
Experience
- 2–3 years of relevant cybersecurity or security operations experience.
Preferred Certifications
One or more of the following certifications are desirable:
- CompTIA Security+
- CompTIA CySA+
- Certified SOC Analyst (CSA)
Employment Type
- Full-Time
- Location: Andheri East
- Work Model: Onsite