Employment
Full Time
Experience
2-5 Years
Location
Ahmedabad
Open Positions
1
Job Code
AIPL/CORP/ITINFRA/SOC/2605
Essential Qualification:
- Bachelor’s degree in Computer Science, Information Security, or related field
- 2–5 years of experience in SOC Operations, Security Monitoring, or Threat Analysis
- Strong understanding of TCP/IP, OSI model, firewalls, and endpoint security concepts
- Hands-on experience with SIEM tools, EDR solutions, and vulnerability management tools
- Working knowledge of Linux and Windows operating systems
- Strong analytical, troubleshooting, and communication skills
- Security certifications such as CEH, CompTIA Security+, CySA+, GCIA, or SSCP preferred
- Exposure to cloud security monitoring environments is an added advantage
Essential Area of Expertise:
- Security Operations Center (SOC) Monitoring
- Security Incident Analysis & Response
- SIEM Monitoring & Alert Management
- Threat Detection & Threat Intelligence Correlation
- Log Analysis & Packet Inspection
- Vulnerability Assessment & Remediation Coordination
- Endpoint Security & Firewall Management
- Incident Management & Escalation Handling
- Cybersecurity Operations in IT Infrastructure Environment
- Security Monitoring for Network & Systems
Desired Area of Expertise:
- EDR (Endpoint Detection & Response) Solutions
- Cloud Security Monitoring (AWS / Azure / GCP)
- Threat Hunting & Advanced Threat Detection
- SIEM Rule Tuning & Use Case Optimization
- Security Automation & Scripting (Python / PowerShell / Bash)
- SOC Playbook & SOP Development
- Vulnerability Management Platforms
- Knowledge of Cybersecurity Frameworks & Best Practices
- Experience in 24×7 SOC Operations Environment
Role and Responsibility
- Monitor security alerts, dashboards, and events using SIEM platforms
- Analyze security incidents and perform triage to determine severity, scope, and impact
- Respond to cybersecurity incidents and escalate based on incident response procedures
- Perform log analysis, packet inspection, and correlate threat intelligence data
- Document incidents, root cause findings, and remediation activities in incident management systems
- Coordinate with IT Infrastructure, Network, and Application teams to investigate and resolve security issues
- Assist in tuning SIEM detection rules, SOC use cases, and automation playbooks
- Participate in proactive threat hunting and continuous security monitoring activities
- Prepare and maintain SOC documentation including SOPs, technical guides, and incident reports
- Stay updated with the latest cybersecurity threats, vulnerabilities, and attack techniques
- Support 24×7 SOC operations including rotational shifts, weekends, and night support as required
Apply as a