Job Description – Information Security Analyst (Defensive Security)
Location:
Thane, Maharashtra, India (On-site)
Employment Type:
Third-Party Payroll
Location - Thane
Client- Aditya Birla Group
Role summary
We are seeking a hands-on SOC Infra Security Engineer to operate, maintain, govern perimeter and endpoint security technologies (NGFW, EDR, DLP, Secure Proxy, VPN, IPS/IDS and policy automation). This is an operational role you will drive day-to-day activities, tune controls, enforce policies, support incident response, and work under the direction of the SOC Infra Security manager to ensure stable and secure service delivery.
Key responsibilities
-
Operate and monitor perimeter and endpoint security tools (NGFW, EDR, DLP, Secure Proxy, VPN, IPS/IDS).
-
Implement and validate routine firewall/NGFW rule changes and access requests following change governance.
-
Support periodic audits and compliance requests by providing logs, reports and evidence of controls.
-
Perform periodic rule reviews and housekeeping to remove obsolete or risky rules (under guidance).
-
Tune EDR/DLP/IPS detections to reduce false positives and improve signal-to-noise.
-
Ability to present updates and respond to business queries during weekly and monthly review calls with stakeholders and management.
-
Maintain and operate security policy automation/configuration management tools (apply templates, run validations, assist in automation workflows).
-
Maintain runbooks, standard operating procedures (SOPs), and accurate configuration documentation.
-
Coordinate with network, cloud and vendor teams for troubleshooting, deployments, and capacity or outage escalations.
-
Participate in patching/upgrade activities for security appliances and validate postpatch functionality.
-
Assist in PoC of new security features and capture functional feedback.
-
Participate in on-call rotation and provide timely updates during incidents.
-
Provide guidance to junior operators and share knowledge on tooling and playbooks.
Qualifications
-
Bachelor’s degree in Computer Science, Information Technology, or related field.
-
Security certifications preferred:
CISSP, CISM, CEH, CCNA Security, or equivalent
.
Good to Have
-
Exposure to
cloud security
(AWS/Azure security controls).
-
Familiarity with
data security solutions
and
web security platforms
.
-
Experience working with
global SOC operations
.