Engineer - Captive Operations

Tata Communications

Mumbai

On-site

INR 600,000 - 900,000

Full time

14 days+
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Tata Communications is seeking a Security Operations Center (SOC) analyst to monitor SIEM alerts 24x7 and perform initial triage. You will validate security events, analyze logs from Firewall, WAF, EDR, AD, DNS, VPN and other devices, and escalate confirmed incidents to L2/L3 teams within SLAs.

Responsibilities include maintaining shift handovers, updating tickets with evidence, supporting incident and vulnerability investigations, and following SOPs and playbooks to ensure timely response and

Responsibilities

  • 24x7 monitoring of SIEM alerts and security events.
  • Initial alert triage and validate security events.
  • Analyze logs from Firewall, WAF, Proxy, EDR, Windows/Linux, AD, DNS, VPN, Email Security and other security devices.
  • Identify True Positive (TP) and False Positive (FP) alerts.
  • Escalate confirmed/suspicious incidents to L2/L3 as per the escalation matrix.
  • Create and update tickets with complete investigation details and evidence.
  • Ensure alerts and incidents are handled within defined SLA/KPI timelines.
  • Maintain proper shift handover and communicate all pending/high-priority incidents.
  • Follow documented SOPs, playbooks and escalation procedures.
  • Support daily SOC reports, incident reports and shift reports.
  • Monitor SIEM health, log source connectivity and report ingestion issues to the respective teams.
  • Participate in incident response, vulnerability-related investigations and security investigations as required.
  • Maintain confidentiality and follow organizational security policies.

Job description

Responsibilities
  • Responsible for 24x7 monitoring of SIEM alerts and security events, performing initial alert triage, identifying potential security incidents, and escalating confirmed or suspicious events to L2/L3 teams within defined SLAs.
  • Monitor SIEM dashboards, alerts, events and security incidents on a 24x7 basis.
  • Perform L1 alert triage and validate security events.
  • Analyze logs from Firewall, WAF, Proxy, EDR, Windows/Linux, AD, DNS, VPN, Email Security and other security devices.
  • Identify True Positive (TP) and False Positive (FP) alerts.
  • Perform initial investigation of suspicious IPs, domains, URLs, hashes, users and hosts.
  • Correlate events from multiple log sources to identify potential threats.
  • Escalate confirmed/suspicious incidents to L2/L3 as per the defined escalation matrix.
  • Create and update tickets with complete investigation details and evidence.
  • Ensure alerts and incidents are handled within defined SLA/KPI timelines.
  • Maintain proper shift handover and communicate all pending/high-priority incidents.
  • Follow documented SOPs, playbooks and escalation procedures.
  • Support daily SOC reports, incident reports and shift reports.
  • Monitor SIEM health, log source connectivity and report ingestion issues to the respective teams.
  • Participate in incident response, vulnerability-related investigations and security investigations as required.
  • Maintain confidentiality and follow organizational security policies.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Sr Engineer - Captive Operations
Sr Engineer - Captive Operations

Tata Communications • Gurugram District

On-site
INR 900,000 - 1,500,000
Sr Engineer - Captive Operations
Sr Engineer - Captive Operations

Tata Communications • Bengaluru

On-site
INR 700,000 - 1,100,000
Security Engineer (L1)
Security Engineer (L1)

NTT DATA BUSINESS SOLUTIONS • Kolkata District

On-site
INR 600,000 - 1,000,000
Soc Analyst
Soc Analyst

Fourth Dimension Technologies • Chennai District

On-site
INR 600,000 - 900,000
Security Operations (SecOps) Engineer
Security Operations (SecOps) Engineer

ECLAT Health Solutions • Hyderabad

On-site
INR 800,000 - 1,500,000
Engineer-Cybersecurity
Engineer-Cybersecurity

Birlasoft ( India ) Limited • India

On-site
INR 600,000 - 900,000
Sr. Engineer – Security Engineering
Sr. Engineer – Security Engineering

CBTS • Bengaluru

On-site
INR 1,200,000 - 1,800,000
Soc Analyst 1
Soc Analyst 1

Nihon Cyber Defence • Gurugram District

On-site
INR 400,000 - 700,000
Soc Analyst 1
Soc Analyst 1

V2 Solutions • Hyderabad

On-site
INR 900,000 - 1,500,000
Assistant Manager - Captive Operations
Assistant Manager - Captive Operations

Tata Communications • Gurugram District

On-site
INR 1,500,000 - 3,000,000