Source description
About the role
Role: Security Operations Analyst (Detection Engineering & Alert Triage) Experience: 5 Years Location: Hyderabad (On-site) Mandatory Skills: - 5 years of enterprise Security Operations (SOC) experience - Solid experience in alert triage and detection engineering/content tuning - Hands-on experience with SIEM rule writing - Experience with EDR, NDR, and Firewall log analysis - Cloud security expertise (IAM anomalies, SaaS security alerts, containerized & serverless workloads) - Strong understanding of MITRE ATT&CK; framework and TTP mapping - Scripting using Python, PowerShell, or Bash for automation/enrichment - Experience working in a 247 SOC environment - Excellent investigation, documentation, and analytical skills Job Responsibilities: - Investigate and triage security alerts across on-premises and cloud environments - Develop, tune, and optimize SIEM detection rules - Reduce false positives and improve detection coverage - Create and maintain MITRE ATT&CK-aligned; detection use cases - Develop playbooks, SOPs, and automate detection engineering workflows - Collaborate with global security teams and respond to advanced threats .