Birlasoft Limited

SOC - Sr Technical Lead-Cybersecurity

Birlasoft Limited Pune, Maharashtra, India

IT Services and IT Consulting · 10,001+ employees

13 h ago
security Senior (5-10 yrs) Full-time India
Log in to apply, save this posting, or score it against your profile with AI.

About the role

The candidate will manage and optimize Trend Micro security platforms while leading advanced incident investigation and response efforts. They will also mentor L1 analysts, tune detection rules, and provide detailed security reporting to stakeholders.

What they look for

Trend Micro Vision One Apex One Deep Security TMEMS SOC Operations Incident Investigation Threat Hunting XDR Root Cause Analysis Cybersecurity Zscaler Wiz CyberArk Vulnerability Management Incident Response Threat Intelligence

Requirements

The role requires hands-on experience with Trend Micro security solutions and a strong understanding of SOC operations. Candidates must be proficient in incident handling, threat hunting, and collaborating with cross-functional teams to maintain security posture.

Full description

Area(s) of responsibility

e are seeking a skilled and proactive L2 Security Analyst with hands-on experience in Trend Micro security solutions. The candidate will be responsible for managing and optimizing endpoint, email, and workload protection using Trend Micro Vision One, Apex One, Deep Security, and TMEMS. The role includes tool administration, threat analysis, and reporting to stakeholders, with a strong understanding of SOC operations. As an L2 SOC Analyst, you will be responsible for advanced incident investigation, containment, and response across a broad security technology stack. You will validate and respond to escalations from L1 analysts, optimize SOC processes, and serve as a technical escalation point. The role involves hands-on incident handling, detection rule optimization, and collaboration with cross-functional teams to strengthen the organization’s security posture. ________________________________________ Key Responsibilities

  • Administer and maintain Trend Micro Vision One, Apex One, Deep Security, and TMEMS platforms.
  • Monitor and respond to alerts, incidents, and threat intelligence from Trend Micro tools.
  • Perform policy configuration, tuning, and updates across endpoint, server, and email security platforms.
  • Conduct root cause analysis and threat hunting using Vision One’s XDR capabilities.
  • Deep-dive into incidents escalated from L1 to confirm true positives and execute containment/remediation actions (e.g., block malicious IPs, isolate endpoints, disable compromised accounts).
  • Lead playbook execution, enrichment, and automation of incident workflows.
  • Perform Root Cause Analysis (RCA) and escalate complex cases to L3 when necessary.
  • Provide remediation guidance to IT/business teams and support incident recovery.
  • Tune alerts and detection rules to reduce false positives and improve detection accuracy.
  • Generate and present detailed security reports, dashboards, and metrics to stakeholders.
  • Collaborate with SOC teams to support incident response, threat mitigation, and major IR activities.
  • Leverage tool-specific expertise (e.g., Zscaler, Wiz, CyberArk) for advanced incident handling.
  • Review vulnerability scan results and recommend remediation/mitigation steps.
  • Identify SOC workflow/process improvement opportunities and suggest enhancements.
  • Maintain detailed documentation for configurations, procedures, incident handling, and compliance-ready reporting.
  • Mentor and support the upskilling of L1 SOC Analysts.
  • Stay updated on emerging threats and Trend Micro product enhancements.

Similar roles