Jobiglo

No results.

Lead Information Security Analyst – SOC

amat · Bangalore

New
Senior 🇬🇧 English
SOC operations SIEM SOAR EDR XDR NIST SP 800-61 Azure AWS GCP Entra ID Okta Python PowerShell KQL SPL threat hunting detection development incident response vulnerability management

Job description

About the role

The Lead Information Security Analyst is a senior, hands‑on security operations professional who directs day‑to‑day threat detection, alert triage, and incident response within the Security Operations Center. Operating with significant autonomy, the role configures and runs multiple security technologies, correlates event data, and leads investigations of complex, high‑severity incidents.

Key responsibilities

  • Lead alert triage and event analysis across SIEM, EDR/XDR, cloud, and identity telemetry; manage alert queues, escalations, and SLAs.
  • Investigate and contain complex, high‑severity incidents (Tier 2/3) as technical lead or incident commander, maintaining high‑quality case management and stakeholder communication.
  • Develop and tune detection content, produce IOCs/IOAs, and support threat hunting mapped to MITRE ATT&CK to improve coverage and reduce false positives.
  • Operate and improve SOC tooling and automation (SIEM/SOAR), maintain metrics and dashboards, and support vulnerability remediation and cloud/on‑prem reviews.

Required profile

  • Bachelor’s or Master’s in Cybersecurity, Computer Science, or related field (or equivalent practical experience).
  • 6–9 years of experience in cybersecurity, including hands‑on SOC operations, security monitoring, incident response, and event analysis.
  • Tier 2/3 experience leading complex, high‑severity investigations in a global 24×7 SOC environment.
  • Preferred certifications: CompTIA CySA+, SecurityX, GIAC (GCIA, GCIH, GCFA, GCED), Microsoft SC‑200/AZ‑500, CISSP or CISM.

Required skills

  • SOC operations, SIEM, SOAR, EDR/XDR.
  • Incident response lifecycle (NIST SP 800‑61).
  • Threat hunting and detection development using MITRE ATT&CK, IOCs, TTPs.
  • Cloud security (Azure, AWS, GCP) and identity security (Entra ID, Okta, Active Directory).
  • Scripting/automation: Python, PowerShell, KQL/SPL.
  • Vulnerability management, security frameworks, compliance, and audit requirements.

What we offer

  • Supportive work culture that encourages learning, development, and career growth.
  • Health and wellbeing programs for employees at work, at home, or wherever they are.
  • Opportunities to work on cutting‑edge materials engineering solutions for the semiconductor and display industries.

Questions fréquentes

Le salaire n'est pas communiqué publiquement par le recruteur. Vous pouvez postuler et négocier directement avec amat.
Cliquez sur "Postuler maintenant" en haut de la page. Vous pouvez importer votre CV en 1 clic — Jobiglo extrait automatiquement vos informations et postule pour vous.
Source : ats:workday

Why are you reporting this job?

Thank you for your report. We will review this job.

Apply in 30 seconds

Enter your email to apply. An account will be created automatically.

By continuing, you accept our terms of use.

Already have an account? Login

💬 Chat with us on Telegram Chat on WhatsApp

Published 10 hours ago

Expires 1 month from now

5 views · 0 interested

Boost your chances

Upload your CV — we will match you with relevant openings.

Analyzing your CV...

amat

Bangalore