SOC Detection and Response - Senior Engineer Cybersecurity Engineer

Posted 4 Days Ago
Be an Early Applicant
Bengaluru, Karnataka, IND
In-Office
Senior level
Information Technology
The Role
Develop and execute security controls, defenses, and countermeasures; deploy and maintain security products; automate integrations using scripting and APIs; and coordinate security incident response. The role requires SOC, digital forensics, or incident response experience, SIEM rule creation and dashboard development, EDR and IDS/IPS expertise, network traffic analysis, threat intelligence knowledge, and strong analytical and communication skills.
Summary Generated by Built In

What success looks like in this role:

Job Title: SOC Detection and Response - Senior Engineer Cybersecurity Engineer

Location: Home Based India

Who we are:

Unisys is a global information technology company that builds high-performance, security-centric solutions for the most digitally demanding businesses and governments on Earth. Unisys’ offerings include security software and services; digital transformation and workplace services; industry applications and services; and innovative software operating environments for high-intensity enterprise computing. Unisys builds better outcomes securely for its clients across the Government, Financial Services and Commercial markets. For more information, visit www.unisys.com.

Our Vision: Enhancing people’s lives through secure, reliable advanced technology.

Our Core Beliefs:

  • Curiosity: We embrace the unknown and continuous learning.
  • Creativity: We look past routine ways of doing things.
  • Client-Centricity: Our clients’ success is our success.
  • Integrity: We act ethically and honestly.

Key Responsibilities

• Develops and executes security controls, defenses and counter measures to intercept and prevent attacks or attempts to infiltrate company systems.
• Ensures security product deployment is performed in a seamless manner across varied environments and systems.
• Implements automation by scripting and application programming interfaces (APIs) to integrate security products and ensure they work in an orchestrated manner.
• Coordinates the handling and resolution of security incidents and day-to-day operations and maintenance of security tools.

#LI-RB1

You will be successful in this role if you have:

Required Qualifications:
  • Experience: 4- 6 years of hands-on experience working in a Security Operations Center (SOC), Digital Forensics, or Incident Response role, demonstrating a foundational understanding of operational security challenges and the incident lifecycle.
  • Technical Proficiency:
    • In-depth understanding and practical experience with Security Information and Event Management (SIEM) systems (e.g., Splunk, Google SecOps) for log analysis, sophisticated rule creation, and dashboard development.
    • Strong knowledge of Endpoint Detection and Response (EDR) and Intrusion Detection/Prevention Systems (IDS/IPS).
    • Proficiency in scripting languages (e.g., Python, PowerShell, Bash) for automation, data manipulation, and custom tool development.
    • Solid understanding of network security, protocols, and traffic analysis.
    • Familiarity with threat intelligence platforms and frameworks (e.g., MITRE ATT&CK) to inform detection strategy and rule development.
  • Analytical and Problem-Solving Skills:
    • Exceptional analytical skills to analyze large, complex datasets, identify subtle anomalies, patterns, and indicators of malicious activity.
    • Demonstrated ability to think critically, troubleshoot complex problems, and make sound decisions under pressure, particularly during incident investigations.
  • Collaboration and Communication:
    • Strong verbal and written communication skills for reporting findings, documenting procedures, and collaborating effectively with cross-functional teams and external partners.
Preferred Qualifications:
  • Experience working with Google SecOps, Cribl, audit logs, and cloud-native detection tools.
  • Hands-on experience with Kubernetes incident response and forensic analysis.
  • Familiarity with Detection-as-Code principles, version control (e.g., Git/GitHub), and CI/CD pipelines for detection rule management.
  • Relevant security certifications (e.g., SANS, Offensive Security, cloud security certifications).

Unisys is proud to be an equal opportunity employer that considers all qualified applicants without regard to age, blood type, caste, citizenship, color, disability, family medical history, family status, ethnicity, gender, gender expression, gender identity, genetic information, marital status, national origin, parental status, pregnancy, race, religion, sex, sexual orientation, transgender status, veteran status or any other category protected by law.

Local employment practices and rights may vary by jurisdiction and are subject to applicable local laws. This commitment includes our efforts to provide for all those who seek to express interest in employment the opportunity to participate without barriers.

 

If you are a US job seeker unable to review the job opportunities herein, or cannot otherwise complete your expression of interest, without additional assistance and would like to discuss a request for reasonable accommodation, please contact our Global Recruiting organization at [email protected]. US job seekers can find more information about Unisys’ EEO commitment here.

Skills Required

  • 4–6 years of hands-on experience in a Security Operations Center, digital forensics, or incident response role
  • Practical experience with SIEM systems such as Splunk or Google SecOps
  • Experience with log analysis, security rule creation, and dashboard development
  • Strong knowledge of Endpoint Detection and Response systems and IDS/IPS
  • Proficiency in Python, PowerShell, or Bash scripting
  • Understanding of network security, protocols, and traffic analysis
  • Familiarity with threat intelligence platforms and MITRE ATT&CK
  • Exceptional analytical, critical-thinking, troubleshooting, and incident-investigation skills
  • Strong verbal and written communication skills
  • Experience with Google SecOps, Cribl, audit logs, and cloud-native detection tools
  • Hands-on Kubernetes incident response and forensic analysis experience
  • Familiarity with Detection-as-Code, Git or GitHub, and CI/CD pipelines
  • Relevant security certifications, including SANS, Offensive Security, or cloud security certifications

Unisys Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Unisys and has not been reviewed or approved by Unisys.

  • Fair & Transparent Compensation Fair & Transparent Compensation: Compensation terms at hire are often presented clearly and upfront, creating a straightforward “take it or leave it” expectation. Pay outcomes are also described as variable by role and geography, with some pockets viewed as satisfactory or above average.
  • Retirement Support Retirement Support: A 401(k) plan with an employer match is commonly described as part of the core package. The match is often characterized as a meaningful component of total rewards relative to other benefits.
  • Healthcare Strength Healthcare Strength: Core medical, dental, and vision coverage is described as available and broadly in line with a large IT-services employer. The underlying carrier network is sometimes viewed as solid even when cost concerns exist.

Unisys Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Blue Bell, PA
22,588 Employees
Year Founded: 1986

What We Do

Unisys is a global information technology company that builds high-performance, security-centric solutions for the most demanding businesses and governments on Earth. Unisys offerings include security software and services; digital transformation and workplace services; industry applications and services; and innovative software operating environments for high-intensity enterprise computing. We build better outcomes securely for our clients across the Government, Financial Services and Commercial

Similar Jobs

GitLab Logo GitLab

Senior Solutions Architect

Cloud • Security • Software • Cybersecurity • Automation
Easy Apply
In-Office or Remote
Bangalore, Bengaluru Urban, Karnataka, IND
2500 Employees

CSC Logo CSC

Accountant

Fintech • Legal Tech • Software • Financial Services • Cybersecurity • Data Privacy
Hybrid
Bangalore, Bengaluru Urban, Karnataka, IND
8500 Employees

Optum Logo Optum

Senior Data Engineer

Artificial Intelligence • Big Data • Healthtech • Information Technology • Machine Learning • Software • Analytics
In-Office
Bengaluru, Bengaluru Urban, Karnataka, IND
160000 Employees

Optum Logo Optum

Designer

Artificial Intelligence • Big Data • Healthtech • Information Technology • Machine Learning • Software • Analytics
In-Office
Bengaluru, Bengaluru Urban, Karnataka, IND
160000 Employees

Similar Companies Hiring

Standard Template Labs Thumbnail
Artificial Intelligence • Information Technology • Software
New York, NY
25 Employees
NODA AI Thumbnail
Artificial Intelligence • Information Technology • Software • Cybersecurity
Sydney, AU
54 Employees
Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account