Associate SOC

Publicis Groupe

Gurgaon

On-site

INR 1,200,000 - 2,400,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Publicis Re:Sources is seeking a senior security operations professional to lead EDR alert analysis, threat hunting, malware analysis, and incident response. You will work on proactive defense across endpoints, identities, cloud, and enterprise environments, utilizing SIEM and M365 Security alerts, CASB, and DLP tooling.

The role emphasizes AI-driven detection, SOC automation, and developing playbooks, SOPs, and mentorship for junior analysts within a global security team.

Qualifications

  • 5+ years of security domain experience with minimum 4+ years in a SOC.
  • Hands-on experience with EDR platforms such as CrowdStrike.
  • Experience with SIEM monitoring and investigation in Microsoft 365 Security.
  • Experience with scripting (Python, PowerShell) for automation.
  • Knowledge of phishing analysis, CASB & DLP alerts investigation and threat analysis.
  • Knowledge of AI-assisted technologies for alert triage, investigation, threat hunting, detection engineering, and SOC automation.

Responsibilities

  • Perform advanced investigation and analysis of security alerts from EDR platforms (ransomware, malware, credential compromise, insider threats, APTs).
  • Conduct proactive threat hunting across endpoints, identities, cloud, and enterprise environments.
  • Perform static and dynamic malware analysis and extract IOCs/IOAs/TTPs.
  • Lead incident investigations with containment and remediation recommendations.
  • Develop and optimize threat detection use cases, hunting queries, and correlation logic.
  • Monitor and correlate alerts from SIEM, M365 Security, Email Security, CASB, DLP, etc., to detect incidents.

Skills

Threat Hunting
Incident Analysis & Response
Python/PowerShell scripting
AI/GenAI for SOC automation
Communication
MITRE ATT&CK framework

Education

Bachelor’s / Master’s degree

Tools

CrowdStrike
M365 Security
CASB
DLP
SOAR
Copilot
Python
PowerShell

Job description

Company description

Publicis Re:Sources is at the core of Publicis Groupe, the world's largest communications company. We are the only full-service, end-to-end shared service organization in the industry, enabling Groupe agencies to do what they do best: innovate and transform for their clients.

Formed in 1998 as a small team to service a few Publicis Groupe firms, Publicis Re:Sources has grown to 6,000+ employees in over 55 countries. We provide technology solutions and business services, including finance, accounting, legal, benefits, procurement, tax, real estate, treasury and risk management, information security, and global mobility — supporting 110,000+ employees across the Publicis Groupe network. Our people are at the center of everything we do, bringing curiosity, collaboration, and a commitment to excellence to their work every day.

Learn more about Publicis Re:Sources and the Publicis Groupe agencies we support at publicisresources.com

Overview

Role Summary:

The role will primarily focus on Endpoint Detection and Response (EDR) alert analysis, proactive threat hunting, malware analysis, reverse malware analysis, sandbox analysis, and incident response. The ideal candidate should possess strong analytical and investigative capabilities to identify, analyze, contain, and respond to advanced cyber threats. The candidate should have an advanced understanding of endpoint telemetry, malware behavior, attacker techniques, and enterprise security operations. In addition to the core responsibilities, the candidate should have good working knowledge of SIEM, Microsoft 365 security alerts, phishing investigations, threat intelligence, CASB, DLP, SOAR, AI-driven security operations, and SOC automation.

Key Responsibilities
  • Perform advanced investigation and analysis of security alerts generated from Endpoint Detection and Response (EDR) platforms, including ransomware, malware, credential compromise, insider threats, Advanced Persistent Threats (APT), and other sophisticated attacks.
  • Conduct proactive threat hunting across endpoints, identities, cloud, and enterprise environments using endpoint telemetry, threat intelligence, behavioral analytics, and the MITRE ATT&CK framework.
  • Perform static and dynamic malware analysis, reverse engineer malicious files, analyze sandbox results, and extract Indicators of Compromise (IOCs), Indicators of Attack (IOAs) and attacker Tactics, Techniques, and Procedures (TTPs).
  • Lead incident investigations by validating threats, determining attack scope and impact, recommending containment and remediation actions, and supporting Incident Response activities.
  • Develop and optimize threat detection use cases, hunting queries, detection rules, and correlation logic to continuously enhance the organization’s detection capabilities.
  • Monitor, investigate, and correlate security alerts from SIEM, Microsoft 365 Security, Email Security, CASB, DLP, and other enterprise security platforms to identify and respond to security incidents.
  • Investigate phishing campaigns, Business Email Compromise (BEC), cloud security incidents, identity-based attacks, and data protection events across enterprise environments. Leverage threat intelligence to identify emerging threats, improve detection coverage, and recommend proactive security enhancements.
  • Develop AI-driven detection and investigation use cases, automate repetitive SOC activities using Python, PowerShell, SOAR, Copilot, GenAI, and other automation technologies, and contribute to continuous SOC process optimization.
  • Prepare technical investigation reports, develop SOPs and playbooks, mentor junior SOC analysts, and contribute to the continuous maturity of SOC operations.
Qualifications
Skillset & Qualifica ons
  • Advanced hand-on Experience with EDR Platform such as CrowdStrike, SIEM Monitoring & Investigation, M365 Security Alert Investigation, Incident Analysis & Response, Threat Hunting, Threat Intel.
  • Familiarity with AI, GenAI, Copilot, machine learning, or AI-assisted technologies for alert triage, investigation, threat hunting, detection engineering, and SOC automation.
  • Experience with scripting (Python, PowerShell) for automation, Phishing analysis, CASB & DLP alerts investigation and threat analysis is an advantage.
  • 5+ Years of Security domain experience with minimum of 4+ years of SOC analyst. Personal Attributes
  • Strong and innovative approach to problem solving and finding solutions.
  • Excellent communicator (written and verbal, formal and informal).
  • Flexible and proactive/self-motivated working style with strong personal ownership of problem resolution.
  • Ability to multi task under pressure and work independently with minimal supervision.
  • Ability to priori ze when under pressure.
  • Able to work with remote employees & teams to create highly effective documenta on

Educa on Full Time Bachelor’s / Master’s degree Full Time Bachelor’s / Master’s degree

Preferred Certifications

CEH | CompTIA Security + | CHFI | CCFR | CCFA | CCFH

Other relevant EDR, malware analysis, incident response, threat hunting, SIEM, or cloud security certifications

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Associate SOC
Associate SOC

Publicis Groupe ANZ • Gurgaon

On-site
INR 1,400,000 - 2,200,000
Associate SOC
Associate SOC

Publicis Groupe Holdings B.V • Gurugram District

On-site
INR 1,200,000 - 1,800,000
Associate SOC
Associate SOC

Publicis Groupe Holdings B.V • Bengaluru

On-site
INR 800,000 - 1,400,000
Associate SOC
Associate SOC

Publicis Groupe ANZ • Bengaluru

Hybrid
INR 600,000 - 1,200,000
Associate SOC
Associate SOC

Publicis Groupe • Bengaluru

Hybrid
INR 900,000 - 1,500,000
Sr. SOC Analyst
Sr. SOC Analyst

Ferfier Technologies • Dadri

Hybrid
INR 1,500,000 - 2,100,000
Flexible/Remote work
SOC Specialist
SOC Specialist

METRO/MAKRO • Pune District

On-site
INR 4,000,000 - 7,000,000
Associate SOC
Associate SOC

Epsilon Data Management • Bengaluru

On-site
INR 900,000 - 1,500,000
Cyber Security Analyst (SOC)
Cyber Security Analyst (SOC)

Genpact • Pune District

On-site
INR 900,000 - 1,500,000
L2 SOC Analyst
L2 SOC Analyst

UST • Bengaluru

On-site
INR 1,400,000 - 2,200,000