Lead Information Security Engineer - Cyber Ops (Threat Monitoring)
First Citizens BankMatch Score
Against your primary resumeLogin to See Your Match Score
Create a free account or log in to unlock your CV match score across:
Protocol Intelligence
Data-driven signals on your job's competitivenessTier-1 bank and Bangalore metro increase competition despite niche SOC skillset.
Core SOC and detection skills transfer across industries, but banking compliance experience is moderately important.
Explicit 8–10 years plus mandatory SIEM, SOAR, EDR, and scripting requirements imply high strictness.
Job Description
Structured overview of role & requirementsAbout This Role
Lead complex investigations and escalations of high-priority security incidents like malware, phishing, ransomware, and advanced persistent threats.
Develop, tune, and optimize detection use cases and alerts across enterprise, cloud, network, endpoint, and identity environments to enhance monitoring effectiveness and reduce false positives.
Mentor junior SOC analysts and collaborate with cross-functional teams including Incident Response, Threat Intelligence, and Infrastructure to improve security monitoring and incident response capabilities.
Minimum Requirements
8-10 years of cybersecurity experience with significant focus on Security Operations, Threat Monitoring, or Incident Detection.
Hands-on experience with SIEM platforms (e.g., Splunk, Microsoft Sentinel, QRadar) and SOAR platforms (e.g., XSOAR).
Proficiency with EDR/XDR technologies such as Microsoft Defender, CrowdStrike, SentinelOne, Cortex XDR, or equivalents.
Work Experience Required: 8-10 years in cybersecurity roles focused on threat monitoring and incident detection. Notice period: Not explicitly mentioned in the JD.
Ideal Candidate Profile
Experienced senior SOC analyst comfortable owning and improving complex threat detection and investigation processes.
Strong technical background in SIEM, SOAR, EDR/XDR tools, and multi-cloud security monitoring across Azure, AWS, and GCP.
Demonstrates leadership by mentoring others, driving operational improvements, and collaborating effectively across security and infrastructure teams.
