Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.
dotSolved, headquartered in Silicon Valley USA, is a leading global provider of business process automation, modern application engineering, and cloud infrastructure services. dotSolved focuses on enabling digital transformations for small, medium, and large enterprises, in the following industries (but not limited to): High technology, Energy, Manufacturing, Financial Services, Media & Entertainment, Communications, Retail, Healthcare, and Education.
dotSolved drives digital transformations for enterprises by defining, automating, and optimizing complex business processes for the digital era and engineering modern, data & analytic driven, applications that deliver intended business value. With hundreds of successful implementations and experience in Big Data, ERP, and Supply Chain, dotSolved can guarantee the creation of measurable business value from project engagements leading to accelerated business growth and profitability for customers.
Position: Cybersecurity – SOC Lead (AI & Automation)
Shift Timing: 5.30PM - 2.30AM IST (US Eastern Time)
Role Summary:
Lead offshore SOC execution for Customer,combining operational leadership, detection governance, case quality oversight,and practical automation. This role must drive disciplined day-to-dayperformance while improving the use of built-in AI / automation features acrossthe CLW security stack without sacrificing analyst judgement, traceability, orinvestigation fidelity.
Key Responsibilities:
Lead the offshore SOC pod across L1 and L2 activities, ensure queuehealth, review investigation quality, and maintain strong stakeholder alignmentwith Customer security leadership.
Own daily operational governance including case quality, severitycalibration, shift handoffs, SLA adherence, and escalation discipline for majorincidents.
Drive continuous improvement in Splunk ES / Mission Controloperations, detection logic review, alert noise reduction, and visibility gapidentification.
Coordinate across CrowdStrike, Proofpoint, Qualys, Palo Alto,Dragos, ServiceNow, and automation workflows to improve response effectiveness.
Translate technical events into concise business risk language forU.S. stakeholders and support weekly service reviews, KPI reporting, andcorrective action tracking.
Promote responsible use of AI-assisted summarization, enrichment,and workflow acceleration within approved guardrails.
Splunk ES / Mission Control, CrowdStrike,Qualys, Proofpoint, Palo Alto, Dragos, ServiceNow, Teams, M365 / Entra context,automation / SOAR capabilities where approved.
Required Experience & Skills:
Strong security operations leadership experience, including directmanagement of analysts or provider teams in a 24x7 or follow-the-sun model.
Advanced proficiency in Splunk-based SOC operations and solidworking knowledge of endpoint, network, email, and vulnerability telemetry.
Ability to coach analysts, review investigations, and enforceconsistent case quality and operational rigor.
Strong executive-facing communication and ability to run governancereviews with facts, metrics, and remediation actions.
Experience working with offshore teams serving U.S.-basedstakeholders.
Preferred Qualifications:
Manufacturing / OT security exposure, especially wherecorporate-to-plant visibility and escalation discipline matter.
Experience with ServiceNow workflows, playbook optimization, andapproved automation / SOAR patterns.
Awareness of MITRE ATT&CK-aligned detection engineering andrisk-based incident prioritization.
Offshore India Operating Model:
Work as an embedded offshore team member supporting U.S.-basedstakeholders with dependable daily communication, disciplined documentation,and clear ownership of actions and follow-ups.
Operate with strong handoff hygiene across shifts, including concisestatus updates, ticket notes, evidence capture, and risk-based escalation to Customerleads.
Support a manufacturing-aware operating model where uptime, safety,OT change sensitivity, and controlled execution are treated as essentialrequirements.
Use ServiceNow and Microsoft Teams effectively for workflowcoordination, incident tracking, approvals, and stakeholder communication.
Be prepared to align with late afternoon / evening IST overlap withU.S. Eastern time and participate in critical incident bridges when required.
Success Measures:
Stable, measurable SOC operations with better case quality, tighterescalation hygiene, and improved visibility coverage.
Documented reduction in alert noise and stronger detection fidelityacross the CLW stack.
Clear governance cadence and dependable offshore team performance.