Security Operations Engineer II (Employer of Record) in India at Jobgether
Explore Related Opportunities
Job Description
This position is posted by Jobgether on behalf of a partner company. We are currently looking for a Security Operations Engineer II (Employer of Record) in India.
This role sits at the heart of a globally distributed security engineering team, focused on protecting enterprise systems, users, and infrastructure through advanced detection, automation, and incident response capabilities. You will work closely with U.S.-based stakeholders to operate and enhance modern security tooling across SIEM, SOAR, EDR, and web security platforms. The position blends hands-on engineering with SecOps expertise, emphasizing automation, reliability, and continuous improvement. You will contribute to building scalable security systems that reduce risk, improve visibility, and strengthen threat detection across the organization. Operating in a fast-paced, cloud-driven environment, you will help evolve security operations through engineering excellence and proactive defense strategies. This is a high-impact role ideal for professionals who enjoy solving complex security challenges while working in a collaborative global setup.
In this role, you will operate and enhance enterprise security tools while building automation and engineering solutions to improve detection, response, and operational efficiency. You will contribute to securing systems by tuning SIEM/SOAR and EDR platforms, managing proxy and WAF policies, and supporting incident response across a 24/7 security operations environment. A key part of your work will involve developing scripts, APIs, and Infrastructure-as-Code solutions to streamline repetitive security tasks and improve consistency across environments.
- Operate, tune, and maintain security tools including SIEM, SOAR, EDR, WAF, proxy, and email security systems
- Build automation using Python, PowerShell, APIs, and SOAR playbooks to reduce manual effort
- Develop and maintain detection rules, improve alert quality, and reduce false positives
- Support incident detection, response, containment, eradication, and recovery processes
- Manage security policies including SSL inspection, identity-aware controls, and traffic filtering rules
- Maintain documentation, dashboards, runbooks, and security metrics (MTTR, uptime, coverage, etc.)
- Participate in on-call rotations and provide support for security tool availability and incidents
- Implement CI/CD and Infrastructure-as-Code practices for secure and auditable changes
The ideal candidate brings hands-on experience in cybersecurity, security operations, or SOC environments, along with strong scripting and automation capabilities. You should be comfortable working with security tools, analyzing logs and threats, and supporting incident response in a fast-paced environment. A solid understanding of network security fundamentals, detection engineering concepts, and modern attack techniques is essential.
- Bachelor’s degree in Computer Science, Information Systems, or related field (or equivalent experience)
- 2+ years of experience in cybersecurity, SOC, incident response, or security engineering roles
- Experience operating SIEM, SOAR, EDR, WAF, or proxy/security platforms
- Strong scripting skills in Python and/or PowerShell with API integration experience
- Familiarity with CI/CD pipelines, Git workflows, and Infrastructure-as-Code concepts
- Understanding of TLS/SSL, HTTP, network routing, and identity-aware security controls
- Knowledge of MITRE ATT&CK framework, Cyber Kill Chain, and common attack methodologies
- Strong analytical thinking, documentation discipline, and incident response skills
- Ability to work in rotating on-call schedules, including nights and weekends
- Competitive compensation package aligned with experience and expertise
- Performance-based bonus and additional allowances
- Employer-paid insurance and statutory benefits via EoR structure
- Remote-first setup with collaboration across global security teams
- Exposure to enterprise-scale security engineering and modern cloud environments
- Learning opportunities in automation, detection engineering, and advanced SecOps practices
- Career growth within a high-impact, globally distributed security organization