Cyber Security Specialist

Terralogic

Bengaluru

On-site

INR 2,800,000 - 4,600,000

Full time

15 hours ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Terralogic Bengaluru is seeking an experienced security operations professional with 7+ years of hands-on experience in advanced threat investigation, RCA, and Microsoft security stack management. You will lead deep-dive investigations, perform root-cause analysis, and mentor junior analysts during incident response.

The role requires working across Microsoft Sentinel, Azure Logic Apps, and Defender suites, crafting KQL queries, building automation playbooks, and coordinating remediation with

Qualifications

  • 7+ years of cybersecurity operations experience
  • Hands-on Microsoft Security stack management
  • Root-cause analysis and advanced threat investigation
  • Experience with threat hunting and incident response processes

Responsibilities

  • Lead deep-dive investigations into complex security incidents escalated by L1/L2 analysts.
  • Perform comprehensive Root Cause Analysis (RCA) to identify vulnerabilities and gaps.
  • Track adversary behavior across the network using MITRE ATT&CK or similar frameworks.
  • Architect, configure, and optimize Microsoft Sentinel SIEM/XDR environments.
  • Develop advanced KQL queries for custom analytic rules, threat hunting, and watchlists.
  • Build automated playbooks within Microsoft Sentinel and Azure Logic Apps to optimize SOAR and MTTR.
  • Design strategic transition plans to migrate legacy SOC operations into automated frameworks.
  • Mentor L1/L2 analysts through workshops and incident simulations.
  • Maintain incident playbooks, post-mortem reports, and compliance documentation.

Skills

KQL queries
Incident response
Cyber threat investigation
Cloud security

Tools

Microsoft Sentinel
Azure Logic Apps
Microsoft Defender suite

Job description

Position Overview
  • Experience: 7+ years of core cybersecurity operations experience
  • Core Focus: Hands-on Microsoft Security stack management, root-cause analysis, advanced threat investigation, and remediation orchestration.
Key Responsibilities
Advanced Threat Investigation & RCA
  • Lead deep-dive investigations into complex, multi-stage security incidents escalated by L1/L2 analysts.
  • Perform comprehensive Root Cause Analysis (RCA) to identify underlying vulnerabilities and system gaps.
  • Track adversary behavior across the network using cyber threat intelligence frameworks (e.g., MITRE ATT&CK).
Microsoft Security Stack Execution
  • Architect, configure, and optimize Microsoft Sentinel SIEM/XDR environments.
  • Develop advanced KQL (Kusto Query Language) queries for custom analytic rules, threat hunting, and watchlists.
  • Build automated playbooks within Microsoft Sentinel and Azure Logic Apps to optimize SOAR capabilities and reduce Mean Time to Respond (MTTR).
Remediation & Transition Planning
  • Design strategic transition plans to migrate legacy SOC operations into modern, automated frameworks.
  • Formulate containment and remediation strategies during active high-priority incidents.
  • Provide actionable blueprints to engineering teams for long-term threat neutralization and system hardening.
Leadership & Stakeholder Management
  • Act as the technical SME and point of contact for enterprise customers, handling on-site deployments and crisis communication when required.
  • Mentor and upscale L1 and L2 security analysts through technical workshops and incident simulations.
  • Maintain rigorous documentation for incident playbooks, post-mortem reports, and compliance audits.
Qualifications
Technical Expertise
  • Expertise: Hands-on mastery of Microsoft Sentinel, Azure Logic Apps, and Microsoft Defender suite.
  • Query Languages: Exceptional proficiency in writing and tuning KQL queries.
  • Automation: Proven experience building complex conditional workflows and integrations in Azure DevOps or Logic Apps.
  • Incident Response: Deep knowledge of network protocols, operating system forensics (Windows/Linux), and cloud security vectors.
Professional Attributes
  • Problem Solving: Exceptional analytical mind capable of connecting disparate security events.
  • Flexibility: Willingness to work dynamically between the Terralogic corporate office and client sites.
  • Communication: Clear verbal and written skills to translate technical cyber risks to non-technical client stakeholders.
Preferred Skills but not mandatory
  • Microsoft Certified: Security Operations Analyst Associate (SC-200)
  • Microsoft Certified: Azure Security Engineer Associate (AZ-500)
  • GIAC Certified Incident Handler (GCIH) or Certified Information Systems Security Professional (CISSP)
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Cyber Security Analyst
Senior Cyber Security Analyst

Dun & Bradstreet India • Hyderabad

On-site
INR 2,500,000 - 4,000,000
Cyber Security Engineer
Cyber Security Engineer

Futurism Technologies, INC. • Pune District

Hybrid
INR 2,000,000 - 3,400,000
Cyber Security Analyst (SOC)
Cyber Security Analyst (SOC)

Genpact • Pune District

On-site
INR 900,000 - 1,500,000
Cybersecurity Analyst
Cybersecurity Analyst

Abacus • Chennai District

On-site
INR 900,000 - 1,400,000
Security Technician - SOC Analyst
Security Technician - SOC Analyst

Fujitsu • Pune District, Bengaluru, Dadri

Hybrid
INR 900,000 - 1,300,000
Expert IT Cyber Defense Analyst
Expert IT Cyber Defense Analyst

Jobtailor • Pune District

On-site
INR 900,000 - 1,500,000
Cyber Security Analyst
Cyber Security Analyst

Dun & Bradstreet • Hyderabad

On-site
INR 3,000,000 - 5,000,000
Senior Cyber Security Analyst (R-19638)
Senior Cyber Security Analyst (R-19638)

Eyeota • Hyderabad

On-site
INR 1,100,000 - 2,400,000
Cyber Security Engineer
Cyber Security Engineer

Futurism Technologies • Mhalunge

On-site
INR 1,800,000 - 3,400,000
Sr. Security Operations Analyst
Sr. Security Operations Analyst

Simfluent • Dadri

On-site
INR 1,200,000 - 1,800,000