Security Operations Center (SOC) Analyst III

The Standard India

Bengaluru

On-site

INR 2,500,000 - 4,500,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

The Standard India is seeking a Senior SOC Analyst III to lead advanced threat detection, incident response, and security engineering in our Security Operations Center. You will own Azure Sentinel analytics, automation, and SOC‑as‑Code pipelines, driving continuous improvement and rapid, secure response.

You will work hybrid from Bengaluru, collaborating with cross‑functional security and engineering teams to strengthen our cloud security monitoring and incident readiness.

Qualifications

  • Bachelor's degree required.

Responsibilities

  • Lead advanced threat monitoring and incident response in cloud, endpoint, identity, and network domains.
  • Design, implement, and optimize Sentinel analytics rules, workbooks, and data connectors.
  • Develop detection logic using KQL and maintain SOC-as-Code workflows via Git-based pipelines.
  • Mentor analysts and participate in on-call incident response rotations.

Skills

SOC operations
Incident response
Microsoft Sentinel
KQL
Threat hunting
Automation
CI/CD
Cloud security
Git workflows
MITRE ATT&CK

Education

Bachelor's degree

Tools

Azure Sentinel
Microsoft Defender
Azure AD Entra ID
Azure Monitor
Log Analytics
GitHub/GitHub Actions
Azure DevOps
ARM/Bicep/Terraform

Job description

The next part of your journey is right around the corner — with Standard India

A genuine desire to make a difference in the lives of others is the foundation for everything we do. With a customer-first mindset and an intentional focus on building strong teams across the nation, we’ve been able to uphold our legacy of financial stability while investing in new, innovative technologies that support the needs of our customers. Our high-performance culture, focused on operational excellence, thrives thanks to remarkable people united by compassion and a customer-first commitment. Are you ready to make a difference?

Job Summary

The SOC Analyst III is a senior-level security professional responsible for advanced threat detection, incident response, and security engineering within the Security Operations Center (SOC). This role serves as a technical leader, specializing in Microsoft Azure security operations, Microsoft Sentinel (Azure Sentinel), and SOC automation via Git-based CI/CD pipelines. The analyst will drive detection engineering, automation, and continuous improvement of SOC capabilities, ensuring effective monitoring, rapid response, and alignment with organizational security objectives.

Key Responsibilities
  • Advanced Threat Monitoring & Incident Response
  • Lead triage and investigation of complex security incidents across cloud, endpoint, identity, and network domains
  • Correlate alerts across Microsoft Sentinel, Microsoft Defender suite, Azure control plane, and third-party integrations
  • Perform deep-dive forensic analysis including identity compromise, lateral movement, and cloud-based threats
  • Act as incident commander for high‑severity (P1/P2) incidents
  • Microsoft Sentinel & Azure Security Operations
  • Design, implement, and optimize Microsoft Sentinel analytics rules, workbooks, hunting queries, and data connectors
  • Develop advanced detection logic using Kusto Query Language (KQL)
  • Maintain and tune integrations across:
    • Azure AD / Entra ID
    • Microsoft Defender for Endpoint, Identity, Cloud, Office
    • Azure Activity Logs & resource telemetry
    • Microsoft Graph Security API
  • Optimize signal‑to‑noise ratio through detection tuning and use case refinement
  • SOC Automation & Git‑Based CI/CD Pipelines
  • Design and maintain SOC‑as‑Code frameworks using Git repositories (e.g., Azure DevOps, GitHub)
  • Build and manage CI/CD pipelines for:
    • Sentinel analytics rules deployment
    • Playbooks (Logic Apps)
    • Workbooks and dashboards
    • Data connector configurations
  • Implement version control, peer review, and automated testing for detection content
  • Promote infrastructure‑as‑code practices (ARM/Bicep/Terraform preferred)
  • Detection Engineering & Threat Hunting
  • Develop and maintain detection use cases aligned to MITRE ATT&CK
  • Conduct proactive threat hunting and hypothesis-driven investigations
  • Integrate threat intelligence feeds into Sentinel and detection workflows
  • Measure detection coverage and effectiveness through metrics and gap analysis
  • Incident Response & Process Improvement
  • Enhance and maintain incident response playbooks and runbooks
  • Lead post‑incident reviews and root cause analysis
  • Identify automation opportunities to reduce manual effort and response time
  • Drive SOC maturity improvements aligned with NIST CSF / industry frameworks
  • Collaboration & Leadership
  • Mentor SOC Analysts (Tier I/II) and provide escalation support
  • Partner with engineering, cloud, identity, and endpoint teams on security initiatives
  • Support reporting and metrics development for SOC leadership and executive stakeholders
  • Participate in on‑call rotation for incident response escalation
  • Ability to work on‑site in Bengaluru, India is a requirement of the role.
Mode of Working

This role follows a hybrid work model, with a primary base in Bengaluru. While on‑site presence is essential for key engagements, flexibility is offered for remote work based on business needs and team alignment.

Skills And Background You’ll Need

Education: A Bachelor’s degree is required.

Experience
  • 5+ years of experience in Security Operations, Incident Response, or Threat Detection
  • 2+ years hands‑on experience with Microsoft Sentinel (Azure Sentinel) in production
  • Proven experience in designing and operationalizing cloud security monitoring
  • Advanced analytical and problem‑solving skills
  • Strong understanding of cloud‑native security architectures
  • Ability to operate independently in high‑pressure incident scenarios
  • Effective communication with both technical and executive audiences
  • Continuous improvement mindset with automation‑first approach
  • 24x7 SOC operations (on‑call rotation required)
  • Cross‑functional collaboration with enterprise security stakeholders
Technical Skills
Core Azure Security Stack
  • Microsoft Sentinel (SIEM/SOAR)
  • Microsoft Defender suite (Endpoint, Identity, Cloud, O365)
  • Azure AD / Entra ID security monitoring
  • Azure Monitor, Log Analytics
Detection & Analysis
  • Strong proficiency in Kusto Query Language (KQL)
  • Knowledge of MITRE ATT&CK framework
  • Experience with log correlation and multi‑source investigations
Automation & DevSecOps
  • Experience with Git‑based workflows (branching, pull requests, code reviews)
  • Building and maintaining CI/CD pipelines (Azure DevOps or GitHub Actions)
  • Infrastructure as Code (ARM, Bicep, Terraform preferred)
  • Logic Apps / SOAR playbook development
Additional Technical Skills (Preferred)
  • Experience integrating third‑party security tools (e.g., MDR, NDR, EDR platforms)
  • Understanding of identity security, Zero Trust architecture
  • API integration (REST , Graph API )
  • Scripting (PowerShell, Python)
Certifications (Preferred)
  • Microsoft Certified: Security Operations Analyst (SC‑200)
  • Microsoft Certified: Azure Security Engineer (AZ‑500)
  • CISSP, GCIA, GCIH, or equivalent
Success Measures
  • Reduction in mean‑time‑to‑detect (MTTD) and respond (MTTR)
  • Improved detection coverage and reduced false positivesIncreased automation of SOC workflows
  • Adoption of Git‑based deployment and SOC‑as‑Code practices
  • Contribution to SOC maturity and operational excellence
Key Behaviors of a Successful Candidate
  • Improvement Mindset: Continually seeks new ways to create business/ customer value by identifying and implementing opportunities for improved efficiency, effectiveness and innovation.
  • Adaptability: Sees possibilities in changing circumstances, accepts and understands change and alters behavior as necessary.
  • Winning Together: Actively engages colleagues to achieve shared outcomes by developing trust, inviting diverse perspectives and pushing to bring the best ideas forward.
Why Join Standard India?

We have built an enduring legacy of stability, financial strength, and exceptional customer service through the contributions of service‑oriented people who choose to work at the Standard. To ensure we can attract and retain the best talent, when you join StanCorp Global Services you can expect a rich benefits package that supports your health, well‑being, and financial goals; an annual incentive bonus plan tied to both individual and organizational performance; paid time off including earned leave, sick/casual leave, and public holidays, in accordance with the company’s leave policy; a supportive, responsive management approach that empowers you to grow; opportunities for career advancement through learning, coaching, and leadership enablement; a culture where your voice matters — your ideas shape our future, and we win as one; and purpose‑driven work that makes a difference for our customers, communities, and each other.

In addition to a competitive salary, our employee‑focused benefits are designed to support work‑life balance, personal growth, and long‑term impact.

StanCorp Global Services India Private Limited is an equal opportunity employer.

All qualified applicants will receive consideration for employment without regard to race, religion, colour, sex, gender identity, sexual orientation, age, disability, caste, HIV status or any other characteristic protected by applicable laws of India.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Database Engineer III
Database Engineer III

The Standard India • Bengaluru

On-site
INR 2,500,000 - 4,500,000
Annual incentive bonus
Paid time off
Career growth opportunities
+1
Security Analyst (Cyber Defense Analyst)
Security Analyst (Cyber Defense Analyst)

Jobgether • India

On-site
INR 1,700,000 - 2,400,000
Health insurance
Paid time off
Flexible work
+6
IT Risk and Compliance Analyst III
IT Risk and Compliance Analyst III

The Standard India • Bengaluru

Hybrid
INR 2,000,000 - 3,500,000
Annual incentive bonus
Paid time off
Health benefits
Software Engineer V
Software Engineer V

The Standard India • Bengaluru

Hybrid
INR 4,000,000 - 6,000,000
Rich benefits package
Annual incentive bonus
Paid time off
+3
SOC / Security Operations Lead
SOC / Security Operations Lead

One97 Communications Limited • Dadri

On-site
INR 3,000,000 - 6,000,000
Director, Infrastructure Services (ISM)
Director, Infrastructure Services (ISM)

The Standard India • Bengaluru

Hybrid
INR 3,500,000 - 7,500,000
Rich benefits package
Annual incentive bonus plan
Paid time off including sick/casual leave
+4
Database Engineer II
Database Engineer II

The Standard India • Bengaluru

Hybrid
INR 1,500,000 - 2,100,000
Annual bonus
Paid time off
Career growth
SOC Manager
SOC Manager

Sisainfosec • Bengaluru

On-site
INR 1,500,000 - 2,500,000
Software Development Engineer in Test III
Software Development Engineer in Test III

The Standard India • Bengaluru

Hybrid
INR 1,500,000 - 2,000,000
Annual incentive bonus plan
Paid time off including sick/casual leave
Employee growth opportunities
+1
Security Operations Center Analyst
Security Operations Center Analyst

Greenlight Planet Inc. • New Delhi

On-site
INR 1,200,000 - 1,800,000
Professional growth
Open-minded culture
Multicultural experience
+1