Active listing
Lead SOC Analyst, Assistant Manager
About the role
Incident Response & Investigations team within KPMG Group Digital's Operational Security function builds and operates advanced SOC capabilities. The Lead SOC Analyst, Assistant Manager, drives complex incident triage, forensic analysis, threat hunting, and tooling automation while mentoring junior analysts. Bangalore, India, on-site, with occasional collaboration with the Gurgaon office.
What you’ll do
- Perform triage, investigation, containment and remediation of high‑severity incidents
- Act as senior technical escalation point and guide analysts during incidents
- Conduct forensic data collection and analysis across endpoints, network, cloud and identity sources
- Support detection rule tuning and threat‑hunting activities
- Contribute to SOC tooling improvements, automation and playbook development
- Document incident timelines, investigation notes and post‑incident summaries
What you’ll bring
- SOC incident response experience
- Strong understanding of attack techniques and MITRE ATT&CK
- Analyze alerts across SIEM, EDR, cloud and identity tools
- Scripting/automation with Python or PowerShell
- Familiarity with NIST CSF frameworks
Skills
Education
Graduation