Security Operations Center (SOC) Lead

  • IT
  • United States
  • 1 week ago

About the job

Job Description

Infosys is seeking for a Security Operations Center (SOC) Lead to apply technical proficiency across different stages of the Software Development Life Cycle including IAM platform support.

Required Qualifications

 Candidate must be located within commuting distance of Richardson, TX, or Tempe, AZ, or be willing to relocate to these areas. This position may require travel in the US.

 Bachelor’s degree or foreign equivalent required from an accredited institution. Will also consider three years of progressive experience in the specialty in lieu of every year of education.

 At least 4 years of experience in Information Technology.

 At least 4 years of Security Operation Center (SOC) experience.

 Act as the final escalation point for security incidents and alerts escalated by L1 and L2 analysts

 Perform deep-dive analysis of complex security incidents, including malware analysis, investigations, and threat actor profiling

 Lead proactive threat hunting activities using SIEM, EDR, Threat intelligence & other security telemetry

 Develop and fine-tune detection rules, correlation logic, and use cases in Exabeam and other monitoring tools for investigations such as: Proofpoint, Aqua, Wiz, Recorded Future

 Collaborate with other teams to assess emerging threats and integrate IOCs into detection systems

 Conduct root cause analysis and post-incident reviews to improve SOC processes and defenses

 Mentor and train L1 and L2 analysts, providing guidance on incident handling and analysis techniques

 Participate in red/blue/purple team exercises and contribute to tabletop simulations

 Maintain and improve SOC documentation, including playbooks, runbooks, and incident response procedures.

 Stay current with the latest security trends, vulnerabilities, and threat actor tactics, techniques, and procedures (TTPs).

 Publish Daily, Weekly & Monthly reports as required by customer/stakeholders and provide SOC updates during regular reviews

 C reate the high-level design artifacts, consulting, and providing solutions for multiple IDAM tracks.

 Health care industry experience will be advantage

 All applicants authorized to work in the United States are encouraged to apply

Preferred Qualifications

 Experienced with: Elicitation, Application Architecture definition and Design

 Planning and Co-ordination skills.

 Good Communication and Analytical skills.

 Ability to work in team in diverse/ multiple stakeholder environment.

 Experience and desire to work in a Global delivery environment.

The job entails sitting as well as working at a computer for extended periods of time. Should be able to communicate by telephone, email, or face to face. Travel may be required as per the job requirements.