Security Operations Centre Analyst (f/m/d)

Thinkproject

Maharashtra

Hybrid

INR 900,000 - 1,300,000

Full time

2 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

Hybrid working
Work from abroad
Flexible working hours
Thinkproject Academy
Free English lessons
Unlimited learning
Headspace community access
Women’s Network
Corporate volunteering
Social events

Job summary

Thinkproject seeks a Security Operations Analyst to monitor, detect, investigate, and respond to security events across endpoints, networks, cloud platforms, and applications. You’ll manage SIEM/EDR, threat feeds, and vulnerability scanners to support effective incident response and proactive threat hunting.

You will collaborate with IT, DevOps, and incident response teams, develop playbooks, automate responses, and contribute to SOC maturation while maintaining thorough documentation and

Qualifications

  • Bachelor's degree in Cyber Security or related field or equivalent experience.
  • Strong knowledge of cybersecurity principles, threat landscapes, and incident response.
  • Awareness of threats affecting SaaS organisations.

Responsibilities

  • Respond to security events and alerts from SIEM, EDR, and other tools across endpoints, infrastructure, cloud, and applications.
  • Conduct threat hunting using threat intelligence feeds to detect emerging threats.
  • Analyse logs and security data to support incident detection, investigation, and root cause analysis.
  • Independently manage cybersecurity incidents from identification to resolution with stakeholders.
  • Operate, configure, and tune SIEM platforms and security tools to improve detection and reduce false positives.
  • Develop and execute incident response playbooks and automation solutions.
  • Handle multiple investigations and BAU security operations workload.
  • Perform forensic analysis during incident investigations and document findings.
  • Collaborate with IT, DevOps and teams for containment and remediation; escalate when needed.
  • Coordinate with teams to mitigate vulnerabilities and risks identified by assessments.
  • Participate in security exercises to identify gaps and improve coverage.
  • Contribute to maturing the SOC with new logging, monitoring, and response capabilities.
  • Maintain clear documentation of investigations, alerts, and incidents.

Job description

Introducing Thinkproject Platform

Pioneering a new era and offering a cohesive alternative to the fragmented landscape of construction software, Thinkproject seamlessly integrates the most extensive portfolio of mature solutions with an innovative platform, providing unparalleled features, integrations, user experiences, and synergies.

What do we do?

Introducing Thinkproject Platform
Pioneering a new era and offering a cohesive alternative to the fragmented landscape of construction software, Thinkproject seamlessly integrates the most extensive portfolio of mature solutions with an innovative platform, providing unparalleled features, integrations, user experiences, and synergies.
By combining information management expertise and in-depth knowledge of the building, infrastructure, and energy industries, Thinkproject empowers customers to efficiently deliver, operate, regenerate, and dispose of their built assets across their entire lifecycle through a Connected Data Ecosystem.

What your day will look like

We are looking for a skilled Security Operations Analyst (f/m/d) to join our team and help protect Thinkproject from evolving cyber threats. In this role, you will be responsible for monitoring, detecting, investigating, and responding to security events across our environments including endpoints, networks, cloud platforms, and applications. You will play a key role in managing security tools such as SIEM, EDR, threat intelligence feeds, and vulnerability scanners to support effective incident detection and response. The Security Operations Analyst will work closely with cross-functional teams including IT, DevOps, and incident response to ensure swift and coordinated resolution of security incidents. You will also participate in proactive threat hunting, analysing threat feeds to identify potential risks relevant to our environment. Maintaining accurate documentation and knowledge sharing will be essential to the role, alongside contributing to continuous improvement of our SOC processes and capabilities.

Main Responsibilities
  • Respond competently to security events and alerts from SIEM, EDR, and other security tools across endpoints, infrastructure, cloud environments, and applications.
  • Conduct threat hunting activities focused on analysing threat intelligence feeds to detect emerging threats and potential attack vectors.
  • Analyse logs and security data to support incident detection, investigation, and root cause analysis.
  • Independently manage cybersecurity incidents from identification through to resolution, coordinating with relevant stakeholders as needed.
  • Operate, configure, and tune SIEM platforms and security tools, contributing to improved detection accuracy and reduced false positives.
  • Develop, maintain, and execute incident response playbooks and automation solutions to streamline response efforts.
  • Handle multiple investigations and routine SOC tasks simultaneously, prioritising workload effectively.
  • Perform forensic analysis during incident investigations, including evidence collection and documentation.
  • Collaborate with IT, DevOps, and other teams to ensure timely incident containment and remediation; escal
  • Manage outputs from cybersecurity assessment tools, coordinating with teams to ensure mitigation of identified vulnerabilities and risks.
  • Participate in security exercises and testing to identify gaps in coverage and detection capabilities.
  • Contribute to the ongoing maturation of the Security Operations Centre by introducing new logging, monitoring, and response solutions to enhance departmental operations and improve cybersecurity coverage.
  • Maintain clear and detailed documentation of investigations, alerts, and incidents to support knowledge transfer and reporting.
  • Proactively pursue professional development opportunities to stay current with evolving threats and security technologies.
  • Adapt SOC processes, solutions, and procedures to enhance the monitoring of the organization's IT network health.
  • Provide Security Operations Centre coverage on a rota basis, ensuring support is maintained in line with the organization’s commitments.
What you need to fulfill the role
You Must Have
Language & Communication
  • Proficiency in spoken and written English, with the ability to communicate effectively across both technical and non-technical audiences
  • The ability to communicate difficult or sensitive information tactfully
Education & Experience
  • A bachelor’s degree in Cyber Security or a related field, or equivalent professional experience
  • Strong knowledge of cybersecurity principles, threat landscapes, and incident response procedures
  • Awareness of current and emerging cyber threats affecting SaaS organisations
Technical Skills
  • Hands‑on experience with Security Information and Event Management (SIEM) tools, Endpoint Detection and Response (EDR) platforms, threat intelligence platforms, and vulnerability identification tools
  • Experience managing security issues identified through internal tools and external assessments, ensuring remediation is completed in line with company policies and standards
  • Experience in tuning detection rules and alerts to improve accuracy and reduce false positives in security monitoring.
SOC Operations
  • Experience in incident response and investigation, including forensic evidence handling and root cause analysis
  • Experience managing business-as-usual (BAU) security operations workload alongside project-based work, both independently and in coordination with other team members
  • Experience managing outputs from cybersecurity assessment tools, coordinating timely mitigation and remediation with key stakeholders.
Teamwork & Leadership
  • A positive, self-motivated attitude
  • The ability to work effectively in a team environment, collaborating with cross-functional teams to achieve shared objectives
  • Strong time management and prioritisation skills, with the ability to manage your own workload
  • The ability to perform effectively under pressure, prioritise tasks, and make sound decisions in high-stress or emergency situations
  • A proactive mindset with the ability to critically evaluate your own work, identify improvement opportunities, and automate, simplify, or standardise processes where appropriate
It Would Be Good to Have
  • Hands‑on experience with implementation of Security Information and Event Management (SIEM) tools, Endpoint Detection and Response (EDR) platforms, threat intelligence platforms, and vulnerability identification tools
  • Experience integrating custom‑built applications into SIEM platforms.
  • Experience with Security Orchestration, Automation, and Response (SOAR) platforms to develop, test, and execute automated response playbooks, enhancing SOC efficiency and speeding incident response.
  • Experience with threat hunting focused on application code, application and infrastructure architecture, leveraging strong programming skills and a solid understanding of the software development lifecycle (SDLC) and infrastructure components
SOC Operations
  • Experience coordinating outsourced penetration tests, ensuring smooth execution without service disruption.
  • Experience implementing automation and playbooks to enhance response efficiency and reduce operational overhead.
  • Experience with security assessment exercises to evaluate SOC operational effectiveness and the organizations’ ability to respond to Cyber Security incidents.
Technical Expertise
  • Experience with Azure, Azure AD, and AWS technologies and services
  • Experience conducting forensic analysis of cybersecurity incidents
  • Experience working within a software services organization
What we offer
  • Hybrid working
  • Work from abroad
  • Flexible working hours
  • Thinkproject Academy
  • Free English lessons
  • Unlimited learning
  • Headspace community access
  • Women's Network
  • Corporate volunteering
  • Social events

We are a passionate bunch here. To join Thinkproject is to shape what our company becomes. We take feedback from our staff very seriously and give them the tools they need to help us create our fantastic culture of mutual respect. We believe that investing in our staff is crucial to the success of our business.

Your Contact

Mehal Mehta

Working at thinkproject.com - think career. think ahead.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Sr. Security Engineer
Sr. Security Engineer

hitachi • Delhi

On-site
INR 1,800,000 - 2,400,000
Staff Security Operations Engineer
Staff Security Operations Engineer

Jobgether • India

Remote
INR 3,500,000 - 5,500,000
Remote-first environment
In-person team sprints abroad
Learning budget USD 2,000 (annual)
Security Operations Analyst
Security Operations Analyst

Securonix • Maharashtra

On-site
INR 700,000 - 1,200,000
Health Insurance
Personal Accident Insurance
Term Life Insurance
IT Security Engineer
IT Security Engineer

Hitachi • New Delhi

On-site
INR 1,200,000 - 1,800,000
Security Operations Analyst
Security Operations Analyst

ITOrizon • Tiruchirappalli, Bengaluru

On-site
INR 500,000 - 800,000
Structured learning and certification support
Hands-on experience with modern security tools
Clear growth path aligned to performance
Security Analyst
Security Analyst

Litmos • India

On-site
INR 2,400,000 - 3,200,000
Security Analyst New India
Security Analyst New India

Litmos Limited • Pune District

On-site
INR 1,500,000 - 2,100,000
SOC Manager
SOC Manager

SISA • Bengaluru

On-site
INR 6,000,000 - 9,000,000
SISA Information Security - Security Operations Center Manager - SIEM/SOAR
SISA Information Security - Security Operations Center Manager - SIEM/SOAR

SISA • Bengaluru

On-site
INR 3,000,000 - 5,200,000
Security Operations Centre (SOC) Manager
Security Operations Centre (SOC) Manager

FutureX • Chennai District

On-site
INR 3,000,000 - 6,000,000