Security Engineer, GIOC

WebHosting

Chennai District

On-site

INR 1,200,000 - 2,200,000

Full time

15 hours ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Medical Insurance stipend
9 Company-Paid Holidays
Generous Leave policy + 1 month sabbat
Anniversary Bonus
Professional Development Reimbursement
Fitness membership reimbursement
Wellable subscription

Job summary

Vultr is expanding its India presence and is building its first Global Integrated Operations Command Center (GIOC) in Chennai – the 24×7 nerve center for security operations.

We are seeking Security Engineers to serve as the first line of response across our security signal surface – SIEM, threat, identity, and access alerts. This frontline role supports triage, containment, and documentation, with opportunities to grow into SOC and security engineering tracks.

Qualifications

  • Graduate/Engineer in a relevant field (B.E./B.Tech or equivalent).
  • 3–5 years of experience in a SOC or security operations.
  • Working knowledge of security fundamentals and logging.
  • Proficient in English verbal and written communication.

Responsibilities

  • Monitor security signals from SIEM and related alerts.
  • Acknowledge and triage incidents within first-response SLAs.
  • Classify alerts by severity and route to the correct escalation path.
  • Perform first-line containment and preserve evidence.
  • Document steps with timestamps and maintain incident tickets.
  • Escalate unresolved alerts to Senior Security Engineers with clean handoffs.

Skills

Hands-on security monitoring
Alert triage
English communication

Education

B.E./B.Tech or equivalent

Tools

SIEM
Alert triage
Log analysis
ITSM

Job description

Not specified Full-time Not specified Infrastructure

Job Description
Vultr Cares

Medical Insurance stipend paid annually

9 Company-Paid Holidays

Generous Leave Policy + 1 month paid sabbatical every 5 years + Anniversary Bonus each year

Professional Development Reimbursement

Fitness membership reimbursement

Company paid Wellable subscription

Join Vultr

Vultr is expanding its India presence and is building its firstGlobal Integrated Operations Command Center (GIOC) in Chennai– the 24×7 nerve center for monitoring, triage, and first response across Vultr’s globalsecurity operations.

We are seekingSecurity Engineersto serve as the first line of response across Vultr’ssecurity signal surface – SIEM, threat, identity, and access alerts.This is a frontline security operations role for engineers who triage SIEM alerts, perform first-line containment, and preserve evidence in real time – and who want to grow into deeper SOC, threat-detection, or security engineering careers. You must be comfortable working a rotational shift model – including nights, weekends, and holidays – to sustain the coverage.

Role Overview

TheSecurity Engineeris the entry point of the GIOC incident lifecycle for the security tower. You monitor security signals, acknowledge and triage alerts withindefined first-response SLAs,execute documented runbooks to investigate and contain common security events, and elevate cleanly to Senior Security when an alert falls outside L1 scope. The role ensures fast, accurate first responsethat protects customer data and platform security.

You operate from a consolidatedsingle-pane-of-glass dashboard, classifying and routing incidents by severity and tower while owning accurate, complete documentation and chain-of-custody for every action. Success is measured byfirst-response SLA adherence, triage accuracy, and runbook resolution rate. The role runs on arotational scheduleto sustain 24×7 coverage.

Key Responsibilities
Alert Monitoring & First Response
  • Monitor security signals – SIEM detections, authentication and access anomalies, threat-intel and endpoint alerts – from a consolidated single-pane-of-glass dashboard
  • Acknowledge alerts and incidents within first-response SLA targets
  • Perform initial review – validate the detection, rule out false positives, check recent changes, and review the CMDB before acting
Triage & Severity Classification
  • Classify each alert by severity and potential impact, confirming the owning tower (Security / cross-tower)
  • Route and assign tickets accurately to the correct tower or escalation path
  • Sustain triage accuracy at or above the GIOC go-live standard
  • Reassess severity as the investigation evolves, and declare higher when in doubt – treat suspected breaches as high‑severity until ruled out
  • Match alert signatures to documented runbooks and execute permitted L1 actions
  • Perform first‑line containment within L1 scope (e.g., isolate, disable, or block per runbook) and preserve evidence for analysis
  • Document every step taken, with supporting evidence and timestamps, in the incident ticket
  • Escalate unresolved or out‑of‑scope alerts to the Senior Security Engineers with a clean, complete handoff (symptom · evidence collected · steps tried · current state)
  • Flag missing or ineffective runbooks and detection gaps for review and continuous improvement
  • Initiate and support major‑incident (Sev‑0 / Sev‑1) bridges per the escalation matrix; engage Security leads and incident response immediately on suspected breaches
  • Track escalations to closure and confirm the threat is contained or ruled out before resolving the ticket
Operational Documentation & Communication
  • Maintain accurate shift logs, ticket updates, and incident timelines with chain‑of‑custody for security evidence
  • Provide clear, timely status communication to stakeholders per severity, following defined disclosure and confidentiality protocols
  • Produce thorough shift‑handover notes for seamless follow‑the‑sun continuity on active investigations
  • Identify recurring alerts and false positives as candidates for detection tuning and automation
  • Contribute to and improve runbooks, detection logic, and knowledge‑base articles
  • Participate in post‑incident reviews (PIR) and trend reviews
Qualifications & Experience
  • Graduate/Engineerin a relevant field (B.E./B.tech or equivalent)
  • 3-5 years of experiencein a SOC, security operations, or IT operations, includinghands‑on security monitoring and alert triage
  • Working knowledge of security fundamentals – authentication and access, common attack types, logging, and endpoint/network telemetry
  • Familiarity with SIEM and alert‑triage concepts, log analysis, and basic threat investigation
  • Understanding of incident‑management fundamentals and severity‑based triage
  • Exposure to monitoring/observability tools and ticketing systems (SIEM consoles, alerting, ITSM)
  • Strong written communication for accurate documentation and clean escalation handoffs; willingness and ability to work a rotational 24×7 shift model, including nights, weekends, and holidays
  • Proficient in English verbal and written communication
Inclusion & Privacy

We are an equal opportunity employer and are committed to creating an inclusive environment for all employees. We welcome applications from individuals of all backgrounds and experiences, and we prohibit discrimination based on race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, veteran status, or any other protected status under applicable laws. Vultr will consider qualified applicants with arrest or conviction records in accordance with applicable laws and will not conduct a background check until after an offer of employment has been extended and accepted.

We also take your privacy seriously. We handle personal information responsibly and follow applicable laws, including U.S. privacy rules and India’s Digital Personal Data Protection Act, 2023. Your data is used only for legitimate business purposes and is protected with proper security measures.

Where allowed by law, applicants may request details about the data we collect, access or delete their information, withdraw consent for its use, and opt out of nonessential communications. For more details, please see our Privacy Policy .

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Security Engineer, GIOC
Security Engineer, GIOC

Vultr • Chennai District

On-site
INR 1,200,000 - 1,800,000
Medical Insurance stipend
9 Company-Paid Holidays
Sabbatical every 5 years
+4
Security Engineer, GIOC
Security Engineer, GIOC

Vultr • Thiruvallur District

On-site
INR 1,200,000 - 2,000,000
Medical Insurance stipend
9 Company-Paid Holidays
Generous Leave Policy
+4
Senior Security Engineer,GIOC
Senior Security Engineer,GIOC

Vultr • Thiruvallur District

On-site
INR 1,600,000 - 2,400,000
Medical Insurance stipend
9 Company-Paid Holidays
Generous Leave Policy + 1 month paid-s
+4
Senior Security Engineer
Senior Security Engineer

Webhosting • Chennai District

On-site
INR 1,500,000 - 3,000,000
Medical Insurance stipend
9 Company-Paid Holidays
Sabbatical every 5 years
+4
System Engineer GIOC
System Engineer GIOC

Vultr • Chennai District

On-site
INR 900,000 - 1,300,000
Medical stipend
Paid holidays
Sabbatical leave every 5 years
+4
System Engineer
System Engineer

Webhosting • Chennai District

On-site
INR 900,000 - 1,500,000
Medical Insurance stipend
9 company-paid holidays
Generous leave + sabbatical policy
+3
System Engineer
System Engineer

Vultr • Thiruvallur District

On-site
INR 1,400,000 - 2,100,000
Medical insurance
9 holidays
Leave sabbatical + anniversary bonus
+4
Network Engineer, GIOC
Network Engineer, GIOC

WebHosting • Chennai District

On-site
INR 900,000 - 1,300,000
Medical Insurance stipend
9 Company-Paid Holidays
Generous Leave Policy
+3
Senior System Engineer
Senior System Engineer

Webhosting • Chennai District

On-site
INR 1,500,000 - 2,000,000
Medical insurance stipend
9 company-paid holidays
Sabbatical every 5 years + Anniversary
+3
Senior System Engineer, GIOC
Senior System Engineer, GIOC

Vultr • Thiruvallur District

On-site
INR 3,000,000 - 5,000,000
Medical Insurance stipend
9 Company-Paid Holidays
Leave policy + sabbatical
+4