Cyber Fusion Center Shift Lead

Mizuho

Pune District

Hybrid

INR 2,000,000 - 3,500,000

Full time

14 days+
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Mizuho Pune is seeking an experienced Cyber Fusion Center Shift Lead to provide real-time operational leadership for cybersecurity monitoring, threat detection, and incident response across global operations. The role directs security operations during assigned shifts and guides complex investigations to timely resolution.

Responsibilities include prioritizing alerts, mentoring analysts, and ensuring adherence to playbooks and escalation paths while maintaining service levels in a 24x7

Qualifications

  • 7-12 years of experience in Security Operations or Cyber Fusion Center roles.
  • Experience leading 24x7 security operations and investigations.
  • Strong understanding of incident response, MITRE ATT&CK, and threat intelligence.

Responsibilities

  • Lead response and investigation activities for high-priority cybersecurity alerts and incidents, determining severity and escalation actions.
  • Direct real-time Cyber Fusion Center operations by prioritizing alert queues and balancing analyst workloads.
  • Serve as the primary technical escalation point for L1/L2 analysts and drive effective incident resolution.
  • Coordinate containment, eradication, recovery, and communication during cybersecurity incidents and supervise ownership transitions.
  • Ensure investigation quality through case reviews, evidence validation, and adherence to procedures.
  • Improve center effectiveness by identifying detection gaps and driving continuous improvements with engineering teams.

Skills

Security Operations
Incident Response
Threat Detection
Threat Hunting
Leadership
Windows & Linux
Cloud Platforms
SPL & Python

Education

Bachelor's degree

Tools

Splunk ES
Microsoft Sentinel
Cortex XSOAR
CrowdStrike Falcon
EDR/XDR

Job description

At Mizuho, we provide the stability of an international industry leader with the career trajectory of a growing business. Our steady, strategic growth gives our people at all levels rewarding degrees of responsibility and richer work experience than a boutique firm or an established giant could offer alone.

It’s the local expertise of our employees that makes our global network so powerful. By collaborating with colleagues and clients who share the same ambition and drive, you can amplify your sphere of influence and base of knowledge as part of one of the largest banks in the world.

Summary:

Mizuho Global Services (MGS) is seeking an experienced and hands‑on Cyber Fusion Center Shift Lead to provide real‑time operational and technical leadership for cybersecurity monitoring, threat detection, and incident response activities supporting Mizuho's global operations. Serving as the senior authority during an assigned shift, this role is responsible for directing security operations, leading complex investigations, ensuring timely response to cyber threats, and maintaining operational excellence within a 24x7 Cyber Fusion Center environment.

Key Responsibilities:

  • Lead response and investigation activities for high‑priority cybersecurity alerts and incidents by determining severity, scope, business impact, and appropriate escalation or remediation actions.
  • Direct real‑time Cyber Fusion Center operations by prioritizing alert queues, balancing analyst workloads, managing active investigations, and ensuring operational service levels are achieved during the assigned shift.
  • Serve as the primary technical escalation point for L1 and L2 analysts by providing expert investigative guidance, validating findings, supporting decision‑making, and driving effective incident resolution.
  • Coordinate containment, eradication, recovery, and communication activities during cybersecurity incidents while serving as the operational lead until ownership transitions to DFIR, Threat Hunting, Major Incident Management, or other specialized response teams.
  • Ensure investigation quality and operational consistency through case reviews, evidence validation, documentation oversight, escalation management, and adherence to established procedures and playbooks.
  • Improve Cyber Fusion Center effectiveness by identifying detection gaps, recurring issues, process inefficiencies, false positives, and workflow challenges while partnering with Detection Engineering and Security Engineering teams to implement improvements.
  • Develop analyst capability through mentoring, coaching, knowledge sharing, cyber exercises, operational readiness activities, and continuous improvement initiatives that strengthen team performance and investigative maturity.

Required Qualifications:

  • 7-12 years of experience in Security Operations, Incident Response, Threat Detection, Threat Hunting, or Cyber Fusion Center operations, including investigation of complex cybersecurity incidents and leadership within a 24x7 environment.
  • Strong understanding of incident response, MITRE ATT&CK, cyber kill chain concepts, threat intelligence, adversary TTPs, and cyber defense operations.
  • Proven experience investigating endpoint, network, identity, cloud, email, and application security incidents while assessing severity, business impact, and escalation requirements.
  • Experience leading operational teams, coordinating incident response activities, managing competing priorities, and driving effective outcomes during high‑pressure situations.
  • Working knowledge of Windows, Linux, Active Directory, Microsoft Entra ID, cloud platforms, enterprise networking, security analytics, threat investigations, operational reporting, and security automation.
  • Proficiency in SPL with exposure to Python, PowerShell, KQL, REST APIs, JSON, and automation frameworks.
  • Strong leadership, mentoring, communication, stakeholder management, analytical, and decision‑making skills.
  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Engineering, or equivalent experience.
  • Security Technologies: Splunk Enterprise Security, Microsoft Sentinel, Palo Alto Cortex XSOAR, CrowdStrike Falcon, Palo Alto Cortex XDR, Microsoft Defender XDR, SIEM, SOAR, EDR/XDR, threat intelligence, cloud security, identity security, email security, network security, ITSM, and security automation platforms.

Preferred Qualifications:

  • Certifications such as GCIH, GCIA, GCFA, CISSP, SC-200, AZ-500, Splunk Power User, Splunk Enterprise Security Certified Admin, or equivalent.
  • Experience in threat hunting, malware analysis, digital forensics, detection engineering, security automation, and major incident management.
  • Experience integrating SIEM, SOAR, EDR/XDR, threat intelligence, cloud, identity, and network security technologies.
  • Experience supporting financial services or other highly regulated environments.
  • Familiarity with NIST, CIS Controls, FFIEC, and cybersecurity regulatory frameworks

Company Overview:

Mizuho Pune is an integral part of Mizuho Financial Group, one of the world’s leading financial institutions with a strong global presence across the Americas, EMEA, and Asia. Based in India, Mizuho Pune supports Mizuho’s international businesses by delivering high‑quality, scalable, and resilient services across multiple functions.

Mizuho Pune plays a critical role in driving operational excellence, standardization, and innovation for Mizuho Americas. By combining deep domain expertise with strong process, technology, and analytical capabilities, it partners closely with regional and global teams to support corporate and investment banking, capital markets, and corporate services functions, while adhering to the highest standards of risk management, regulatory compliance, and control.

Mizuho Pune offers competitive compensation and benefits package aligned with industry standards and local market practices.

Mizuho Pune is an equal opportunity employer and is committed to fostering an inclusive and diverse workplace.

Employment is subject to applicable background verification checks in accordance with Indian laws and company policies.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

L1 SOC Analyst
L1 SOC Analyst

Mizuho • Pune District

On-site
INR 900,000 - 1,400,000
L2 SOC Analyst
L2 SOC Analyst

Mizuho • Pune District

On-site
INR 1,500,000 - 2,100,000
L3 SOC Analyst
L3 SOC Analyst

Mizuho • Pune District

On-site
INR 2,800,000 - 4,200,000
Digital Forensics & Incident Response (DFIR) Lead
Digital Forensics & Incident Response (DFIR) Lead

Mizuho • Pune District

On-site
INR 3,500,000 - 7,500,000
Cyber Fusion Center Threat Hunting Lead
Cyber Fusion Center Threat Hunting Lead

Mizuho • Pune District

On-site
INR 4,500,000 - 6,500,000
Cybersecurity Governance Analyst
Cybersecurity Governance Analyst

Mizuho • Pune District

On-site
INR 1,200,000 - 1,800,000
Cybersecurity Business Intelligence & Analytics Lead
Cybersecurity Business Intelligence & Analytics Lead

Mizuho • Pune District

On-site
INR 3,000,000 - 6,000,000
Vulnerability & Exposure Management Lead
Vulnerability & Exposure Management Lead

Mizuho • Pune District

On-site
INR 4,000,000 - 6,500,000
Vulnerability Management and Threat Exposure Management - Analyst
Vulnerability Management and Threat Exposure Management - Analyst

Mizuho • Pune District

On-site
INR 1,200,000 - 1,800,000
Threat & Exposure Management Lead
Threat & Exposure Management Lead

Mizuho • Pune District

On-site
INR 4,500,000 - 6,500,000