Cyber Security Engineer II

HighRadius

Hyderabad

On-site

INR 1,200,000 - 1,800,000

Full time

14 hours ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

HighRadius in Hyderabad is seeking a Sr. SOC Engineer with 3-5 years of hands-on security operations experience. You will own end-to-end SOC lifecycle—from engineering high-fidelity SIEM/XDR detections to orchestrating automated SOAR responses.

You’ll align detection rules with MITRE ATT&CK, lead proactive hunting, and mentor Tier-2 incident investigations while ensuring telemetry health and compliance in a fast-moving environment.

Qualifications

  • 3-5 years in a SOC or security engineering role.
  • Deep proficiency with SIEM/XDR platforms (Splunk ES, Sentinel, Chronicle, XDR).
  • Cloud log monitoring experience (CloudTrail, VPC Flow Logs, GuardDuty).
  • Code/scripting ability in Python or PowerShell for automation.

Responsibilities

  • Design, build and maintain advanced detection rules across SIEM/XDR to correlate data from identity, network, cloud and endpoints.
  • Map detections to the MITRE ATT&CK framework to close visibility gaps.
  • Tune alert logic and suppression to reduce noise for frontline analysts.
  • Develop and maintain automated response playbooks in SOAR for containment and enrichment.
  • Oversee SOC tooling health and ensure secure data ingestion from cloud providers.

Skills

SOC operations
SIEM/XDR
SOAR
MITRE ATT&CK
Threat hunting
Python/PowerShell
KQL/SPL/Lucene
EDR
Incident response

Education

Bachelor's degree in Cybersecurity or CS

Tools

Splunk ES
Microsoft Sentinel
Google Chronicle
Cortex XDR

Job description

Job Summary

We are looking for a

Job Summary

We are looking for a Sr. SOC Engineer with 3-5 years of experience to serve as the senior resource for our threat detection ecosystem. You will be responsible for the end-to-end lifecycle of our security operations infrastructure, from engineering high-fidelity correlation rules in the SIEM to orchestrating automated response playbooks in SOAR. Your goal is to move the SOC beyond reactive alerting by building a proactive, intelligence-driven defense posture that can identify and neutralize sophisticated adversaries in real-time.

Key Responsibilities & Business Impact
  • Detection Engineering & Framework Alignment
  • Correlation Logic: Design, build, and maintain advanced detection rules within the SIEM/XDR environment that correlate disparate data sources (Identity, Network, Cloud, and Endpoint).
  • MITRE Integration: Map all detection capabilities to the MITRE ATT&CK Framework to identify visibility gaps and ensure comprehensive coverage against modern TTPs (Tactics, Techniques, and Procedures).
  • Logic Tuning: Conduct continuous "noise reduction" by fine-tuning alerting logic and suppression lists to maximize the signal-to-noise ratio for frontline analysts.
  • Security Orchestration & Lifecycle Management
  • SOAR Architecting: Develop and maintain automated response playbooks (SOAR) to standardize incident handling, from automated enrichment and evidence collection to one-click containment.
  • Tooling Ecosystem: Manage the health and integration of the SOC tech stack, ensuring seamless data ingestion from cloud providers (AWS/Azure/GCP) and SaaS applications into central monitoring hubs.
  • Continuous Improvement: Regularly audit log sources for "telemetry health," ensuring that critical security logs are being ingested correctly and meet compliance retention requirements.
  • Advanced Hunting & Incident Leadership
  • Proactive Hunting: Lead hypothesis-based threat hunting engagements, utilizing EDR and SIEM data to find "silent" lateral movement or credential harvesting that automated tools might miss.
  • SME Escalation: Act as the Tier 2 escalation point for high-priority security incidents, performing deep-dive forensic analysis and providing technical leadership during the containment and recovery phases.
  • Root Cause Analysis: Lead post-incident reviews to identify systemic weaknesses and implement automated technical controls to prevent recurrence.
Required Qualifications
Technical Experience
  • Experience: 3-5 years of hands-on experience in a Security Operations Center (SOC) or Security Engineering role.
  • SIEM/XDR Mastery: Deep technical proficiency with platforms such as Splunk ES, Microsoft Sentinel, Google Chronicle, or Palo Alto Cortex XDR.
  • Cloud Security: Solid understanding of monitoring cloud-native environments (log types like CloudTrail, VPC Flow Logs, and GuardDuty).
  • Querying & Scripting: Expert-level proficiency in query languages (KQL, SPL, or Lucene) and scripting languages (primarily Python or PowerShell) for automation and data manipulation.
Soft Skills & Education
  • Education: Bachelor’s degree in Cybersecurity, Computer Science, or a related technical field.
  • Analytical Mindset: Ability to synthesize complex, fragmented data points into a cohesive narrative of an attack.
  • Collaboration: Strong ability to document complex workflows and lead technical training sessions for junior SOC analysts.
Certifications (Highly Desired)
  • SOC & Detection: GIAC Certified Detection Analyst (GCDA), GIAC Certified Intrusion Analyst (GCIA). GCIH (GIAC Certified Incident Handler)
  • Vendor Specific: Microsoft SC-200, Splunk Core Certified Advanced Power User, or AWS Certified Security - Specialty.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Security Engineer II
Cyber Security Engineer II

high radius • Hyderabad

On-site
INR 900,000 - 1,500,000
Junior Engineer
Junior Engineer

Lyric Exponentials India Private Limited • Hyderabad

Hybrid
INR 1,000,000 - 1,500,000
Soc Analyst
Soc Analyst

BUSINESSNEXT • Dadri

On-site
INR 1,200,000 - 2,000,000
Sr. Security Operations Analyst
Sr. Security Operations Analyst

Simfluent • Dadri

On-site
INR 1,200,000 - 1,800,000
Sr Cyber Security Engineer
Sr Cyber Security Engineer

TechBrein Solutions Private Limited • Kozhikode district

On-site
INR 1,200,000 - 2,400,000
Security Operations Manager
Security Operations Manager

Angel One • Bengaluru

On-site
INR 3,500,000 - 6,000,000
Senior Security Operations Center (SOC) Analyst
Senior Security Operations Center (SOC) Analyst

Intuitive Apps • Mumbai

On-site
INR 1,500,000 - 2,300,000
Cyber Security Analyst (SOC)
Cyber Security Analyst (SOC)

Genpact • Pune District

On-site
INR 900,000 - 1,500,000
Security Analyst
Security Analyst

Access Healthcare • Zone 7 Ambattur

On-site
INR 1,200,000 - 2,100,000
SOC Specialist
SOC Specialist

METRO/MAKRO • Pune District

On-site
INR 4,000,000 - 7,000,000