Senior SOC Engineer

METRO Global Solution Center IN

Maharashtra

On-site

INR 1,500,000 - 2,300,000

Full time

8 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Metro Global Solution Center seeks a Senior SOC Engineer to join the Cyber Defense Operations Center. You will work on XDR, SIEM, and SOAR, building parsers and integration for security tooling to improve detection and response.

You will craft playbooks, write technical docs, and collaborate with cross-functional teams, leveraging Python, RegEx, and REST APIs to automate and optimize security operations.

Qualifications

  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field.
  • 4–7 years of total experience in SecOps/DevOps in a large multinational organization or MSSP.
  • At least 3 years of automation, integration and custom parser creation for SecOps/DevOps tools like SIEM, SOAR or ITSM.
  • Lateral joiners from other hands-on information technology roles are welcome to apply.

Responsibilities

  • Design and build custom parsers for diverse log formats, threat feeds, and telemetry sources.
  • Develop integration guides for connecting security tools with external systems (cloud platforms, identity providers, ticketing systems).
  • Write technical documentation for parser configuration, schema mapping, normalization, and enrichment workflows.
  • Test and validate parser outputs to ensure accurate data extraction and ingestion.
  • Continuously improve SIEM/SOAR/XDR alert use cases and detection logic.
  • Create tutorials and walkthroughs for parser development using Python, Regex, and AI prompts.
  • Collaborate with the Cyber Defense team to capture use cases and operational needs.
  • Maintain integration documentation for REST APIs, webhooks, and SDKs across security platforms.

Skills

Security operations
DevOps
Technical writing
Python scripting
Regex
API integration
XDR/SIEM/SOAR
Cloud platforms
Team collaboration

Education

Bachelor's degree in Computer Science or related field

Tools

SIEM
SOAR
ITSM
Python
Regex
Logstash
REST APIs
JSON schemas
Git
Confluence
Markdown
DITA
AWS GuardDuty
Azure Sentinel
Google Chronicle

Job description

Metro Global Solution Center (MGSC) is internal solution partner for METRO, a €31 Billion international wholesaler with operations in more than 30 countries. The store network comprises a total of 623 stores in 21 countries, of which 522 offer out-of-store delivery (OOS), and 94 dedicated depots. In 12 countries, METRO runs only the delivery business by its delivery companies (Food Service Distribution, FSD).

HoReCa and Traders are core customer groups of METRO. The HoReCa section includes hotels, restaurants, catering companies as well as bars, cafés and canteen operators. The Traders section includes small grocery stores and kiosks. The majority of all customer groups are small and medium-sized enterprises as well as sole traders. METRO helps them manage their business challenges more effectively.

MGSC, location wise is present in Pune (India), Düsseldorf (Germany) and Szczecin (Poland). We provide HR, Finance, IT & Business operations support to 31 countries, speak 24+ languages and process over 18,000 transactions a day. We are setting tomorrow’s standards for customer focus, digital solutions, and sustainable business models. For over 10 years, we have been providing services and solutions from our two locations in Pune and Szczecin. This has allowed us to gain extensive experience in how we can best serve our internal customers with high quality and passion. We believe that we can add value, drive efficiency, and satisfy our customers.

Job Description
  • As a Senior SOC Engineer as part of the Cyber Defense Operations Center (CDOC) you will work in the Detection and Response Engineering team with a focus on XDR, SIEM and SOAR technologies. You’ll be responsible for helping the SOC Specialist in integrating log sources, reviewing and developing use cases and response playbooks.
  • This role requires in-depth knowledge of custom parsing, python scripting, REGEX, API Integration and playbook creation, hence also experienced Software Developers or similar hands-on roles are welcomed to apply.
Qualifications
Qualification:
  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field.
  • 4-7 years of total experience in SecOps/DevOps , in a large multi-national organization or in a known MSSP. In addition, candidate should posses at least 3 years of working experience automation, integration and custom parser creation for SecOps/DevOps tools like SIEM, SOAR or ITSM tool.
  • Lateral joiners from other hands-on information technology roles are highly welcomed to apply!
Experience
  • Design and build custom parsers for diverse log formats, threat feeds, and telemetry sources.
  • Develop integration guides for connecting security tools with external systems (e.g., cloud platforms, identity providers, ticketing systems).
  • Write technical documentation for parser configuration, schema mapping, normalization, and enrichment workflows.
  • Test and validate parser outputs to ensure accurate data extraction and ingestion.
  • Continuously improve SIEM/SOAR/XDR alert use cases and detection logic.
  • Create tutorials and walkthroughs for parser development using Python, Regex, and AI prompts.
  • Collaborate with the overall Cyber Defense team to capture use cases, edge cases, and operational needs.
  • Maintain integration documentation for REST APIs, webhooks, and SDKs across security platforms.
Technical & Soft Skills:
  • Proven experience in technical writing and content creation for security products.
  • Hands-on expertise in log parsing, data normalization, and custom parser development.
  • Proficient with SIEM platforms, log formats (JSON, Syslog, XML), and parsing tools (Regex, Logstash) an AI prompting.
  • Skilled in REST APIs, JSON schemas, and integration workflows.
  • Familiar with cloud-native security tools (AWS GuardDuty, Azure Sentinel, Google Chronicle).
  • Competent in using Git, Markdown, and documentation platforms (e.g., Confluence, DITA).
  • Strong ability to translate complex technical concepts into clear, actionable content.
  • Experienced in producing executive summaries and detailed technical SOPs.
  • Effective team collaborator with strong communication skills.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

SOC Specialist
SOC Specialist

METRO Global Solution Center IN • Maharashtra

On-site
INR 1,500,000 - 2,300,000
Cyber Security Lead-Cyber Security Analyst
Cyber Security Lead-Cyber Security Analyst

Sopra Steria • Dadri

On-site
INR 1,200,000 - 1,800,000
Senior SOC Analyst
Senior SOC Analyst

DMart • Thane

On-site
INR 900,000 - 1,300,000
Cloud Security Engineer(GCP)
Cloud Security Engineer(GCP)

METRO Global Solution Center IN • Maharashtra

On-site
INR 1,200,000 - 2,400,000
SISA Information Security - Security Operations Center Manager - SIEM/SOAR
SISA Information Security - Security Operations Center Manager - SIEM/SOAR

SISA • Bengaluru

On-site
INR 3,000,000 - 5,200,000
Managed Services Analyst, MXDR
Managed Services Analyst, MXDR

Check Point Software • Bengaluru

On-site
INR 800,000 - 1,400,000
SOC Manager
SOC Manager

Angel One • Bengaluru

Hybrid
INR 1,800,000 - 3,200,000
SOC Manager
SOC Manager

Sisainfosec • Bengaluru

On-site
INR 1,500,000 - 2,500,000
SOC Manager
SOC Manager

SISA • Bengaluru

On-site
INR 6,000,000 - 9,000,000
Sr. Cyber Security Analyst
Sr. Cyber Security Analyst

Rectitude Consulting Services • Maharashtra

Hybrid
INR 1,800,000 - 2,400,000
Competitive salary
Performance-based incentives
Professional growth opportunities