Lead Cyber Defence Analyst

IG Infotech

Bengaluru

On-site

INR 1,200,000 - 1,800,000

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

IG Infotech is seeking a Lead Cyber Defence Analyst in Bengaluru, India. This pivotal role involves overseeing shift operations, managing high-severity security incidents, and mentoring junior analysts.

The ideal candidate will have over 6 years of hands-on SOC experience, with strong expertise in SIEM, SOAR, and incident response. You'll be responsible for improving detection and response capabilities while guiding the development of your team.

Qualifications

  • 6+ years of experience in SOC operations and incident response.
  • Proven ability to lead complex investigations.
  • Deep technical expertise in detection technologies.

Responsibilities

  • Lead investigations and coordinate response efforts.
  • Design and implement detection rule improvements.
  • Mentor and coach L1 and L2 analysts.

Skills

Incident response
Threat intelligence
Mentoring
Automation

Tools

SIEM
SOAR
EDR tools

Job description

Lead Cyber Defence Analyst

As a Lead Cyber Defence Analyst (L3) you are accountable for shift operations and serve as the senior technical escalation point for complex and high‑severity security incidents. You will drive meaningful improvements to the SOC's detection and response capabilities — designing SIEM rules, building SOAR automation, and leading post‑incident reviews that translate lessons learnt into tangible enhancements. You will also play a central role in developing the analysts around you, mentoring L1s and L2s and helping to build a high‑performing, continuously improving team.

Responsibilities
  • Act as the senior escalation point for complex, high, and critical severity incidents – leading investigations, coordinating response efforts and keeping the SOC Manager informed throughout.
  • Design and implement improvements to detection rules and SOAR automation, drawing on threat intelligence, lessons learnt and emerging global threat trends.
  • Lead post‑incident reviews for high and critical severity incidents, facilitating lessons learnt discussions and driving measurable improvements to SOC processes and tooling.
  • Mentor and coach L1 and L2 analysts, organise tabletop exercises focused on current threat trends, and provide cover and support for SOC Team Leaders when needed.
  • Maintain shift oversight, monitor team workload and incident queues, and conduct proactive threat hunts in line with the JIRA procedure.
Qualifications
  • 6+ years of extensive experience in SOC operations and incident response, with a proven ability to lead complex, high‑pressure investigations and coordinate across teams.
  • Deep technical expertise across SIEM and SOAR platforms, EDR tooling and threat detection technologies, including hands‑on experience building and automating detection logic and playbooks in production environments.
  • Demonstrated ability to develop and maintain automated workflows that improve SOC efficiency and reduce analyst toil.
  • Strong mentoring and communication skills, with experience coaching analysts at multiple levels and delivering structured learning activities such as tabletop exercises.
  • A proactive, improvement‑focused mindset — comfortable analysing incident metrics, identifying gaps, and taking ownership of making things better.
Shift Timings (APAC & EMEA Support Coverage)

APAC (Primary Working Window) – India (IST): 08:00 – 17:00

EMEA (Primary Working Window) – India (IST): 13:30 – 23:30

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Lead Cyber Defence Analyst
Lead Cyber Defence Analyst

Remotestar • Bengaluru

Hybrid
INR 1,200,000 - 1,800,000
Security Operations Center Manager
Security Operations Center Manager

CMS It Services • Dadri

On-site
INR 1,400,000 - 2,100,000
L2 SOC Analyst
L2 SOC Analyst

UST • Thiruvananthapuram

Hybrid
INR 600,000 - 900,000
SOC L3 Analyst
SOC L3 Analyst

Isix • India

On-site
INR 2,500,000 - 4,500,000
SOC L3 Expert
SOC L3 Expert

Maandag® Middle East • India

On-site
INR 800,000 - 1,200,000
L3 SOC Analyst
L3 SOC Analyst

UST • Bengaluru

On-site
INR 1,500,000 - 2,100,000
Security Operations Center Lead
Security Operations Center Lead

Tekskills • Bengaluru

On-site
INR 2,500,000 - 4,000,000
Technical Specialist - Cyber Security L3
Technical Specialist - Cyber Security L3

Lenovo • Bengaluru

On-site
INR 1,400,000 - 2,100,000
SOC L1 Analyst
SOC L1 Analyst

Verint • Bengaluru

On-site
INR 1,000,000 - 1,500,000
Security Analyst - L2
Security Analyst - L2

Nopal Cyber, LLC. • Hyderabad

On-site
INR 1,200,000 - 1,600,000