-
Role :Cyber Security Professional (SOC / red teaming)
Location: Hitech City , Hyderabad
Work from Office
Experience : 3 – 5 years
Role summary
Support and run daily staffing and operations for the cyber security function, ensuring the team meets the KRAs/KPIs for security monitoring, vulnerability management, endpoint/network protection, compliance, DR, tools, and awareness. You will coordinate hiring, rostering, vendor and bench management, capacity planning, SLA tracking, and operational reporting to ensure the SOC and security programs meet business SLAs and audit requirements.
Key responsibilities
- Staffing & capacity planning: Plan resource requirements for SOC, vulnerability, patching, incident response, and other security functions; maintain bench lists, manage contractor/vendor onboarding, and forecast hiring needs.
- Rostering & shift management: Create and manage shift schedules, handle shift swaps, ensure 24x7 coverage where required, and track on-call rosters and overtime.
- SLA & performance tracking: Track operational KPIs such as MTTD, MTTR, alerts analyzed per month, false-positive reduction, incident resolution within SLA, patch timelines, and vulnerability remediation rates; escalate when SLAs are at risk.
- Recruitment & onboarding: Work with HR/recruiters to source, screen, and onboard cyber security resources (SOC analysts, vulnerability specialists, endpoint engineers); ensure role-specific training and access provisioning are completed on time.
- Vendor & tools coordination: Manage relationships with security tool vendors and managed service providers, coordinate tool upgrades/optimizations, ensure tool uptime and reduce alert delays.
- Compliance & audit support: Coordinate evidence collection and schedules for internal and external audits (ISO 27001, GDPR, etc.), track closure of audit findings, and maintain documentation required by auditors.
- Reporting & dashboards: Maintain and publish weekly/monthly dashboards for security operations, vulnerabilities, patch status, backup/DR drill outcomes, and access review completion.
- Incident coordination support: Assist incident response by mobilizing required staff, ensuring incident logs/documentation are captured, and helping measure MTTD/MTTR and post-incident action items.
- Process & continuous improvement: Maintain SOPs, contribute to process improvements, support cyber drills/workshops, and track staff certifications and training completion.
Success metrics (how the role will be measured)
- % of shifts fully staffed and coverage SLAs met.
- Time-to-fill for critical security roles (target agreed with HR).
- % of user access reviews completed on time and timely deactivation of resigned accounts.
- MTTD and MTTR trends stable or improving; % of critical incidents resolved within SLA.
- % of vulnerabilities remediated within defined timelines and number of VAPT assessments completed per quarter.
- Patch deployment timeliness and reduction in high-risk exposure areas.
- Tool uptime and reduction in alert response delays.
- Audit compliance score and closure rate of audit findings.
- Training completion rate and staff certification count per year.
Required qualifications
- Bachelor’s degree in Computer Science, IT, Information Security, or equivalent.
- 3–6 years experience in IT operations, staffing or security operations support; experience supporting SOC, vulnerability management, or incident response preferred.
- Familiarity with security frameworks (ISO 27001, NIST), regulatory requirements (GDPR/HIPAA) and audit documentation practices.
- Experience with workforce management, rostering tools, and capacity planning.
Skills and competencies
- Operational coordination: strong scheduling, prioritization, and vendor management skills.
- Communication: clear written and verbal communication for cross-functional stakeholder updates and audit evidence coordination.
- Analytical: comfortable tracking KPIs and producing dashboards/reports for leadership.
- Detail-oriented: accurate documentation of incidents, audits, and process changes.
- Familiarity with security tooling (SIEM, EDR, vulnerability scanners) and SOC workflows is desirable.
Preferred certifications
- ITIL Foundation or equivalent (for operations/process).
- Certifications such as CompTIA Security+, CEH, or CISSP (any) are a plus but not mandatory.
Reporting & stakeholders
- Reports to: Head — Security Operations / Assistant Operations.
- Key stakeholders: SOC Leads, Incident Response, Vulnerability Management, IT/Network, DevOps, HR, external vendors, and auditors.
Working conditions & location
- Location: Hyderabad (Madhapur) with flexibility for shift work and on-call rotations; occasional travel for audits or vendor meetings as required.
Pay: ₹100,000.00 - ₹500,000.00 per year
Work Location: In person