Threathunting Lead

airtel

Gurugram District

On-site

INR 3,500,000 - 5,200,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Airtel iSOC is seeking a Threat Hunter & Threat Intelligence Lead to proactively identify, investigate, and disrupt adversary activity across the enterprise. This role will lead threat hunting operations, build and mature threat intelligence capabilities, and convert intelligence into detection engineering, incident response improvements, and measurable risk reduction.

You will partner closely with SOC, IR, security engineering, and IT teams to strengthen prevention, detection, and response.

Qualifications

  • 5+ years in cyber security with strong experience in Threat Hunting, Threat Intelligence, SOC, or Incident Response.
  • Hands-on expertise with SIEM, EDR/XDR, cloud, and identity logs.
  • Strong knowledge of MITRE ATT&CK, attacker lifecycle, and adversary tradecraft.
  • Detection engineering experience using KQL/SPL/SQL or equivalent query languages.
  • Sound investigation, log analysis, and incident scoping skills.
  • Clear communicator with ability to present technical findings in business terms.

Responsibilities

  • Lead a structured threat hunting program aligned to MITRE ATT&CK and emerging attacker TTPs.
  • Own threat intelligence operations: collection, analysis, enrichment, and dissemination.
  • Translate intelligence and hunting outcomes into high-quality detections and SOC use cases.
  • Conduct advanced investigations and support major incident response activities.
  • Build and maintain hunting playbooks, detection rules, and dashboards.
  • Partner with SOC, IR, Red/Purple Teams to validate detection coverage and close gaps.
  • Define and report KPIs, threat trends, and risk insights to technical teams and leadership.
  • Mentor analysts and support maturity of hunting and intel capabilities.

Skills

Threat Hunting
Threat Intelligence
SOC
Incident Response
SIEM
EDR/XDR
Cloud
Identity Logs
MITRE ATT&CK
Detection Engineering
Log Analysis

Tools

KQL
SPL
SQL

Job description

Airtel iSOC is looking for a Threat Hunter & Threat Intelligence Lead to proactively identify, investigate, and disrupt adversary activity across the enterprise. This role will lead threat hunting operations, build and mature threat intelligence (TI) capabilities, and convert intelligence into detection engineering, incident response improvements, and measurable risk reduction. You will partner closely with SOC, IR, security engineering, and IT teams to strengthen prevention, detection, and response.

Key Responsibilities
  • Lead a structured threat hunting program aligned to MITRE ATT&CK and emerging attacker TTPs.
  • Own threat intelligence operations: collection, analysis, enrichment, and dissemination.
  • Translate intelligence and hunting outcomes into high-quality detections and SOC use cases.
  • Conduct advanced investigations and support major incident response activities.
  • Build and maintain hunting playbooks, detection rules, and dashboards.
  • Partner with SOC, IR, Red/Purple Teams to validate detection coverage and close gaps.
  • Define and report KPIs, threat trends, and risk insights to technical teams and leadership.
  • Mentor analysts and support maturity of hunting and intel capabilities.
Required Qualifications
  • 5+ years in cyber security with strong experience in Threat Hunting, Threat Intelligence, SOC, or Incident Response.
  • Hands‑on expertise with SIEM, EDR/XDR, cloud, and identity logs.
  • Strong knowledge of MITRE ATT&CK, attacker lifecycle, and adversary tradecraft.
  • Detection engineering experience using KQL/SPL/SQL or equivalent query languages.
  • Sound investigation, log analysis, and incident scoping skills.
  • Clear communicator with ability to present technical findings in business term
Preferred
  • Cloud & SaaS threat hunting (Azure/AWS/GCP, M365, identity platforms).
  • Experience with TIPs, SOAR, Sigma, YARA, automation/scripting (Python/PowerShell).
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Threat Hunting Specialist
Threat Hunting Specialist

Terralogic • Bengaluru

On-site
INR 1,200,000 - 1,800,000
Advanced Threat Hunting
Advanced Threat Hunting

PwC India • Mumbai

Hybrid
INR 1,200,000 - 2,400,000
Threat Hunting Analyst
Threat Hunting Analyst

Network Intelligence India • Bengaluru

On-site
INR 800,000 - 1,500,000
Threat Hunter
Threat Hunter

JUARA IT SOLUTIONS • Chennai District

On-site
INR 900,000 - 1,300,000
Cyber Threat Hunter Professional
Cyber Threat Hunter Professional

Conduent • Navi Mumbai

On-site
INR 1,000,000 - 1,500,000
Threat Hunter - SOC
Threat Hunter - SOC

Network Intelligence • Mumbai

On-site
INR 1,000,000 - 1,500,000
Senior Associate - Threat Hunting
Senior Associate - Threat Hunting

NPCI International • Hyderabad

On-site
INR 1,200,000 - 1,800,000
Comprehensive medical, accidental, and life insurance
On-site medical center and mental wellness support
Inclusive parental leave
+3
ARCHITECT - SOC Monitoring
ARCHITECT - SOC Monitoring

Happiest Minds Technologies • Bengaluru

Hybrid
INR 4,500,000 - 7,500,000
TECHNICAL LEAD - SOC Monitoring
TECHNICAL LEAD - SOC Monitoring

Happiest Minds Technologies • Bengaluru

Hybrid
INR 2,500,000 - 4,000,000
Senior Threat Hunter
Senior Threat Hunter

UST • Bengaluru

On-site
INR 1,800,000 - 2,800,000