Back to jobs

Cyber Security Analyst (SOC)

GenpactNagpur, Maharashtra, IndiaAdded 1d ago
Security Analyst
Craft my tailored resume free

Free to start · No card

Job description

Cyber Security Analyst (SOC) Location: Pune Experience: 2+ years Immediate Joiners Preferred. For Immediate response, Kindly share resumes to nsenthil.kumar@genpact.com with Sub of "Cyber Security Analyst" along with Notice period. Role Summary We are seeking a Cyber Security Analyst with 2+ years of hands-on SOC experience to monitor, detect, investigate, and respond to cyber security threats across the enterprise environment. The ideal candidate will have strong knowledge of cyber-attack techniques, threat hunting, incident response, vulnerability management, and security operations processes. This role will leverage a modern security technology stack centered around Microsoft Sentinel, Microsoft Defender, Microsoft Entra ID (Azure AD), Tenable, and Email Security platforms such as Proofpoint, Abnormal Security, or equivalent solutions. The successful candidate will be responsible for proactive threat detection, incident investigation, security monitoring, and continuous improvement of security operations capabilities. Core Responsibilities - Monitor security events, alerts, and incidents through SIEM, XDR/EDR and email security platforms. Investigate and respond to security alerts, suspicious activities, malware infections, phishing attempts, account compromises, and other cyber threats.Perform proactive threat hunting activities using available telemetry, threat intelligence, and behavioral indicators.Analyze attacker tactics, techniques, and procedures (TTPs) using the MITRE ATT&CK framework.Create threat hunting hypotheses and identify potential indicators of compromise (IOCs) within the environment.Validate, tune, and optimize detection rules, analytics, alerting logic, and security playbooks to reduce false positives and improve detection capabilities.Investigate high-severity incidents and coordinate response activities with IT and business stakeholders.Support incident containment, eradication, recovery, and post-incident analysis activities.Monitor and manage vulnerabilities identified through Tenable and Microsoft security solutions, working with infrastructure teams to ensure timely remediation.Perform root cause analysis of security incidents and provide actionable recommendations.Conduct phishing investigations and email threat analysis using enterprise email security solutions.Develop and maintain incident response procedures, investigation runbooks, and operational documentation.Participate in tabletop exercises, purple team activities, and cyber security incident simulations.Generate operational security reports, dashboards, and metrics for technical and non-technical stakeholders.Maintain awareness of emerging cyber threats, vulnerabilities, attack campaigns, and adversary techniques.Ensure all security incidents and investigations are properly documented and tracked through completion.Collaborate closely with SOC, IT Operations, Infrastructure, Cloud, and End User Computing teams to enhance overall security posture. Required Technical Skills Security Operations (SOC) - Strong understanding of SOC operations, incident response, threat detection, and cyber attack methodologies. Experience investigating phishing, malware, ransomware, business email compromise (BEC), credential theft, and insider threat incidents.Knowledge of MITRE ATT&CK framework, Indicators of Compromise (IoCs), and threat intelligence. SIEM - Microsoft SentinelStrong understanding of SIEM architecture, log analysis, correlation rules, and security monitoring. XDR / EDR - Microsoft Defender XDRMicrosoft Defender for EndpointExperience investigating endpoint, identity, cloud, and email-related security incidents. Identity Security - Microsoft Entra ID (Azure AD) Conditional Access PoliciesIdentity ProtectionAuthentication and access-related security monitoring Email Security - Proofpoint, Abnormal Security, Microsoft Defender for Office 365, or equivalent email security platformsPhishing analysis and email threat investigations Vulnerability Management - Tenable.io / Tenable.sc / NessusVulnerability assessment, prioritization, remediation tracking, and reporting Threat Hunting - Threat hunting methodologiesLog and telemetry analysisDetection engineering and use case development Preferred Qualifications - Bachelor's degree in Cyber Security, Information Security, Computer Science, or related field.Experience working within a Security Operations Center (SOC) environment.Industry certifications such as:SC-200 (Microsoft Security Operations Analyst)Security+CEHCySA+GSECAZ-500Experience with KQL (Kusto Query Language) for Microsoft Sentinel and Defender investigations.Strong analytical, investigative, and problem-solving skills.Ability to work independently and effectively manage multiple security investigations simultaneously. Experience Required - Minimum 2+ years of experience in Cyber Security Operations (SOC). Hands-on experience with:Microsoft SentinelMicrosoft Defender XDRMicrosoft Defender for EndpointMicrosoft Entra ID (Azure AD)Tenable/NessusEmail Security platforms (Proofpoint, Abnormal Security, Defender for Office 365, or equivalent)Demonstrated experience in threat hunting, incident response, alert triage, and cyber attack investigations.

Prepare your application

Use the description above to assess your fit for Genpact. This checklist is guidance from Resumize, rather than additional requirements from the employer. Imported listings can be shortened or change after collection, so confirm the complete description and current availability before sending an application.

Match requirements to evidence

Identify the responsibilities and skills the employer explicitly names. For each important requirement, choose one example from your work, education, training, or projects. Explain what you did, how you did it, and what changed as a result. Include a measurable outcome when you can support it. If you lack a requirement, describe related experience accurately instead of adding an unfamiliar skill to your resume.

Put the most relevant examples near the top of your resume. Keep job titles, dates, qualifications, and contact details consistent across your application materials. Use the employer’s terminology when it describes your experience accurately; a copied list of keywords does not explain your contribution. A short, specific bullet is easier to review than a paragraph that mixes several unrelated duties.

Check the working arrangement

Confirm the location, schedule, employment type, and any eligibility requirements on the employer’s site. A remote label does not establish worldwide eligibility or flexible hours. If compensation, benefits, equipment, travel, or contract duration are missing from this listing, write down your questions for the recruiter. Do not assume details from another opening at the same company apply to this role.

Review before submitting

Follow the employer’s requested file format and application instructions. Open your exported resume and check that its text is selectable, its sections read in order, and its links work. Proofread names, dates, and contact information. Share confidential work samples only when you have permission, and use an anonymized example when necessary.

Submit through a trusted employer or recruiting destination. If the original listing has disappeared, search the employer’s careers page for the title rather than assuming the vacancy remains open. Save the application date, job reference, and the version of your resume you sent. Those details help you prepare for a later conversation and avoid submitting conflicting information through several job boards.

Review your resume for writing and readability feedback, or browse other openings if this opportunity is unavailable.