411,046open jobs
14,232companies
71,153added this week
Browse all
Salary
$18k – $25k per year
Location
In office (Bengaluru)
Seniority
Staff · 6+ years exp
Employment
Full-Time
Overview
Company
Impact
Profile match
Cyble is an AI-native cybersecurity and digital risk protection platform that delivers real-time threat intelligence and automated risk mitigation across the surface, deep, and dark web. Powered by its proprietary Blaze AI engine - which utilizes a dual-brain architecture combining live structured threat behavior graphs with semantic context embeddings - the platform continuously indexes over 350 billion threat data points from more than 1.4 million underground cybercrime sources, ransomware portals, and encrypted channels.

About the Role:

We are looking for a seasoned SOC Lead who can blend deep cybersecurity expertise with a forward-thinking approach to AI-driven detection and response. In this leadership role, you will be the linchpin between frontline analysts and executive stakeholders - driving operational excellence, championing AI/ML tooling, including Cyble's own intelligence platform, and ensuring threats are detected, triaged, and contained with speed and precision.

You will own the SOC's day-to-day operations while continuously elevating the team's capabilities through automation, threat intelligence, and a culture of continuous improvement.

What You'll Do At CYBLE:

Leadership & Operations

  • Lead, mentor, and develop a team of SOC analysts (Tier 1-3), fostering a high-performance security culture
  • Oversee 24×7 SOC operations, ensuring coverage, SLA adherence, and escalation procedures are consistently followed
  • Act as the primary point of escalation for complex or high-severity incidents
  • Conduct regular team reviews, shift handovers, and post-incident retrospectives

AI-Augmented Detection & Response

  • Champion the adoption of AI/ML tools for behavioural analytics, anomaly detection, and threat correlation - including Cyble's AI-powered threat intelligence platform
  • Leverage Cyble Vision and Cyble's dark web intelligence feeds to enrich detection use cases and proactively identify emerging threats
  • Integrate and tune AI-powered SIEM, SOAR, and EDR platforms to reduce false positives and improve detection fidelity
  • Develop and maintain AI-assisted playbooks for automated triage and initial response actions
  • Evaluate emerging AI security products and recommend adoptions aligned to the threat landscape
  • Monitor AI model performance and ensure explainability and auditability of automated decisions

Threat Detection & Triage

  • Oversee alert triage workflows, ensuring timely and accurate classification of security events
  • Develop and maintain detection rules, correlation logic, and use cases across SIEM and XDR platforms
  • Establish triage SLAs and quality benchmarks; regularly audit analyst triage accuracy
  • Leverage threat intelligence feeds to continuously refine detection coverage and reduce dwell time

Incident Response

  • Lead end-to-end incident response for critical and high-severity security incidents
  • Coordinate containment, eradication, and recovery activities in line with the IR framework
  • Produce clear, executive-level incident reports and root cause analyses (RCAs)
  • Conduct post-incident reviews and drive lessons-learned into process and detection improvements
  • Liaise with legal, compliance, and external stakeholders during significant breaches

Process Improvement & Reporting

  • Define and track key SOC metrics (MTTD, MTTR, false positive rates, coverage gaps)
  • Continuously refine and document SOC runbooks, playbooks, and standard operating procedures
  • Prepare regular reporting for CISO and board-level audiences on SOC posture and key incidents
  • Drive automation initiatives to improve analyst efficiency and reduce manual workload

What You’ll Need:

Experience

  • 4-6 years of progressive cybersecurity experience, with at least 2 years in a SOC leadership or senior analyst role
  • Proven hands-on experience with SIEM platforms (e.g., Splunk, Microsoft Sentinel, IBM QRadar)
  • Strong background in incident response, digital forensics, and threat hunting
  • Experience integrating or operating AI/ML-powered security tools (UEBA, NDR, AI-assisted SOAR)

Technical Skills

  • Deep understanding of attack frameworks: MITRE ATT&CK, Cyber Kill Chain, Diamond Model
  • Proficiency in network forensics, log analysis, and endpoint investigation techniques
  • Hands-on experience with SOAR platforms (e.g., Palo Alto XSOAR, Splunk SOAR, Microsoft Sentinel Playbooks)
  • Working knowledge of cloud security monitoring (AWS, Azure, GCP) and cloud-native threat detection
  • Scripting ability in Python, PowerShell, or KQL for automation and detection rule development
  • Familiarity with threat intelligence platforms

Soft Skills & Leadership

  • Exceptional communication skills - able to translate technical findings to non-technical executives
  • Strong analytical thinking and ability to make sound decisions under pressure
  • Proven ability to build, coach, and retain high-performing security teams
  • Collaborative mindset with cross-functional stakeholders, including IT, Legal, and Risk

BONUS POINTS IF YOU HAVE:

  • Industry certifications: CISSP, CISM, GCIA, GCIH, GDAT, CEH, Microsoft SC-200, or equivalent
  • Hands-on experience with Cyble Vision, Cyble CSPM, or equivalent AI-driven threat intelligence and attack surface management platforms
  • Prior experience in a regulated industry (BFSI, healthcare, critical infrastructure)
  • Familiarity with compliance frameworks: ISO 27001, NIST CSF, SOC 2, PCI-DSS
  • Exposure to red team / purple team engagements and adversary simulation exercises
  • Experience with deception technologies, honeypots, or active defence strategies
  • CV Shortlist by the Hiring Panel

  • Cognitive Assessment via a platform called Xobin - It’s a 50-minute assessment, which is a mandatory step in our recruitment process for all roles.

  • Panel Discussions - Typically a minimum of three rounds

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
411,046 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
Bengaluru
In office • 8+ years exp • PhD
Python
DevOps
Splunk
GCP
Dynatrace
Azure
AWS
Kubernetes
Self-Healing
Apply
$120k – $170k per year • Remote • 6+ years exp • Bachelor's Degree
Python
PowerShell
ABAP
ABAP
SAP BTP
Databases
SAP HANA
DevOps
Terraform
Ansible
GCP
Azure
AWS
Platform Engineering
Apply
$100k – $150k per year • Remote • 5+ years exp • PhD
Python
PowerShell
DevOps
Terraform
Azure DevOps
GitHub Actions
Azure
CI/CD
Kubernetes
Service Mesh
Bicep
Azure AKS
FinOps
GitHub
Cybersecurity
PCI DSS
SOC 2
HIPAA
FedRAMP
Apply
$100k – $150k per year • Remote • 6+ years exp • Bachelor's Degree
Python
Bash
DevOps
Terraform
Ansible
GCP
Red Hat
OpenShift
Helm
Istio
Linkerd
Azure
CI/CD
GitOps
ArgoCD
Jenkins
AWS
Kubernetes
Service Mesh
Tekton
Cybersecurity
PCI DSS
SOC 2
HIPAA
Apply
$76k – $110k per year • In office • Full-Time • Berlin
DevOps
Terraform
GCP
Azure
Git
AWS
Apply
$43k – $64k per year • In office • Full-Time • 3+ years exp • Bengaluru
C++
Assembly
YARA
C++
Protobuf
Assembly
WinDbg
Cybersecurity
YARA
Sysmon
Apply
$150k – $200k per year • Remote • Full-Time • 11+ years exp • London
Assembly
Apply
Sales Engineer - META 2 hours ago
$130k – $180k per year • Remote • Full-Time • 6+ years exp • Dubai
Apply
$50k – $65k per year • Remote • Full-Time • 6+ years exp
AI/ML
LLM
Anomaly Detection
Red Teaming
EU AI Act
NIST AI RMF
Cybersecurity
ISO 27001
MITRE ATT&CK
NIST CSF
Apply
$19k – $48k per year (Estimated) • In office • Full-Time • 3+ years exp • Bengaluru
Python
Cybersecurity
CVE
Apply
$11k – $25k per year (Estimated) • In office • Full-Time • 1+ year exp • Bachelor's Degree • Bengaluru
Python
JavaScript
Apply
Student Ops Intern 2 hours ago
$13k – $21k per year (Estimated) • In office • Internship • Bengaluru
Management
Google Sheets
Apply
$11k – $27k per year (Estimated) • In office • Internship • Bachelor's Degree • Bengaluru
AI/ML
ChatGPT
Apply
$20k – $43k per year (Estimated) • Remote • Bengaluru
DevOps
Azure
IAM
Cybersecurity
Okta
Least Privilege
Microsoft Entra ID
Apply
Staff Engineer 1 day ago
$34k – $77k per year (Estimated) • Remote • Bengaluru
JavaScript
TypeScript
SQL
C#
C#
ASP.NET Core
Databases
MySQL
PostgreSQL
AI/ML
Copilot
Claude
ChatGPT
Frontend
Angular
React.js
DevOps
Splunk
Terraform
GCP
CloudFormation
Datadog
GitLab CI
Azure
CI/CD
Git
AWS
Docker
Kubernetes
Service Mesh
Shift-Left
TeamCity
Octopus Deploy
Amazon EKS
AWS Lambda
Amazon EC2
GitHub
GitLab
Amazon S3
Amazon ECS
Amazon CloudWatch
Cybersecurity
Shift-Left Security
Apply
See all jobs
This is one of many
411,046 more open roles from verified company boards, updated every day.