📢 New: get today's jobs on our WhatsApp Channel
Jobiglo

No results.

Lead Information Security Analyst (Individual Contributor)

amat · Bangalore

New
Senior 🇬🇧 English
SOC operations SIEM SOAR EDR XDR incident response Python PowerShell KQL SPL Azure AWS GCP Entra ID Okta

Job description

About the role

The Lead Information Security Analyst is a senior, hands‑on security operations professional who directs the day‑to‑day work of threat detection, alert triage, and incident response within the Security Operations Center (SOC). The role combines deep technical expertise with leadership to ensure consistent analyst performance, high‑quality investigations, and reliable operational outcomes.

Key responsibilities

  • Lead alert triage and event analysis across SIEM, EDR/XDR, cloud, and identity telemetry; manage alert queues, escalations, and SLAs.
  • Investigate and contain complex, high‑severity incidents (Tier 2/3) as technical lead or incident commander, maintaining high‑quality case management and stakeholder communication.
  • Develop and tune detection content, produce IOCs/IOAs, and support threat hunting mapped to MITRE ATT&CK to improve coverage and reduce false positives.
  • Operate and improve SOC tooling and automation (SIEM/SOAR), maintain metrics and dashboards, and support vulnerability remediation and cloud/on‑prem reviews.
  • Uphold security standards, compliance, and audit requirements, while mentoring analysts and driving post‑incident improvements.

Required profile

  • Bachelor’s or Master’s in Cybersecurity, Computer Science, or related field (or equivalent practical experience).
  • 6–9 years of experience in cybersecurity, including hands‑on SOC operations, security monitoring, incident response, and event analysis.
  • Experience leading complex, high‑severity investigations (Tier 2/3) in a global 24x7 SOC environment.

Required skills

  • SOC operations, SIEM, SOAR, EDR/XDR.
  • Incident response lifecycle (NIST SP 800‑61) and threat hunting using MITRE ATT&CK, IOCs, TTPs.
  • Cloud security platforms (Azure, AWS, GCP) and identity security (Entra ID, Okta, Active Directory).
  • Scripting/automation: Python, PowerShell, KQL/SPL.
  • Understanding of security frameworks, vulnerability management, and governance/compliance.

What we offer

  • A supportive work culture that encourages learning, development, and career growth.
  • Health and wellbeing programs, benefits, and resources to support employees at work, at home, or wherever they may be.

Questions fréquentes

Le salaire n'est pas communiqué publiquement par le recruteur. Vous pouvez postuler et négocier directement avec amat.
Cliquez sur "Postuler maintenant" en haut de la page. Vous pouvez importer votre CV en 1 clic — Jobiglo extrait automatiquement vos informations et postule pour vous.
Source : ats:workday

Why are you reporting this job?

Thank you for your report. We will review this job.

Apply in 30 seconds

Enter your email to apply. An account will be created automatically.

Apply now →

By continuing, you accept our terms of use.

Already have an account? Login

A question about this job?

Ask it here: you will get the full job summary by e-mail, right away.

💬 Chat with us on Telegram

Published 5 hours ago

Expires 1 month from now

8 views · 0 interested

Boost your chances

Upload your CV — we will match you with relevant openings.

Analyzing your CV...

amat

Bangalore