1,452,517open jobs
86,380companies
224,635added this week
Browse all
Location
In office
Seniority
Senior · 1+ year exp

Confirmed on the employer's own hiring board on Oct 11, 2026. First seen by Alion on Oct 10, 2026.

Overview
Company
Impact
Profile match
HCLTech is a major Indian multinational information technology (IT) services and consulting company headquartered in Noida, Uttar Pradesh. Spun off from the original HCL Group in 1991, it ranks as one of India's largest technology companies alongside firms like TCS, Infosys, and Wipro.

Job Summary

Job Summary : Department: Security Operations Center (SOC) Experience Level: 1-3 Years Employment Type: Full-time Position Overview We are seeking a detail-oriented and proactive SOC Analyst with 1-3 years of hands-on security operations experience to join our team. In this role, you will serve as a core defender of our digital assets, utilizing Palo Alto Networks Cortex XSIAM to monitor, triage, investigate, and respond to security threats across our network, endpoints, cloud, and identity infrastructure. The ideal candidate understands modern threat landscapes, possesses strong analytical skills, and leverages automation and telemetry to reduce mean time to detect (MTTD) and mean time

Key Responsibilities

Job Responsibilities : 1. Incident Triage & Response

  • Monitor and analyze security alerts, events, and incidents within Palo Alto Cortex XSIAM across endpoint, network, cloud, and identity telemetry sources.
  • Conduct initial alert triage to differentiate between true positives and false positives, escalating complex threats when necessary.
  • Perform root cause analysis, risk assessment, and scope determination for verified security incidents.
  • Execute containment, mitigation, and remediation actions (e.g., endpoint isolation, user credential resets, IP blocking).
  • 2. XSIAM Operations & Analysis
  • Query and correlate security data across diverse data sources using Cortex Query Language (XQL).
  • Validate and maintain Cortex XDR agent health across enterprise endpoints.
  • Interact with automated SOAR playbooks to accelerate incident resolution and streamline repetitive tasks.
  • Leverage Attack Surface Management (ASM) and Identity Threat Detection & Response (ITDR) modules within XSIAM to identify vulnerabilities and identity risks.
  • 3. Threat Detection & Intelligence
  • Map observed adversary behaviors and indicators of compromise (IOCs) to the MITRE ATT&CK; framework.
  • Integrate threat intelligence feeds into detection workflows to proactively hunt for emerging cyber threats.
  • Assist senior analysts in fine-tuning detection rules and playbook workflows to minimize noise and improve response fidelity.
  • 4. Documentation & Collaboration
  • Maintain detailed incident logs, ticket updates, and post-incident reports with actionable mitigation recommendations.
  • Collaborate closely with IT Infrastructure, Cloud, Engineering, and DevOps teams during security incidents.

Skill Requirements

Skill Requirement : Core Experience & Certifications

  • 1 to 3 years of experience working in a Security Operations Center (SOC) or Incident Response environment.
  • Direct experience using Palo Alto Networks Cortex XSIAM or Cortex XDR.
  • Relevant industry certifications (at least one preferred):
  • Palo Alto Networks Certified XSIAM Analyst or PCDRA (Palo Alto Networks Certified Detection and Remediation Analyst)
  • CompTIA Security+, CySA+, or GIAC (GSEC/GCIH) Technical & Security Focus Skills
  • SIEM / XDR / SOAR: Understanding of log ingestion, correlation, alert grouping, and playbook execution within XSIAM.
  • Querying Languages: Hands-on ability to write and modify XQL (Cortex Query Language) or similar SIEM query languages (KQL, SPL).
  • Networking & Protocols: Solid grasp of TCP/IP, DNS, HTTP/S, VPNs, firewalls, and proxy architecture.
  • Operating Systems & Endpoints: Working knowledge of Windows (Registry, Event Logs), Linux, and macOS internal security mechanisms.
  • Attack Frameworks: Strong understanding of the MITRE ATT&CK; framework, Cyber Kill Chain, and common vector entry tactics (phishing, drive-by downloads, credential stuffing).
  • Identity & Cloud Security: Familiarity with Active Directory, Microsoft Entra ID (Azure AD), SSO, MFA, and general AWS/Azure security concepts.
  • Scripting (Plus): Basic proficiency in Python or PowerShell for basic automation and log parsing.

Other Requirements

Other Requirement : Soft Skills

  • Strong problem-solving and critical-thinking abilities under pressure.
  • Excellent clear verbal and written technical reporting skills.
  • Ability to work effectively in shift/rotational monitoring operational environments. Preferred / Nice-to-Have Skills
  • Experience with Palo Alto Next-Generation Firewalls (NGFW) or Prisma Cloud integrations.
  • Experience participating in basic threat hunting or tabletop incident response exercises.
  • Exposure to forensic artifact collection (memory dumps, PCAP analysis).
Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
1,452,517 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Industrial Engineering
Similar stack
Same company
In your city
$124k – $207k per year • Equity • In office • 6+ years exp • Bachelor's Degree • Calabasas
Design
SolidWorks
Apply
≈ $43k – $89k per year (Estimated) • In office • Almelo
Apply
≈ $92k – $173k per year (Estimated) • In office • 5+ years exp • Bachelor's Degree • Austin
Chips/EDA
Cadence Allegro
OrCAD
Apply
$111k – $148k per year • Equity • In office • 5+ years exp • Bachelor's Degree • Santa Clara
Apply
≈ $95k – $179k per year (Estimated) • In office • Bachelor's Degree • Ghent
Chips/EDA
Cadence Allegro
Keysight ADS
Management
Agile
Apply
≈ $123k – $226k per year (Estimated) • In office • Full-Time • 5+ years exp • Bachelor's Degree • Sunnyvale
Python
JavaScript
Java
Node JS
Databases
Apache Kafka
Google BigQuery
BigQuery
AI/ML
AI Agents
Kubeflow
Flink
TensorFlow
Frontend
GraphQL
React.js
DevOps
GCP
AWS
Analytics
A/B Testing
Apply
In office • Full-Time • 3+ years exp • Bachelor's Degree • India
Python
TypeScript
SQL
AI/ML
LangGraph
AutoGen
LangChain
Embeddings
Prompt Engineering
AI Agents
AgentOps
CrewAI
RAG
AWS Bedrock AgentCore
Machine Learning
DevOps
OpenTelemetry
AWS
Grafana
AWS Lambda
Amazon S3
Amazon CloudWatch
API Gateway
Management
Agile
Apply
VDC Engineer 10 hours ago
$80k per year • In office • 5+ years exp • Bachelor's Degree • New York
Python
Robotics
SLAM
Design
AutoCAD
Apply
GTM Engineer 11 hours ago
In office • Full-Time • San Francisco • New York
Python
TypeScript
SQL
AI/ML
Claude Code
AI Agents
Analytics
A/B Testing
Management
n8n
Zapier
Marketing
GA4
Apply
In office • Internship • San Jose
Python
SQL
Databases
PostgreSQL
Apache Kafka
AI/ML
Fine-tuning
AI Agents
Flink
Transformers
PyTorch
LLM Guardrails
Machine Learning
Apply
In office
DevOps
SLI/SLO/SLA
Apply
Process Manager 1 day ago
In office • 7+ years exp • Bachelor's Degree
Apply
In office • Master's Degree
AI/ML
Claude
Gemini
DevOps
CI/CD
Management
Slack
Jira
Agile
Scrum
Apply
In office
Apply
In office
Python
PowerShell
Apply
See all jobs
This is one of many
1,452,517 more open roles from verified company boards, updated every day.