Location: Mohali, Punjab
Work Mode: On-Site Only (No Remote / No Hybrid)
Shift: Night Shift (Aligned to EST Time Zone)
About the Role
The Cyber Security Operations Triage Engineer (L0) plays a critical frontline role in our Security Operations Center (SOC). This position is responsible for initial event triage, alert validation, log analysis, and escalation to L1/L2 engineers. You will be the first point of contact in identifying potential threats, suspicious behavior's, and cybersecurity incidents across global customer environments.
This is an excellent opportunity for fresh graduates or early-career professionals looking to start their journey in cybersecurity while working in a high-energy, collaborative SOC environment.
Key Responsibilities
Security Monitoring & Triage
-
Perform initial triage of security alerts from SIEM, EDR, and other monitoring platforms.
-
Validate events for true/false positives, noise reduction, and alert enrichment.
-
Identify patterns that may indicate potential threats or misuse.
-
Escalate high-severity incidents to L1/L2 teams with complete details and evidence.
Cyber Operations Support
-
Monitor customer environments in real-time and ensure SLAs are met.
-
Document triage steps clearly in SOC ticketing systems.
-
Assist in threat intelligence correlation, basic IOC checks, and log review.
-
Support incident response workflows by gathering preliminary data.
-
Work alongside global SOC teams following Zero Trust and modern security principles.
Technical Understanding
-
Familiarity with Windows & Linux fundamentals, system logs, user authentication, and basic network concepts.
-
Ability to understand system events, user logins, application behaviours, and basic security configurations.
Communication & Reporting
-
Communicate clearly in English (spoken & written) with internal teams and shift leads.
-
Provide concise summaries of triaged alerts.
-
Participate in daily handovers and shift briefings.
Must-Have Qualifications
-
B.Tech / BCA / MCA or equivalent technical degree.
-
Microsoft or Cybersecurity Certification (e.g., SC-900, AZ-900, Security+, CEH—entry level accepted).
-
Good understanding of Linux & Windows operating systems.
-
Valid Passport (mandatory for background & security clearance).
-
Strong analytical mindset and eagerness to learn cybersecurity tools and workflows.
-
English proficiency is essential.
Work Environment & Requirements
-
This role is strictly in-office only. No remote or hybrid options.
-
Must be comfortable working night shifts aligned to EST timezone.
-
Willingness to follow SOC discipline, documentation standards, and escalation protocols.
-
Ability to perform under pressure and as part of a 24/7 global operations team.
Perks & Benefits
-
Uber pickups and drops for night shifts.
-
Health Insurance for employee + family coverage.
-
National team trips for collaboration and team-building.
-
Regular team collaboration events and knowledge-sharing sessions.
-
Festive bonus and performance-based incentives.
-
Opportunity to grow into L1 Analyst, Threat Intelligence, Cloud Security, or Incident Response roles.
-
Exposure to Microsoft Security Stack, SIEM operations, SOC processes, and global cybersecurity standards.