Soc Detection & Response - Associate Principal Engineer
Unisys UK
Bangalore, India
Base: not specified; bonus/equity: not specified; ...
Hybrid
Security information and event management (siem)
Endpoint detection and response (edr)
Intrusion detection/prevention systems (ids/ips)
The role involves designing, developing, and maintaining high-fidelity detection rules and analytics to identify known and emerging threats effectively
Job Summary
The role involves designing, developing, and maintaining high-fidelity detection rules and analytics to identify known and emerging threats effectively.
You will lead advanced Tier 3 security investigations and proactive threat hunting while managing MSSP Tier 1 and Tier 2 operations to enhance overall security posture.
Unisys offers hybrid working support, a monthly cafeteria allowance, home office allowance, private health insurance, and a premium package after six months tenure.
Matching Summary
The role involves designing, developing, and maintaining high-fidelity detection rules and analytics to identify known and emerging threats effectively.
Salary
Base: Not specified; Bonus/Equity: Not specified; Benefits: Monthly 44,200 HUF cafeteria; home office allowance; private health insurance; Generali Premium Package after 6 months
Skills & Requirements
Must-have
Security Information and Event Management (SIEM)
Endpoint Detection and Response (EDR)
Intrusion Detection/Prevention Systems (IDS/IPS)
Security automation scripting
Threat hunting and investigation
MSSP operations management
MITRE ATT&CK framework
Nice-to-have
Strong verbal and written communication
Collaboration with cross-functional teams
Proactive continuous improvement mindset
Key Requirements
Active US Security Clearance or eligibility
Proficiency in Python, PowerShell, Bash scripting
Experience with SIEM tools like Splunk or Google SecOps
Strong knowledge of network security protocols
Familiarity with MITRE ATT&CK framework
Work Rights
Active US Security Clearance or eligibility for clearance reinstatement required