Cyber Security Analyst (SOC)

Genpact

Pune District

On-site

INR 900,000 - 1,500,000

Full time

45 hours ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Genpact is seeking a Cyber Security Analyst in Pune to monitor, detect, investigate, and respond to enterprise cyber threats. You will work with Microsoft Sentinel, Defender, and Defender for O365, Tenable, and email security platforms to protect the environment and continuously improve SOC capabilities.

The role focuses on proactive threat hunting, incident investigation, security monitoring, and collaboration with IT, Infra, and cloud teams.

Qualifications

  • 2+ years of hands-on SOC experience required.
  • Knowledge of MITRE ATT&CK framework, IoCs, and threat intelligence.
  • Experience with phishing, malware, ransomware, BEC, credential theft, and insider threat incidents.
  • Experience with vulnerability management and security playbooks.

Responsibilities

  • Monitor security events, alerts, and incidents through SIEM, XDR/EDR and email security platforms.
  • Investigate and respond to security alerts, suspicious activities, malware infections, phishing attempts, account compromises, and other cyber threats.
  • Perform proactive threat hunting using telemetry, threat intelligence, and behavioral indicators.
  • Analyze attacker TTPs using MITRE ATT&CK and develop detection rules to reduce false positives.
  • Coordinate incident response with IT and business stakeholders; support containment, eradication, and recovery.
  • Manage vulnerabilities identified through Tenable and Microsoft security solutions and work with infra teams on remediation.
  • Conduct phishing investigations and email threat analysis; maintain incident response runbooks and playbooks.

Skills

SOC operations
Threat hunting
Incident response
Phishing investigations
MITRE ATT&CK
KQL
analytical skills
problem solving

Education

Bachelor's degree in Cyber Security or related field

Tools

Microsoft Sentinel
Microsoft Defender
Microsoft Entra ID / Azure AD
Tenable/Nessus
Proofpoint / Abnormal Security

Job description

Role Summary

We are seeking a Cyber Security Analyst with 2+ years of hands-on SOC experience to monitor, detect, investigate, and respond to cyber security threats across the enterprise environment. The ideal candidate will have strong knowledge of cyber-attack techniques, threat hunting, incident response, vulnerability management, and security operations processes.

This role will leverage a modern security technology stack centered around Microsoft Sentinel, Microsoft Defender, Microsoft Entra ID (Azure AD), Tenable, and Email Security platforms such as Proofpoint, Abnormal Security, or equivalent solutions. The successful candidate will be responsible for proactive threat detection, incident investigation, security monitoring, and continuous improvement of security operations capabilities.

Core Responsibilities

  • Monitor security events, alerts, and incidents through SIEM, XDR/EDR and email security platforms.
  • Investigate and respond to security alerts, suspicious activities, malware infections, phishing attempts, account compromises, and other cyber threats.
  • Perform proactive threat hunting activities using available telemetry, threat intelligence, and behavioral indicators.
  • Analyze attacker tactics, techniques, and procedures (TTPs) using the MITRE ATT&CK framework.
  • Create threat hunting hypotheses and identify potential indicators of compromise (IOCs) within the environment.
  • Validate, tune, and optimize detection rules, analytics, alerting logic, and security playbooks to reduce false positives and improve detection capabilities.
  • Investigate high-severity incidents and coordinate response activities with IT and business stakeholders.
  • Support incident containment, eradication, recovery, and post-incident analysis activities.
  • Monitor and manage vulnerabilities identified through Tenable and Microsoft security solutions, working with infrastructure teams to ensure timely remediation.
  • Perform root cause analysis of security incidents and provide actionable recommendations.
  • Conduct phishing investigations and email threat analysis using enterprise email security solutions.
  • Develop and maintain incident response procedures, investigation runbooks, and operational documentation.
  • Participate in tabletop exercises, purple team activities, and cyber security incident simulations.
  • Generate operational security reports, dashboards, and metrics for technical and non-technical stakeholders.
  • Maintain awareness of emerging cyber threats, vulnerabilities, attack campaigns, and adversary techniques.
  • Ensure all security incidents and investigations are properly documented and tracked through completion.
  • Collaborate closely with SOC, IT Operations, Infrastructure, Cloud, and End User Computing teams to enhance overall security posture.

Required Technical Skills

Security Operations (SOC)

  • Strong understanding of SOC operations, incident response, threat detection, and cyber attack methodologies.
  • Experience investigating phishing, malware, ransomware, business email compromise (BEC), credential theft, and insider threat incidents.
  • Knowledge of MITRE ATT&CK framework, Indicators of Compromise (IoCs), and threat intelligence.

SIEM

  • Microsoft Sentinel
  • Strong understanding of SIEM architecture, log analysis, correlation rules, and security monitoring.

XDR / EDR

  • Experience investigating endpoint, identity, cloud, and email-related security incidents.

Identity Security

  • Conditional Access Policies
  • Identity Protection
  • Authentication and access-related security monitoring

Email Security

  • Proofpoint, Abnormal Security, Microsoft Defender for Office 365, or equivalent email security platforms
  • Phishing analysis and email threat investigations

Vulnerability Management

  • Vulnerability assessment, prioritization, remediation tracking, and reporting

Threat Hunting

  • Threat hunting methodologies
  • Log and telemetry analysis
  • Detection engineering and use case development

Preferred Qualifications

  • Bachelor's degree in Cyber Security, Information Security, Computer Science, or related field.
  • Experience working within a Security Operations Center (SOC) environment.
  • Industry certifications such as:
  • SC-200 (Microsoft Security Operations Analyst)
  • Security+
  • CEH
  • CySA+
  • GSEC
  • AZ-500
  • Experience with KQL (Kusto Query Language) for Microsoft Sentinel and Defender investigations.
  • Strong analytical, investigative, and problem-solving skills.
  • Ability to work independently and effectively manage multiple security investigations simultaneously.

Experience Required

  • Minimum 2+ years of experience in Cyber Security Operations (SOC).
  • Hands-on experience with:
  • Microsoft Sentinel
  • Tenable/Nessus
  • Email Security platforms (Proofpoint, Abnormal Security, Defender for Office 365, or equivalent)
  • Demonstrated experience in threat hunting, incident response, alert triage, and cyber attack investigations.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Operations Manager
Security Operations Manager

Angel One • Bengaluru

On-site
INR 3,500,000 - 6,000,000
Security Analyst - L2
Security Analyst - L2

Nopal Cyber, LLC. • Hyderabad

On-site
INR 1,200,000 - 1,600,000
Junior Engineer
Junior Engineer

Lyric Exponentials India Private Limited • Hyderabad

Hybrid
INR 1,000,000 - 1,500,000
Security Technician - SOC Analyst
Security Technician - SOC Analyst

Fujitsu • Pune District, Bengaluru, Dadri

Hybrid
INR 900,000 - 1,300,000
E2E Networks - Security Operations Center Analyst - Firewall Management
E2E Networks - Security Operations Center Analyst - Firewall Management

E2E Cloud • Chennai District

On-site
INR 500,000 - 800,000
SOC L3 Expert
SOC L3 Expert

Maandag® Middle East • India

On-site
INR 800,000 - 1,200,000
Associate SOC
Associate SOC

Epsilon Data Management • Bengaluru

On-site
INR 900,000 - 1,500,000
Manager SOC
Manager SOC

Adani Group • Ahmedabad District

On-site
INR 700,000 - 1,200,000
Associate SOC
Associate SOC

Publicis Groupe ANZ • Gurgaon

On-site
INR 1,400,000 - 2,200,000
L2 SOC Analyst
L2 SOC Analyst

UST • Bengaluru

On-site
INR 1,400,000 - 2,200,000