Jobs Companies Unisys SOC Detection and Response - Engineer Cyber Security Engineer

À propos de ce poste SOC Detection and Response - Engineer Cyber Security Engineer chez Unisys

Unisys · Sur site · Bengaluru, KA, India

What success looks like in this role:

Job Title: SOC Detection and Response - Engineer Cyber Security Engineer

Location: Home Based India

 

Who we are:

Unisys is a global information technology company that builds high-performance, security-centric solutions for the most digitally demanding businesses and governments on Earth. Unisys’ offerings include security software and services; digital transformation and workplace services; industry applications and services; and innovative software operating environments for high-intensity enterprise computing. Unisys builds better outcomes securely for its clients across the Government, Financial Services and Commercial markets. For more information, visit www.unisys.com.

Our Vision: Enhancing people’s lives through secure, reliable advanced technology.

Our Core Beliefs:

  • Curiosity: We embrace the unknown and continuous learning.
  • Creativity: We look past routine ways of doing things.
  • Client-Centricity: Our clients’ success is our success.
  • Integrity: We act ethically and honestly.

 

Position Overview:

Identifies potential network, system and information vulnerabilities. Develops and implements solutions to mitigate risks and enhance system security. Provides consultation to organizations on security issues. Performs security investigation and computer forensic analysis. Performs penetration testing, security-focused system architecture review, incident response planning and execution. Identifies potential vulnerabilities and gaps in the Software Development Life Cycle working with the Engineering and Product teams as they build products and solutions.


  • Key Responsibilities/Outcomes
    Security Monitoring and Incident Investigation
  • Monitor and triage security alerts generated by SIEM, EDR, IDS/IPS, email security, identity protection, cloud security, and other security monitoring platforms.
  • Perform initial investigation and enrichment activities to determine alert validity, scope, and potential business impact.
  • Analyze endpoint, network, identity, and cloud security telemetry to identify indicators of compromise and suspicious activity.
  • Escalate complex, high-severity, or confirmed security incidents to senior analysts and incident responders in accordance with established procedures.
  • Assist with containment and response activities under the direction of senior analysts and incident response personnel.
  • Manage assigned investigations through completion, including evidence collection, analysis, documentation, and timely escalation when required.

Threat Detection and Analysis

  • Participate in structured threat hunting activities led by senior analysts to identify potential threats and develop investigative skills.
  • Use frameworks such as MITRE ATT&CK to understand adversary tactics, techniques, and procedures.
  • Assist with the review and validation of emerging threats, indicators of compromise, and detection opportunities.
  • Identify recurring alert patterns and recommend opportunities to improve detection quality and reduce false positives.

Security Operations and MSSP Collaboration

  • Collaborate with MSSP analysts and internal teams to review alerts, investigations, and case outcomes.
  • Review MSSP-generated alerts and reports, escalating discrepancies or quality concerns through established processes.
  • Support operational activities related to security monitoring, alert management, and investigation workflows.

Security Automation and Process Support

  • Support the maintenance and testing of security automation workflows and SOAR playbooks.
  • Identify opportunities to improve investigation efficiency, alert handling, and response processes.
  • Follow established investigation playbooks, escalation procedures, and operational standards.

Documentation and Continuous Improvement

  • Maintain accurate, complete, and audit-ready documentation of investigations, incident response actions, and case outcomes.
  • Ensure case updates, evidence, and findings are properly recorded within case management platforms.
  • Stay current on cybersecurity threats, vulnerabilities, attack techniques, and industry trends.
  • Participate in team knowledge sharing, training, and continuous improvement initiatives.


#LI-RB1

You will be successful in this role if you have:

Any degree with 2-3 years of experience working in a Security Operations Center (SOC), Managed Security Services Provider (MSSP), Incident Response, or similar cybersecurity environment.

Technical Expertise

  • 2-3 years of experience working in a Security Operations Center (SOC), Managed Security Services Provider (MSSP), Incident Response, or similar cybersecurity environment.
  • Working knowledge of Security Information and Event Management (SIEM) platforms and security monitoring concepts.
  • Experience investigating alerts generated from Endpoint Detection and Response (EDR) platforms.
  • Foundational understanding of Windows, Linux, identity services, and enterprise security concepts.
  • Understanding of network security fundamentals, common protocols, and traffic analysis concepts.
  • Familiarity with cybersecurity frameworks and methodologies such as MITRE ATT&CK.
  • Foundational understanding of cloud security concepts and identity-based threats.

Analytical and Problem-Solving Skills

  • Strong analytical skills with the ability to identify anomalies, patterns, and indicators of malicious activity.
  • Ability to perform structured investigations and make sound decisions using available evidence.
  • Strong attention to detail and commitment to high-quality documentation.

Collaboration and Communication

  • Strong verbal and written communication skills.
  • Ability to work effectively within a global cybersecurity team and collaborate with technical and non-technical stakeholders.
  • Ability to follow established processes while adapting to changing operational priorities.

Preferred Qualifications

  • Experience with Google SecOps, CrowdStrike Falcon, Microsoft Defender, Splunk, or similar technologies.
  • Exposure to SOAR platforms and security automation concepts.
  • Basic scripting experience using Python, PowerShell, or Bash.
  • Exposure to threat hunting, digital forensics, malware analysis, or incident response activities.
  • Industry certifications such as Security+, CySA+, SC-200, GSEC, or equivalent.

Unisys is proud to be an equal opportunity employer that considers all qualified applicants without regard to age, blood type, caste, citizenship, color, disability, family medical history, family status, ethnicity, gender, gender expression, gender identity, genetic information, marital status, national origin, parental status, pregnancy, race, religion, sex, sexual orientation, transgender status, veteran status or any other category protected by law.

Local employment practices and rights may vary by jurisdiction and are subject to applicable local laws. This commitment includes our efforts to provide for all those who seek to express interest in employment the opportunity to participate without barriers.

 

If you are a US job seeker unable to review the job opportunities herein, or cannot otherwise complete your expression of interest, without additional assistance and would like to discuss a request for reasonable accommodation, please contact our Global Recruiting organization at [email protected]. US job seekers can find more information about Unisys’ EEO commitment here.

Prêt à postuler chez Unisys ?
Postuler chez Unisys

À propos de Unisys

Unisys is a global technology solutions company that powers breakthroughs for the world’s leading organizations. Our solutions – cloud, AI, digital workplace, logistics and enterprise computing – help our clients challenge the status quo and unlock their full potential. To learn how we have been helping clients push what’s possible for more than 150 years, visit unisys.com and follow us on LinkedIn . https://www.unisys.com/unisys-legal/recruiting Notice for U.S. Applicants: Unisys is an Equal Opportunity Employer – Minorities/ Females/ Veterans/ Individuals with Disabilities/ Sexual Orientation/ Gender Identity

Voir tous les emplois chez Unisys →

Emplois similaires

Unisys
SOC Detection and Response - Engineer Cyber Security Engineer
Unisys
⚡ Postuler tôt Bengaluru, KA, India Sur site
● Nouveau 👁 Vu ✓ Postulé il y a 1 j
Unisys
SOC Detection and Response - Engineer Cyber Security Engineer
Unisys
⚡ Postuler tôt Bengaluru, KA, India Sur site
● Nouveau 👁 Vu ✓ Postulé il y a 1 j
Unisys
SOC Detection and Response - Engineer Cyber Security Engineer
Unisys
⚡ Postuler tôt Bengaluru, KA, India Sur site
● Nouveau 👁 Vu ✓ Postulé il y a 1 j
Pharmathen
IT Cyber Security Engineer
Pharmathen
⚡ Postuler tôt Marousi, Attica, Greece Sur site
● Nouveau 👁 Vu ✓ Postulé il y a 4 h
incident.io
Security Engineer
incident.io
⚡ Postuler tôt London · lieu restreint £110,000–£200,000
● Nouveau 👁 Vu ✓ Postulé il y a 5 h
Ascensus
Application Security Engineer, Information Security
Ascensus
⚡ Postuler tôt Dresher, PA Sur site
● Nouveau 👁 Vu ✓ Postulé il y a 5 h
Greenheck Group
DevOps & Security Engineer
Greenheck Group
⚡ Postuler tôt Remote - Minnesota · lieu restreint $117,249–$144,837
● Nouveau 👁 Vu ✓ Postulé il y a 6 h
Relativity
Advanced Security Engineer - Gov
Relativity
⚡ Postuler tôt Illinois Sur site $104,000–$156,000
● Nouveau 👁 Vu ✓ Postulé il y a 6 h
Talon.One
Product Security Engineer
Talon.One
⚡ Postuler tôt Berlin Sur site
● Nouveau 👁 Vu ✓ Postulé il y a 6 h

Inscrivez-vous pour des suggestions adaptées aux emplois que vous ouvrez et aux recherches que vous enregistrez.

Plus d’emplois chez Unisys

Voir tous les emplois chez Unisys →

Postuler maintenant
🤖

Doucement — un instant

JobsRadar a été conçu pour de vraies personnes qui traversent une période difficile dans leur recherche d’emploi — pas pour des requêtes automatisées. Vous cliquez beaucoup trop vite et vous êtes maintenant temporairement bloqué.

Revenez plus tard. Si vous cherchez réellement un emploi, nous sommes de votre côté — agissez simplement comme un être humain.

Catch your next role the second it’s posted.

Create a free account and we’ll watch the boards for you — the instant a job matches your search, it lands in your inbox or Telegram. No digging, no refreshing.

Create free account

Free forever · takes 30 seconds · already have one?

Prenez une longueur d’avance dans votre recherche d’emploi.

Rejoignez notre canal Telegram pour ce qui vous aide à décrocher le poste — références salariales, le pouls hebdomadaire du marché et les annonces de nouveautés. Pas de spam, que du signal.

Rejoindre le canal — c’est gratuit