SOC Analyst - Senior Consultant

allstate

Karnataka

On-site

INR 1,200,000 - 1,800,000

Full time

10 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Allstate India is seeking an experienced Incident Management Senior Consultant II to lead investigations, coordinate responses, and minimize cyber risk across on‑premises, cloud, and affiliated environments. The role requires coordinating cross‑functional teams and maintaining incident documentation.

Ideal candidates have strong experience with EDR/XDR (Microsoft Defender for Endpoint, CrowdStrike), cloud logs analysis, and a deep understanding of cyber kill chain concepts, with excellent

Qualifications

  • Minimum 8 years of IT/Cybersecurity experience with 5–6 years in Security Operations or Incident Response.
  • Strong understanding of incident response methodologies and kill chain concepts.
  • Experience with EDR/XDR solutions and cloud security logs.
  • Excellent written and verbal communication for leadership stakeholders.

Responsibilities

  • Monitor, analyse, and investigate security alerts from SIEM, EDR/XDR, Email/Cloud Security platforms.
  • Lead and coordinate incident response activities for medium to high severity incidents.
  • Collaborate with stakeholders to drive incident resolution and remediation efforts.
  • Document findings, timelines, and lessons learned per processes.
  • Communicate incident status and risks to leadership and stakeholders.
  • Participate in threat hunting and proactive detection improvement initiatives.
  • Support after-hours incident response and on-call rotations.

Skills

Incident response leadership
Security incident management
EDR/XDR experience
Network security
Cloud logs analysis
Azure/AWS/M365 logs

Education

Bachelor's degree in Cybersecurity/IT
Certifications in cybersecurity (GCIH/GSEC/CEH)

Tools

Microsoft Defender for Endpoint
CrowdStrike Falcon
SIEM tools
Azure/AWS security services

Job description

At Allstate, great things happen when our people work together to protect families and their belongings from life’s uncertainties. And for more than 90 years, our innovative drive has kept us a step ahead of our customers’ evolving needs. From advocating for seat belts, air bags and graduated driving laws, to being an industry leader in pricing sophistication, telematics, and, more recently, device and identity protection.

Job Description

The Allstate Cybersecurity & Controls (ACC) Threat Detection and Response team is responsible for detecting, investigating, responding to, and remediating cybersecurity incidents across on-premises, cloud, and affiliated environments. The Incident Management Senior Consultant II plays a key role in leading incident investigations, coordinating response activities, and minimizing cyber risk through effective threat detection and incident management.

Primary Responsibilities
  • Monitor, analyse, and investigate security alerts generated from SIEM, EDR/XDR, Email Security, Cloud Security, and other security platforms.
  • Lead and coordinate cybersecurity incident response activities for medium to high severity incidents.
  • Collaborate with internal stakeholders, technical teams, and external partners to drive incident resolution and remediation efforts
  • Document investigation findings, timelines, lessons learned, and response activities in accordance with established processes and procedures.
  • Communicate incident status, risks, and recommendations to leadership and relevant stakeholders.
  • Participate in threat hunting, proactive detection improvement initiatives, and continuous enhancement of incident response capabilities.
  • Support after-hours incident response activities and rotational on-call responsibilities as required in weekends.

Primary Skills & Criteria

  • Experience serving as an Incident Commander or lead investigator during cybersecurity incidents.
  • Strong understanding of incident response methodologies, security operations processes, and cyber kill chain concepts.
  • Experience with EDR/XDR solutions such as Microsoft Defender for Endpoint, CrowdStrike Falcon, or similar technologies.
  • Strong knowledge of network technologies including TCP/IP, DNS, HTTP/S, VPN, Firewalls, IDS/IPS, and network traffic analysis.
  • Hands-on experience analysing logs and security events from Azure, AWS, Microsoft 365, or other cloud platforms.
  • Knowledge of leveraging AI-assisted security operations, including threat detection, investigation acceleration, alert triage, automation, and operational efficiency improvements within a Security Operations Center (SOC).
  • Basic understanding of AI/Generative AI security risks, including prompt injection, data leakage, unauthorized model access, and misuse of AI applications within enterprise environments.
  • Excellent written and verbal communication skills with the ability to engage technical and non-technical stakeholders.

Experience & Certifications

  • Minimum 8 years of overall IT/Cybersecurity experience with at least 5-6 years in Security Operations, Incident Response, or Threat Detection roles.
  • Preferred certifications include GCIH, GSEC, GISF, CEH, CompTIA Security+, SC-200, or equivalent cybersecurity certifications.

Customer Centricity, Digital Literacy, Inclusive Leadership, Learning Agility, Results-Oriented

About Allstate

Joining our team isn’t just a job — it’s an opportunity. One that takes your skills and pushes them to the next level. One that encourages you to challenge the status quo. One where you can shape the future of protection while supporting causes that mean the most to you. Joining our team means being part of something bigger – a winning team making a meaningful impact.

The Allstate Corporation is one of the largest publicly held insurance providers in the United States. Ranked No. 84 in the 2023 Fortune 500 list of the largest United States corporations by total revenue, The Allstate Corporation owns and operates 18 companies in the United States, Canada, Northern Ireland, and India. Allstate India Private Limited, also known as Allstate India, is a subsidiary of The Allstate Corporation. The India talent center was set up in 2012 and operates under the corporation's Good Hands promise. As it innovates operations and technology, Allstate India has evolved beyond its technology functions to be the critical strategic business services arm of the corporation. With offices in Bengaluru and Pune, the company offers expertise to the parent organization’s business areas including technology and innovation, accounting and imaging services, policy administration, transformation solution design and support services, transformation of property liability service design, global operations and integration, and training and transition.

Learn more about Allstate India here.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

IT Infrastructure Analyst III
IT Infrastructure Analyst III

Allstate • India

On-site
INR 500,000 - 800,000
Customer Service Team Lead I
Customer Service Team Lead I

Allstate India • Bengaluru

On-site
INR 1,500,000 - 1,800,000
IT Infrastructure Consultant I
IT Infrastructure Consultant I

Allstate • Port Blair

On-site
INR 550,000 - 750,000
Customer Service Team Lead I
Customer Service Team Lead I

Allstate • Port Blair

On-site
INR 1,200,000 - 1,800,000
Reconciliations Analyst II
Reconciliations Analyst II

Allstate India • Maharashtra

On-site
INR 400,000 - 600,000
Team Leader- Voice Operations(p&c Insurance)
Team Leader- Voice Operations(p&c Insurance)

Allstate • Pune District

On-site
INR 1,400,000 - 2,200,000
Associate Operations
Associate Operations

Allstate • Bengaluru

On-site
INR 300,000 - 500,000
Counsel Support Associate III
Counsel Support Associate III

Allstate • Pune District

On-site
INR 450,000 - 650,000
IT Business Analyst Consultant I
IT Business Analyst Consultant I

Allstate • Pune District

On-site
INR 700,000 - 1,100,000
Associate - Operations
Associate - Operations

Allstate • Bengaluru

On-site
INR 400,000 - 600,000