
Senior Security Operations Center Engineer
- Bangalore, Karnataka
- Permanent
- Full-time
- Support the execution of Scopely's security operations strategy, including daily monitoring and analysis of security events
- Manage and triage security alerts, reduce false positives, and continuously fine-tune detection rules, playbooks, and use cases
- Participate in the coordination, escalation, and resolution of security incidents in collaboration with internal stakeholders and external partners
- Perform security investigations from escalated alerts, threat hunting, or reports
- Perform digital forensics applied to incident response, to support case investigations
- Conduct network scans to identify vulnerabilities across internal and perimeter environments, and monitor for signs of exploitation or misconfiguration
- Contribute to vulnerability and patch management efforts by tracking open issues, validating remediations, and supporting mitigation activities
- Participate in proof-of-concept (PoC), proof-of-value (PoV), and project initiatives aimed at enhancing SOC tools, workflows, and detection capabilities
- Maintain SOC tools and platforms in an up-to-date and operationally ready state
- Document security investigations and incidents, including lessons learned / post-mortem analysis, and team processes. Contribute to the development and refinement of incident response playbooks and knowledge base articles
- Assist with the creation and delivery of security operations performance reports using predefined KPIs, including both operational metrics and risk indicators
- Foster strong relationships with business units, development teams, and external security vendors to align security operations with broader organizational goals
- Provide on-call support as part of a rotating schedule to ensure 24/7 incident readiness
- Bachelor's degree in Information Security, Computer Science, or a related field. Equivalent practical experience will also be considered
- 5+ years of experience in a security operations or similar role, with proven exposure to incident detection, investigation, and response
- Strong understanding of core security topics, including incident response, threat hunting, threat intelligence, malware analysis, advanced persistent threats (APT), forensic analysis, and vulnerability management
- Solid knowledge of security frameworks and standards such as NIST Cybersecurity Framework (CSF), MITRE ATT&CK, Cyber Kill Chain, and ISO/IEC 27001/27002, as well as familiarity with relevant international regulations and compliance requirements
- Proficiency with Security Information and Event Management (SIEM) platforms, including experience deploying, configuring, and optimizing tools
- Hands-on experience with Managed Detection and Response (MDR), Endpoint Detection and Response (EDR), and Cloud Security Posture Management (CSPM) tools
- Experience working with open-source and commercial Security Orchestration, Automation, and Response (SOAR) platforms
- Familiarity with network and vulnerability scanning tools
- Strong practical experience in multi-cloud environments, including cloud-native security tooling
- Strong collaboration skills and ability to work effectively within a team environment; capable of following procedures and escalating issues appropriately
- Excellent verbal and written communication skills with the ability to convey complex security topics to both technical and non-technical audiences
- Security certifications such as CISSP, CEH, GSOC, GCIH, or equivalent are highly desirable.
- Development and/or scripting experience (e.g., Python, Bash, PowerShell)