Security Operations Center Engineer
About the Role
The Infosys Insurance unit is dedicated to transforming the insurance industry through innovative digital solutions powered by advanced AI technologies. We blend our industry-leading expertise in consulting and technology to help clients solve complex business problems and unveil hidden value. By integrating AI-driven insights, we enhance our ability to link strategy to execution, leverage cross-industry experience, and accelerate speed to market, ensuring we stay ahead of technological advancements and deliver the best to our clients. Join us to be part of a dynamic team that drives innovation, operational efficiency, and sustainable growth in the insurance sector. You'll have the opportunity to work with cutting-edge AI technologies, collaborate with industry experts, and contribute to transformative projects that shape the future of insurance.
Responsibilities
- Contribute to the requirements elicitation process by documenting assigned parts of business requirements, in line with guidance provided
- Facilitate software application design discussions, and document design decisions to guide the technical team towards building software solutions
- Participate in coding and integrate new features or updates into existing applications, with a focus on maintaining system stability
- Conduct code reviews, do changes to the codebase and maintain code repositories
- Implement test strategies, analyse results, and coordinate bug fixes to uphold the software quality standards
- Develop user training programs, documentation, and support frameworks to ensure a smooth transition to new software applications
- Actively participate in resolving production issues and recommend preventive strategies to enhance system reliability
- Maintain detailed records of code, testing techniques, and support activities to enrich the knowledge base and assist other similar projects
Qualifications
- Bachelor's degree or foreign equivalent required from an accredited institution. Will also consider three years of progressive experience in the specialty in lieu of every year of education
- This position may require relocation and/or travel to work/project location
- Candidates authorized to work for any employer in the United States without employer-based visa sponsorship are welcome to apply. Infosys is unable to provide immigration sponsorship for this role now or in the future
Required Skills
- Perform in-depth analysis and investigation of security alerts using CrowdStrike (NGSIEM/EDR), Exabeam (SIEM/UEBA), WIZ, and Proofpoint
- Analyze and validate UEBA anomalies and behavioral threats to determine risk and drive appropriate response actions
- Support incident response activities for medium to high severity incidents, ensuring timely containment and remediation
- Assist in root cause analysis (RCA) and document findings from security incidents
- Tune and optimize SIEM rules, detection logic, and alert thresholds to reduce false positives and enhance detection accuracy
- Identify detection gaps and contribute to basic threat hunting and use case development
- Participate in incident bridge calls and coordinate with internal teams during active incidents
- Collaborate with SOC, Incident Response, Threat Intelligence, Cloud, IAM, and Infrastructure teams
- Provide clear and concise updates to stakeholders and maintain accurate incident documentation
- Maintain and update runbooks, playbooks, and knowledge base articles
- Stay current on emerging threats and attacker techniques aligned to MITRE ATT&CK framework
- Demonstrates sound judgment in escalating and responding to incidents
- Communicates effectively with technical teams and stakeholders
Preferred Skills
- SOC, Incident Response, or Threat Hunting with proven experience handling critical/major incidents independently
- Hands-on expertise with: CrowdStrike (EDR/NGSIEM), Exabeam SIEM/UEBA, Wiz (Cloud Security), DAM and Proofpoint
- Solid understanding of incident response lifecycle, threat detection, and MITRE ATT&CK framework
- Log analysis, SIEM query development, and detection/rule tuning
- Excellent client communication, reporting, and cross-team collaboration (onshore-offshore)
- Strong analytical mindset, ownership, and ability to work under pressure with on-call flexibility and availability as or when need
Benefits
- Medical/Dental/Vision/Life Insurance
- Long-term/Short-term Disability
- Health and Dependent Care Reimbursement Accounts
- Insurance (Accident, Critical Illness, Hospital Indemnity, Legal)
- 401(k) plan and contributions dependent on salary level
- Paid holidays plus Paid Time Off