Technical Lead-Cybersecurity

Birlasoft
Noida
Workplace: OnsiteFull timeFunction: CybersecuritySkills: []

Support SOC operations by monitoring and responding to security alerts across SIEM, EDR/XDR, IAM, and cloud security platforms. Perform incident investigation, triage, containment, eradication, and recovery, including threat hunting and IOC/root-cause analysis. Correlate events from multiple tools, tune detections and SIEM correlation rules, and maintain SOC runbooks/playbooks. Produce incident reports and support audits, compliance initiatives, and continuous SOC improvement activities.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Birlasoft
Birlasoft
2 days ago

Technical Lead-Cybersecurity

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 11 hours agoStatus: Live
Reposted: similar role first listed 6 months ago

Job Summary

Support SOC operations by monitoring and responding to security alerts across SIEM, EDR/XDR, IAM, and cloud security platforms. Perform incident investigation, triage, containment, eradication, and recovery, including threat hunting and IOC/root-cause analysis. Correlate events from multiple tools, tune detections and SIEM correlation rules, and maintain SOC runbooks/playbooks. Produce incident reports and support audits, compliance initiatives, and continuous SOC improvement activities.
Location: Noida
Workplace: Onsite
Employment Type: Full time
Job Function: Cybersecurity
Seniority: Mid level

Key Responsibilities

  • •Monitor, investigate, and respond to security alerts and incidents from SIEM, EDR, IAM, and cloud security monitoring platforms.
  • •Perform incident analysis, triage, containment, eradication, and recovery activities.
  • •Conduct threat hunting to identify suspicious behavior, advanced threats, and potential breaches.
  • •Correlate security events from multiple tools and data sources to determine attack scope and impact.
  • •Create and maintain SIEM correlation rules, detection logic, and alert tuning recommendations; support forensic investigations and post-incident reviews.

Key Requirements

  • •Hands-on experience supporting SOC activities including threat monitoring, incident investigation, threat hunting, detection analysis, and incident response.
  • •Strong SIEM operations and log analysis skills, including event correlation across SIEM/EDR/IAM/cloud security monitoring platforms.
  • •Experience with malware triage and investigation covering phishing, ransomware, insider threats, account compromise, and unauthorized access.
  • •Ability to analyze logs, network traffic, endpoint activity, and cloud events to identify indicators of compromise (IOCs).
  • •Familiarity with MITRE ATT&CK and cyber kill chain concepts and use in detection/response workflows.
Tech Stack:SIEMEDRXDRIAMCloud SecurityLog analysisNetwork traffic monitoringEndpoint detectionThreat huntingIOC analysisMITRE ATT&CKCyber kill chain

Company Brief

Birlasoft
Birlasoft is a global IT services and digital solutions provider delivering consulting, enterprise applications, cloud, and infrastructure services to enterprises across industries, helping accelerate digital transformation and business modernization.
Industry: Professional Services
Company Size: Enterprise (1,001+ employees)
Revenue: USD 500M to 1B
Growth: Public Company
Valuation: Public Company (Market Cap in USD)
Funding: IPO / Publicly Listed
Headquarters: Noida, India
WebsiteLinkedIn