L3 SOC Analyst

Mizuho

Pune District

On-site

INR 2,800,000 - 4,200,000

Full time

40 hours ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Mizuho Pune is seeking a Senior Cyber Fusion Center Analyst (L3) to act as the highest technical escalation point within the Cyber Fusion Center. You will lead complex incident investigations, identify advanced threats, develop detection capabilities, and strengthen the organization's cyber defense posture through proactive threat hunting and continuous improvement.

You will partner with Threat Intelligence, Detection Engineering, DFIR, Infrastructure, Cloud, Identity, and Security Engineering

Qualifications

  • 7-10+ years of experience in Cyber Security Operations, Cyber Fusion Centers, Threat Hunting, Incident Response, Detection Engineering, Digital Forensics, or related cybersecurity disciplines.
  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Engineering, or a related discipline.
  • Advanced knowledge of incident response methodologies, threat hunting frameworks, digital forensics principles, adversary tactics, and MITRE ATT&CK.
  • Proven experience leading complex cybersecurity investigations, major incident response activities, and threat-driven defense operations.
  • Experience performing threat hunting, attack-path analysis, threat intelligence-driven investigations, malware analysis, root cause analysis, and incident management.
  • Strong understanding of endpoint, network, identity, cloud, and email security architectures within large enterprise environments.
  • Experience developing detection logic, behavioral analytics, security content, automation workflows, and operational use cases to improve detection coverage and response effectiveness.
  • Advanced proficiency with SPL, Python, PowerShell, KQL, REST APIs, JSON, security automation, and data analysis techniques.

Responsibilities

  • Lead investigations and response for high-severity cybersecurity incidents by determining attack scope, root cause, business impact, and remediation requirements while coordinating cross-functional response activities.
  • Identify and mitigate advanced threats through proactive threat hunting, adversary emulation, threat intelligence analysis, and the discovery of previously undetected malicious activity across enterprise environments.
  • Improve organizational detection and response capabilities by developing and optimizing detection use cases, behavioral analytics, response workflows, and security automation initiatives aligned to evolving threat landscapes.
  • Serve as the senior technical advisor and escalation point for Cyber Fusion Center operations by mentoring analysts, providing investigative guidance, and establishing best practices for incident response and threat detection activities.
  • Strengthen cyber resilience by conducting post-incident reviews, identifying control gaps, recommending security improvements, and driving continuous enhancements across people, processes, and technology.
  • Partner with Infrastructure, Cloud, Identity, Application Security, Threat Intelligence, and Security Engineering teams to improve visibility, enhance security architecture, and evaluate emerging threats and technologies.
  • Support cybersecurity governance, audit, regulatory, and operational maturity initiatives through executive reporting, technical documentation, cyber exercises, and capability development programs.

Skills

Incident response
Threat hunting
Digital forensics
MITRE ATT&CK
SPL
Python
PowerShell
KQL
REST APIs
JSON
Security analytics
Communication
Leadership
Executive reporting

Education

Bachelor's degree in Cybersecurity, CS, IT, Engineering, or related

Tools

Splunk Enterprise Security
Microsoft Sentinel
Palo Alto Cortex XSOAR
CrowdStrike Falcon
Palo Alto Cortex XDR
Microsoft Defender XDR
Threat intel platforms
SIEM
SOAR
EDR/XDR solutions
Cloud security technologies
Identity security platforms
Email security controls

Job description

At Mizuho, we provide the stability of an international industry leader with the career trajectory of a growing business. Our steady, strategic growth gives our people at all levels rewarding degrees of responsibility and richer work experience than a boutique firm or an established giant could offer alone.

It’s the local expertise of our employees that makes our global network so powerful. By collaborating with colleagues and clients who share the same ambition and drive, you can amplify your sphere of influence and base of knowledge as part of one of the largest banks in the world.

Summary

Mizuho Global Services (MGS) is seeking a Senior Cyber Fusion Center Analyst (L3) to serve as the highest technical escalation point within the Cyber Fusion Center. This role is responsible for leading complex incident investigations, identifying advanced threats, developing detection capabilities, and strengthening the organization's cyber defense posture through proactive threat hunting and continuous operational improvement.

The successful candidate will partner with Threat Intelligence, Detection Engineering, DFIR, Infrastructure, Cloud, Identity, and Security Engineering teams to improve detection coverage, accelerate response capabilities, and enhance Mizuho's resilience against sophisticated cyber threats.

Key Responsibilities
  • Lead investigations and response efforts for high-severity cybersecurity incidents by determining attack scope, root cause, business impact, and remediation requirements while coordinating cross-functional response activities.
  • Identify and mitigate advanced threats through proactive threat hunting, adversary emulation, threat intelligence analysis, and the discovery of previously undetected malicious activity across enterprise environments.
  • Improve organizational detection and response capabilities by developing and optimizing detection use cases, behavioral analytics, response workflows, and security automation initiatives aligned to evolving threat landscapes.
  • Serve as the senior technical advisor and escalation point for Cyber Fusion Center operations by mentoring analysts, providing investigative guidance, and establishing best practices for incident response and threat detection activities.
  • Strengthen cyber resilience by conducting post-incident reviews, identifying control gaps, recommending security improvements, and driving continuous enhancements across people, processes, and technology.
  • Partner with Infrastructure, Cloud, Identity, Application Security, Threat Intelligence, and Security Engineering teams to improve visibility, enhance security architecture, and evaluate emerging threats and technologies.
  • Support cybersecurity governance, audit, regulatory, and operational maturity initiatives through executive reporting, technical documentation, cyber exercises, and capability development programs.
Required Qualifications
  • 7-10+ years of experience in Cyber Security Operations, Cyber Fusion Centers, Threat Hunting, Incident Response, Detection Engineering, Digital Forensics, or related cybersecurity disciplines.
  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Engineering, or a related discipline.
  • Advanced knowledge of incident response methodologies, threat hunting frameworks, digital forensics principles, adversary tactics, and MITRE ATT&CK.
  • Proven experience leading complex cybersecurity investigations, major incident response activities, and threat-driven defense operations.
  • Experience performing threat hunting, attack-path analysis, threat intelligence-driven investigations, malware analysis, root cause analysis, and incident management.
  • Strong understanding of endpoint, network, identity, cloud, and email security architectures within large enterprise environments.
  • Experience developing detection logic, behavioral analytics, security content, automation workflows, and operational use cases to improve detection coverage and response effectiveness.
  • Advanced proficiency with SPL, Python, PowerShell, KQL, REST APIs, JSON, security automation, and data analysis techniques.
  • Security Technologies: Splunk Enterprise Security, Microsoft Sentinel, Palo Alto Cortex XSOAR, CrowdStrike Falcon, Palo Alto Cortex XDR, Microsoft Defender XDR, threat intelligence platforms, SIEM, SOAR, EDR/XDR solutions, cloud security technologies, identity security platforms, email security controls, network security solutions, and ITSM integrations.
  • Excellent communication, leadership, stakeholder management, and executive reporting skills.
Preferred Qualifications
  • Industry certifications such as GCFA, GCIH, GCIA, GNFA, CISSP, CCSP, SC-100, Azure Security Engineer (AZ-500), AWS Security Specialty, or equivalent.
  • Experience supporting global financial institutions or other highly regulated organizations.
  • Experience operating within NIST, FFIEC, CIS Controls, and other regulatory cybersecurity frameworks.
  • Exposure to purple team operations, adversary simulation, detection engineering, cloud security monitoring, and cyber resilience programs.
Company Overview

Mizuho Pune is an integral part of Mizuho Financial Group, one of the world’s leading financial institutions with a strong global presence across the Americas, EMEA, and Asia. Based in India, Mizuho Pune supports Mizuho’s international businesses by delivering high-quality, scalable, and resilient services across multiple functions.

Mizuho Pune plays a critical role in driving operational excellence, standardization, and innovation for Mizuho Americas. By combining deep domain expertise with strong process, technology, and analytical capabilities, it partners closely with regional and global teams to support corporate and investment banking, capital markets, and corporate services functions, while adhering to the highest standards of risk management, regulatory compliance, and control.

Mizuho Pune offers competitive compensation and benefits package aligned with industry standards and local market practices.

Mizuho Pune is an equal opportunity employer and is committed to fostering an inclusive and diverse workplace.

Employment is subject to applicable background verification checks in accordance with Indian laws and company policies.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

L2 SOC Analyst
L2 SOC Analyst

Mizuho • Pune District

On-site
INR 1,500,000 - 2,100,000
L1 SOC Analyst
L1 SOC Analyst

Mizuho • Pune District

On-site
INR 900,000 - 1,400,000
Cyber Fusion Center Shift Lead
Cyber Fusion Center Shift Lead

Mizuho • Pune District

Hybrid
INR 2,000,000 - 3,500,000
Cyber Fusion Center Threat Hunting Lead
Cyber Fusion Center Threat Hunting Lead

Mizuho • Pune District

On-site
INR 4,500,000 - 6,500,000
Digital Forensics & Incident Response (DFIR) Lead
Digital Forensics & Incident Response (DFIR) Lead

Mizuho • Pune District

On-site
INR 3,500,000 - 7,500,000
Cybersecurity Business Intelligence & Analytics Lead
Cybersecurity Business Intelligence & Analytics Lead

Mizuho • Pune District

On-site
INR 3,000,000 - 6,000,000
Cybersecurity Governance Analyst
Cybersecurity Governance Analyst

Mizuho • Pune District

On-site
INR 1,200,000 - 1,800,000
Cyber Security Advisory Lead
Cyber Security Advisory Lead

Mizuho • Pune District

On-site
INR 4,000,000 - 6,500,000
Cybersecurity Controls Testing Analyst
Cybersecurity Controls Testing Analyst

Mizuho • Pune District

On-site
INR 900,000 - 1,300,000
Vulnerability Management and Threat Exposure Management - Analyst
Vulnerability Management and Threat Exposure Management - Analyst

Mizuho • Pune District

On-site
INR 1,200,000 - 1,800,000