SOC Detection and Response - Engineer Cyber Security Engineer

Unisys

Bengaluru

Remote

INR 800,000 - 1,200,000

Full time

2 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Unisys is seeking an SOC Detection and Response Engineer to monitor security events, investigate incidents, and support threat hunting initiatives from a home-based location in India.

You will work with SIEM/EDR tools, contribute to detection quality, and coordinate with MSSP and internal teams to minimize risk across networks, endpoints, and cloud environments.

Qualifications

  • 2-3 years of experience in a SOC, MSSP, IR, or similar cybersecurity role.
  • Strong understanding of security monitoring concepts and SIEM workflows.
  • Experience with security investigations, incident response, and case documentation.

Responsibilities

  • Monitor and triage alerts from SIEM, EDR, IDS/IPS, and other security tools.
  • Conduct investigations and enrichment to determine scope and impact of incidents.
  • Collaborate with MSSP and internal teams to drive investigations to resolution.
  • Support automation and playbooks to improve investigation efficiency.
  • Maintain audit-ready incident documentation and evidence collection.

Skills

SOC operations
Incident response
Threat hunting
MITRE ATT&CK knowledge

Education

Any degree

Tools

SIEM
EDR
IDS/IPS

Job description

What success looks like in this role:

Job Title: SOC Detection and Response - Engineer Cyber Security Engineer

Location : Home Based India

Who we are:

Unisys is a global information technology company that builds high-performance, security-centric solutions for the most digitally demanding businesses and governments on Earth. Unisys' offerings include security software and services; digital transformation and workplace services; industry applications and services; and innovative software operating environments for high-intensity enterprise computing. Unisys builds better outcomes securely for its clients across the Government, Financial Services and Commercial markets. For more information, visit www.unisys.com .

Our Vision: Enhancing people's lives through secure, reliable advanced technology.

Our Core Beliefs:

  • Curiosity: We embrace the unknown and continuous learning.
  • Creativity: We look past routine ways of doing things.
  • Client-Centricity: Our clients' success is our success.
  • Integrity: We act ethically and honestly.
Position Overview:

Identifies potential network, system and information vulnerabilities. Develops and implements solutions to mitigate risks and enhance system security. Provides consultation to organizations on security issues. Performs security investigation and computer forensic analysis. Performs penetration testing, security-focused system architecture review, incident response planning and execution. Identifies potential vulnerabilities and gaps in the Software Development Life Cycle working with the Engineering and Product teams as they build products and solutions.

Key Responsibilities/Outcomes
Security Monitoring and Incident Investigation
  • Monitor and triage security alerts generated by SIEM, EDR, IDS/IPS, email security, identity protection, cloud security, and other security monitoring platforms.
  • Perform initial investigation and enrichment activities to determine alert validity, scope, and potential business impact.
  • Analyze endpoint, network, identity, and cloud security telemetry to identify indicators of compromise and suspicious activity.
  • Escalate complex, high-severity, or confirmed security incidents to senior analysts and incident responders in accordance with established procedures.
  • Assist with containment and response activities under the direction of senior analysts and incident response personnel.
  • Manage assigned investigations through completion, including evidence collection, analysis, documentation, and timely escalation when required.
Threat Detection and Analysis
  • Participate in structured threat hunting activities led by senior analysts to identify potential threats and develop investigative skills.
  • Use frameworks such as MITRE ATT&CK to understand adversary tactics, techniques, and procedures.
  • Assist with the review and validation of emerging threats, indicators of compromise, and detection opportunities.
  • Identify recurring alert patterns and recommend opportunities to improve detection quality and reduce false positives.
Security Operations and MSSP Collaboration
  • Collaborate with MSSP analysts and internal teams to review alerts, investigations, and case outcomes.
  • Review MSSP-generated alerts and reports, escalating discrepancies or quality concerns through established processes.
  • Support operational activities related to security monitoring, alert management, and investigation workflows.
Security Automation and Process Support
  • Support the maintenance and testing of security automation workflows and SOAR playbooks.
  • Identify opportunities to improve investigation efficiency, alert handling, and response processes.
  • Follow established investigation playbooks, escalation procedures, and operational standards.
Documentation and Continuous Improvement
  • Maintain accurate, complete, and audit-ready documentation of investigations, incident response actions, and case outcomes.
  • Ensure case updates, evidence, and findings are properly recorded within case management platforms.
  • Stay current on cybersecurity threats, vulnerabilities, attack techniques, and industry trends.
  • Participate in team knowledge sharing, training, and continuous improvement initiatives.
You will be successful in this role if you have:
  • Any degree with 2-3 years of experience working in a Security Operations Center (SOC), Managed Security Services Provider (MSSP), Incident Response, or similar cybersecurity environment.
Technical Expertise
  • 2-3 years of Experience working in a Security Operations Center (SOC), Managed Security Services Provider (MSSP), Incident Response, or similar cybersecurity environment.
  • Working knowledge of Security Information and Event Management (SIEM) platforms and security monitoring concepts.
  • Experience investigating alerts generated from Endpoint Detection and Response (EDR) platforms.
  • Foundational understanding of Windows, Linux, identity services, and enterprise security concepts.
  • Understanding of network security fundamentals, common protocols, and traffic
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Sr. IT Engineer (Security)
Sr. IT Engineer (Security)

DataCore Software GmbH • Bengaluru

On-site
INR 2,500,000 - 4,500,000
Sr. SOC Analyst
Sr. SOC Analyst

Ferfier Technologies • Dadri

On-site
INR 1,500,000 - 2,100,000
Flexible/Remote work
Junior Engineer
Junior Engineer

Lyric Exponentials India Private Limited • Hyderabad

On-site
INR 1,000,000 - 1,500,000
Sr. IT Engineer (Security)
Sr. IT Engineer (Security)

DataCore Software • Bengaluru

On-site
INR 4,000,000 - 6,400,000
Soc Analyst
Soc Analyst

Genpact • Hyderabad, Bengaluru, Delhi

Hybrid
INR 800,000 - 1,200,000
Soc Analyst
Soc Analyst

Bahwan CyberTek • Chennai District, Bengaluru

On-site
INR 600,000 - 900,000
Sr. IT Engineer (Security)
Sr. IT Engineer (Security)

Datacore • Bengaluru

On-site
INR 900,000 - 1,500,000
Sr Cyber Security Engineer
Sr Cyber Security Engineer

TechBrein Solutions Private Limited • Kozhikode district

On-site
INR 1,200,000 - 2,400,000
Sr SUPPORT ENGINEER - Cyber Security
Sr SUPPORT ENGINEER - Cyber Security

Happiest Minds Technologies • Dadri

On-site
INR 800,000 - 1,500,000
Senior Security Engineer
Senior Security Engineer

Ll Oefentherapie • India

On-site
INR 600,000 - 1,000,000