
Real job — pulled straight from infra360’s careers page · Verified October 4, 2026 · No reposts.
Job description
infra360 is hiring a Security Operations Engineer — a full-time, based in Gurugram, India role. Apply directly on infra360's careers page below.
SecOps Engineer / Security Operations / SOC Engineer
Location: Gurugram, India
Department: Technology
Experience: 3-7 Years
Skills: XDR, Threat Hunting, Threat Intelligence, SIEM, SecOps, EDR, Cybersecurity, Security Monitoring, MDR, Incident Response
About Infra360
About the Role
Key Responsibilities
1. Security Monitoring & Alert Investigation
- Monitor and investigate security alerts across customer environments.
- Perform alert triage and determine severity and business impact.
- Correlate events across endpoint, identity, network and cloud sources.
- Investigate suspicious activity and identify false positives.
- Maintain accurate incident timelines and investigation documentation.
- Work within defined security processes and customer SLAs.
2. SIEM / XDR Operations
- Work with SIEM/XDR platforms such as Microsoft Sentinel, Microsoft Defender XDR, Wazuh, Splunk, Elastic, CrowdStrike, SentinelOne, Google SecOps or similar.
- Analyze logs and security telemetry.
- Develop and tune detection and correlation rules.
- Monitor log-source health and identify visibility gaps.
- Improve alert quality and detection coverage.
3. Incident Response
- Malware and ransomware
- Account compromise
- Phishing and business email compromise
- Credential attacks
- Privilege escalation
- Lateral movement
- Suspicious PowerShell/scripts
- Command-and-control activity
- Cloud security incidents
- Data-exfiltration activity
4. Threat Hunting
- MITRE ATT&CK
- IOCs and TTPs
- Suspicious processes
- Authentication anomalies
- PowerShell/script activity
- C2 indicators
- Credential abuse
- Cloud activity
5. Detection Engineering
- Develop and improve SIEM detection rules.
- Create and tune correlation rules.
- Develop behavioral and IOC-based detections.
- Map detections to MITRE ATT&CK.
- Identify detection gaps and improve coverage.
- Convert incident learnings into new detection use cases.
- Knowledge of Sigma is preferred.
6. EDR/XDR Investigation
- Analyze processes, process trees, files, hashes and network connections.
- Investigate endpoint behavior and persistence mechanisms.
- Support endpoint isolation and containment.
- Coordinate remediation with the Security & IT Operations team.
- Validate endpoint security after remediation.
7. Cloud Security Monitoring
8. Security Automation
9. Threat Intelligence & Vulnerability Analysis
- Enrich investigations using threat intelligence.
- Analyze IPs, domains, hashes and malware indicators.
- Track relevant CVEs and exploitation activity.
- Support risk-based vulnerability prioritization.
- Use threat intelligence to improve detections and investigations.
What We're Looking For
- 3–7 years of experience in SOC, SecOps, MDR, Incident Response or Cybersecurity.
- Strong hands-on SIEM experience.
- Experience with EDR/XDR platforms.
- Experience investigating security incidents.
- Strong networking fundamentals.
- Good Windows and Linux security knowledge.
- Understanding of IAM and authentication.
- Understanding of common attack techniques.
- Incident-response experience.
- Good understanding of MITRE ATT&CK.
- Strong analytical and troubleshooting skills.
- MDR/MSSP experience.
- Threat hunting experience.
- Detection engineering.
- Sigma/YARA knowledge.
- Python or scripting.
- AWS/Azure/GCP security experience.
- Kubernetes/container security exposure.
- SOAR experience.
- Experience handling multiple customers or tenants.
What Success Looks Like
Get Security Operations Engineer jobs like this→
New roles from thousands of companies land hourly, straight from their careers pages. Get the freshest matches by email so you never miss one.
Email me new jobsSimilar jobs




Frequently asked questions
What skills are required for Security Operations Engineer at infra360?
The required skills for Security Operations Engineer at infra360 include: SIEM, Cybersecurity, Splunk, Python, PowerShell, AWS, Azure, GCP, IAM, Kubernetes, Networking.
What is the seniority level for Security Operations Engineer at infra360?
Security Operations Engineer at infra360 is a Mid Level / Senior level position.
How do I apply for Security Operations Engineer at infra360?
You can view the full description and apply for Security Operations Engineer at infra360 on EchoJobs: https://echojobs.io/job/infra360-secops-engineer-security-operations-soc-engineer-dquhd.