Cybersecurity SOC Lead AI And Automation

dotSolved Systems Inc.

Chennai District

Hybrid

INR 3,000,000 - 5,500,000

Full time

4 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

dotSolved Systems Inc. in Chennai seeks a Cybersecurity – SOC Lead (AI & Automation) to guide offshore SOC operations across L1/L2, leveraging AI features while preserving analyst judgement. You will coordinate with US stakeholders, manage governance, and push automation to reduce noise and improve detection fidelity.

The role requires strong Splunk-based SOC experience, offshore collaboration with US clients, and the ability to communicate risk in business terms during reviews and KPI reporting.

Qualifications

  • Experience leading 24x7 security operations teams.
  • Proficiency in Splunk-based SOC operations.
  • Knowledge of endpoint, network, email, and vulnerability telemetry.
  • Ability to coach analysts and enforce case quality.
  • Experience collaborating with offshore teams for US stakeholders.

Responsibilities

  • Lead the offshore SOC pod across L1 and L2 activities, ensure queue health, review investigation quality, and align with Customer security leadership.
  • Own daily operational governance including case quality, severity calibration, shift handoffs, SLA adherence, and major-incident escalation discipline.
  • Drive continuous improvement in Splunk ES / Mission Control operations, detection logic review, alert noise reduction, and visibility gap identification.
  • Coordinate across CrowdStrike, Proofpoint, Qualys, Palo Alto, Dragos, ServiceNow, and automation workflows to improve response effectiveness.
  • Translate technical events into business risk language for US stakeholders and support weekly service reviews, KPI reporting, and corrective action tracking.
  • Promote responsible use of AI-assisted summarization, enrichment, and workflow acceleration within guardrails.

Skills

SOC leadership
Splunk ES
Detection governance
Executive communication
Offshore team management

Tools

Splunk Mission Control
CrowdStrike
Qualys
Proofpoint
Palo Alto
Dragos
ServiceNow
Microsoft Teams
M365 / Entra

Job description

Job Description:

Position: Cybersecurity – SOC Lead (AI & Automation)

Location: Chennai - Onsite/Hybrid/Remote

Shift Timing: 5.30PM - 2.30AM IST (US Eastern Time)

Engagement Type: Full Time

Role Summary:

Lead offshore SOC execution for Customer, combining operational leadership, detection governance, case quality oversight, and practical automation. This role must drive disciplined day-to-day performance while improving the use of built-in AI / automation features across the CLW security stack without sacrificing analyst judgement, traceability, or investigation fidelity.

Key Responsibilities:
  • Lead the offshore SOC pod across L1 and L2 activities, ensure queue health, review investigation quality, and maintain strong stakeholder alignment with Customer security leadership.
  • Own daily operational governance including case quality, severity calibration, shift handoffs, SLA adherence, and escalation discipline for major incidents.
  • Drive continuous improvement in Splunk ES / Mission Control operations, detection logic review, alert noise reduction, and visibility gap identification.
  • Coordinate across CrowdStrike, Proofpoint, Qualys, Palo Alto, Dragos, ServiceNow, and automation workflows to improve response effectiveness.
  • Translate technical events into concise business risk language for U.S. stakeholders and support weekly service reviews, KPI reporting, and corrective action tracking.
  • Promote responsible use of AI-assisted summarization, enrichment, and workflow acceleration within approved guardrails.
Tool Environment:

Splunk ES / Mission Control, CrowdStrike, Qualys, Proofpoint, Palo Alto, Dragos, ServiceNow, Teams, M365 / Entra context, automation / SOAR capabilities where approved.

Required Experience & Skills:
  • Strong security operations leadership experience, including direct management of analysts or provider teams in a 24x7 or follow-the-sun model.
  • Advanced proficiency in Splunk-based SOC operations and solid working knowledge of endpoint, network, email, and vulnerability telemetry.
  • Ability to coach analysts, review investigations, and enforce consistent case quality and operational rigor.
  • Strong executive-facing communication and ability to run governance reviews with facts, metrics, and remediation actions.
  • Experience working with offshore teams serving U.S.-based stakeholders.
Preferred Qualifications:
  • Manufacturing / OT security exposure, especially where corporate-to-plant visibility and escalation discipline matter.
  • Experience with ServiceNow workflows, playbook optimization, and approved automation / SOAR patterns.
  • Awareness of MITRE ATT&CK-aligned detection engineering and risk-based incident prioritization.
Offshore India Operating Model:
  • Work as an embedded offshore team member supporting U.S.-based stakeholders with dependable daily communication, disciplined documentation, and clear ownership of actions and follow-ups.
  • Operate with strong handoff hygiene across shifts, including concise status updates, ticket notes, evidence capture, and risk-based escalation to Customer leads.
  • Support a manufacturing-aware operating model where uptime, safety, OT change sensitivity, and controlled execution are treated as essential requirements.
  • Use ServiceNow and Microsoft Teams effectively for workflow coordination, incident tracking, approvals, and stakeholder communication.
  • Be prepared to align with late afternoon / evening IST overlap with U.S. Eastern time and participate in critical incident bridges when required.
Success Measures:
  • Stable, measurable SOC operations with better case quality, tighter escalation hygiene, and improved visibility coverage.
  • Documented reduction in alert noise and stronger detection fidelity across the CLW stack.
  • Clear governance cadence and dependable offshore team performance.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cybersecurity – SOC Lead (AI & Automation)
Cybersecurity – SOC Lead (AI & Automation)

dotSolved Systems Inc. • Chennai District

Hybrid
INR 3,500,000 - 5,500,000
Cybersecurity – SOC Lead (AI & Automation)
Cybersecurity – SOC Lead (AI & Automation)

dotSolved System Inc. • Chennai District

Hybrid
INR 4,000,000 - 7,500,000
Cybersecurity – SOC Lead (AI & Automation)
Cybersecurity – SOC Lead (AI & Automation)

Dotsolved Systems, Inc. • Chennai District

On-site
INR 3,000,000 - 5,000,000
SISA Information Security - Security Operations Center Manager - SIEM/SOAR
SISA Information Security - Security Operations Center Manager - SIEM/SOAR

SISA • Bengaluru

On-site
INR 3,000,000 - 5,200,000
SOC Manager
SOC Manager

SISA • Bengaluru

On-site
INR 6,000,000 - 9,000,000
Lead Cybersecurity Engineer
Lead Cybersecurity Engineer

Neurealm • Chennai District

On-site
INR 2,800,000 - 6,000,000
Security Operations Center Manager
Security Operations Center Manager

CMS It Services • Dadri

On-site
INR 1,400,000 - 2,100,000
Security Automation Engineer
Security Automation Engineer

Cbts • Chennai District

On-site
INR 1,400,000 - 2,200,000
SOC LEAD
SOC LEAD

Anveta Manpower Solutions • Hyderabad

On-site
INR 3,000,000 - 4,500,000
Security Operations Center Analyst - L2
Security Operations Center Analyst - L2

SRM Technologies • Chennai District

On-site
INR 900,000 - 1,500,000