Associate SOC

Bengaluru, INFull-timePosted Aug 4, 2026

Company Description

Publicis Re:Sources is the backbone of Publicis Groupe, the world’s most valuable agency group. We are the only full-service, end-to-end shared service organization in the industry, enabling Groupe agencies to do what they do best: innovate and transform for their clients.

Formed in 1998 as a small team to service a few Publicis Groupe firms, Publicis Re:Sources has grown to 5,000+ employees in over 66 countries. We provide technology solutions and business services including finance, accounting, legal, benefits, procurement, tax, real estate, treasury and risk management.

We continually transform to keep pace with our ever-changing communications industry and thrive on a spirit of innovation felt around the globe. Learn more about Publicis Re:Sources and the Publicis Groupe agencies we support at.

Website 

https://www.publicisresources.com

Overview

Role Summary:

A SOC Security Analyst is responsible for monitoring, detecting, and responding to cybersecurity threats across enterprise environments. The role focuses on analyzing alerts from SIEM, EDR, and other security tools, performing initial incident investigations, and proactively hunting for potential threats. The analyst enhances security posture by developing and fine-tuning detection use cases, supporting incident response, and collaborating with cross-functional teams. Strong expertise in security operations, threat intelligence, and multi-platform environments (on-premise and cloud) is essential, along with the ability to produce clear documentation, reports, and actionable insights in a fast-paced environment.

Responsibilities

Key Responsibilities:

 

  • Security Monitoring & Alert Triage: Monitor, analyse, and triage security alerts and events from SIEM, EDR, IDS/IPS, firewalls, and other security solutions in a timely and efficient manner.
  • Incident Detection & Initial Analysis: Perform initial investigation and analysis of detected security incidents to determine scope, impact, and root cause across various environments, including operating systems (Windows, Linux), networks, databases, EDR consoles, and cloud infrastructure (AWS, Azure, GCP).
  • Threat Hunting & Proactive Detection: Proactively hunt for threats, anomalies, and indicators of compromise (IOCs) within the environment using advanced analytics, threat intelligence feeds, and various security tools to uncover stealthy attacks.
  • Use Case Creation & Fine-tuning: Develop, implement, and fine-tune security monitoring use cases, correlation rules, alerts, and dashboards within SIEM and other security platforms to enhance detection capabilities and reduce false positives.
  • Incident Coordination & Escalation: Act as a primary point of contact for incident escalation, coordinating with the Incident Response (IR) team and other stakeholders during active security incidents, providing detailed initial findings and analysis.
  • Reporting & Compliance Support: Generate comprehensive security reports, metrics, and incident summaries for management and security compliance purposes, contributing to audit requirements and overall security posture improvements.
  • Documentation & Knowledge Sharing: Create and maintain detailed documentation for security procedures, runbooks, incident handling guides, and knowledge base articles to ensure consistent operations and facilitate team knowledge transfer.
  • Cross-Functional Collaboration: Collaborate effectively with cross-functional teams, including IT Operations, Development, Network Engineering, and Security Compliance, to improve overall security hygiene.
  • Continuous Learning & Threat Intelligence: Stay current with the latest cybersecurity threats, attack techniques (e.g., MITRE ATT&CK), industry best practices, and security technologies through continuous learning, certifications, and consumption of threat intelligence.

Qualifications

Skillset & Qualifications:

 

  • 3-5 years of experience in a Security Operations Centre (SOC), Blue Team, or similar cybersecurity role.
  • Strong understanding of security principles, common attack vectors, and incident response methodologies.
  • Proficiency with SIEM platforms for log analysis, rule creation, and dashboarding.
  • Hands-on experience with EDR solutions for endpoint investigation and response.
  • Demonstrable experience monitoring and securing various technologies, including Windows/Linux OS, network devices (firewalls, IDS/IPS), databases, and cloud platforms (AWS, Azure, GCP security services).
  • Knowledge of network protocols (TCP/IP), cybersecurity frameworks (NIST, MITRE ATT&CK), and scripting languages (Python, PowerShell) is a plus.
  • Excellent analytical, problem-solving, and communication skills (written and verbal).
  • Ability to work independently and as part of a team in a fast-paced environment.

 

Personal Attributes

  • Strong and innovative approach to problem-solving and finding solutions
  • Excellent communicator (written and verbal, formal and informal)
  • Flexible and proactive/self-motivated working style with strong personal ownership of problem resolution
  • Ability to multitask and work independently with minimal supervision.
  • Ability to prioritise based on criticality.
  • Able to work with remote employees & teams to create highly effective documentation

 

Education

  • Full Time Bachelor’s / Master’s degree

 

Preferred Certifications

  • CEH | CompTIA Security + | AWS Security | CCSP | SSCP

Want jobs like this matched to you?

SimpleCareer scores fresh postings against your résumé so you only see the matches that matter.

Get started free