SonicWall is a cybersecurity forerunner with more than 30 years of expertise and is recognized as a leading partner-first company, ensuring our partners and their customers are never alone in the fight against cybercrime. With the ability to build, scale and manage security across the cloud, hybrid and traditional environments in real-time, SonicWall provides relentless security against the most evasive cyberattacks across endless exposure points for increasingly remote, mobile and cloud-enabled users. With its own threat research center, SonicWall can quickly and economically provide purpose-built security solutions to enable any organization—enterprise, government agencies and SMBs—around the world. For more information, visit www.sonicwall.com or follow us on Twitter , LinkedIn , Facebook and Instagram . Role: Staff NOC Analyst (5 - 8 years) Location: Bangalore (24/7 Shift Environment) Role Summary We are looking for a Cloud Operations & Staff NOC Analyst who will act as the first line of operational defense for enterprise infrastructure, cloud platforms, and applications. This role requires strong real-time monitoring, incident response, and troubleshooting capabilities, along with a proactive mindset toward improving operational processes and reducing alert noise. Key Responsibilities Monitoring & Incident Management Monitor infrastructure, applications, and cloud platforms using tools such as New Relic, Datadog, Prometheus/Grafana, AWS CloudWatch, or GCP Monitoring Perform real-time alert triage, validation, and troubleshooting to restore services quickly Act as the first responder for incidents , ensuring minimal downtime and impact Identify false positives and reduce alert noise through analysis and tuning Incident Handling & Escalation Own and manage high-priority incidents (P1/P2), including: Driving incident bridges Coordinating with cross-functional
Jobs in India
Incident Response Analyst in India
15 active opportunities · Updated September 2026
Showing
15 jobs
Explore current incident response analyst jobs across India. Filter by work mode, employment type, experience, department, date posted and distance.
Are you looking for an opportunity to help solve one of today's biggest business challenges? AI is changing the pace of business, and organizations everywhere are struggling to help their workforce, partners, and customers keep up. At Litmos, we're building the Learning Acceleration Platform that helps organizations build human capability faster—and we're looking for people who are passionate about making a meaningful impact for customers while growing alongside a collaborative, people-first team. Litmos is the Learning Acceleration Platform that helps organizations build capability faster, adapt at the speed business changes, and scale learning to anyone, anywhere. Combining an intuitive platform, AI-powered capabilities, trusted content, expert services, and a broad ecosystem of integrations, Litmos helps organizations accelerate workforce productivity, improve customer adoption and retention, enable high-performing partners, and reduce organizational risk through continuous learning. Organizations such as Hewlett Packard Enterprise, Graco, Sabre, and Russell Mineral Equipment trust Litmos to accelerate learning across their workforce, partners, and customers. Today, more than 11K customers with 30 million learners across 150 countries and 37 languages use Litmos to build the capabilities their organizations need to succeed. Backed by Francisco Partners, one of the world's leading technology investment firms, we're investing in the future of learning—and the people who are building it. Learn more at www.litmos.com . About the Role We are looking for a senior, self-directed SOC Analyst to join our lean global security operations team based in Pune. As the sole security operations resource during non-US business hours, you will own the full spectrum of alert triage, incident investigation, and response for your shift. This role requires someone who can function as both an L2 investigator and an L3 responder depending on the situation, without rel
Role Summary We are seeking an experienced SOC / Security Operations Lead to oversee and strengthen the organization's Security Operations Center (SOC), threat detection, incident response, vulnerability management, data protection, and security monitoring capabilities. The ideal candidate will possess extensive experience in managing enterprise security operations, SIEM/SOAR platforms, threat hunting, incident response, DLP, endpoint security, and vulnerability management programs. The role requires leadership of a multi-functional security operations team responsible for protecting critical business systems, customer data, and digital assets while ensuring compliance with RBI regulations and industry security standards. Key Responsibilities Security Operations Center (SOC) Management -Lead and manage 24x7 Security Operations Center (SOC) functions. -Establish and enhance SOC processes, playbooks, escalation procedures, and operational metrics. -Ensure timely detection, triage, investigation, containment, and remediation of security incidents. -Develop SOC maturity roadmaps aligned with industry best practices and regulatory expectations. -Monitor security KPIs, SLAs, MTTR, MTTD, and incident response effectiveness. SIEM, XSIAM & Threat Detection -Lead implementation, administration, and optimization of: -Palo Alto Cortex XSIAM -SIEM Platforms -SOAR Platforms -UEBA Solutions -Threat Intelligence Platforms -Develop and tune correlation rules, detection logic, and analytics use cases. -Enhance detection coverage across cloud, endpoints, applications, networks, and third-party environments. -Drive threat hunting and proactive security monitoring initiatives. Incident Response & Threat Management -Lead enterprise cyber incident response activities. -Develop and maintain incident response plans, runbooks, and communication procedures. -Coordinate investigations involving malware, ransomware, phishing, insider threats, account compromise, fraud, and adv
We are a global team of innovators and pioneers dedicated to shaping the future of observability. At New Relic, we build an intelligent platform that empowers companies to thrive in an AI-first world by giving them unparalleled insight into their complex systems. As we continue to expand our global footprint, we're looking for passionate people to join our mission. If you're ready to help the world's best companies optimize their digital applications, we invite you to explore a career with us! Your opportunity AI is a top strategic priority for New Relic, and the Bengaluru design team is at the center of it. The team works across three closely related product clusters: autonomous incident response (SRE Agent, Autopilot, and Intelligent RCA), the intelligence and platform layer that powers them (Ground Truth, Agentic Platform, and New Relic AI), and AIOps for event correlation and incident management. These products share a common design challenge: users need to trust systems that act autonomously, and building that trust through good design is genuinely hard work. This is an on-site role in Bengaluru. Your designers are there, and many of your engineering and product partners are too. Being present — in standups, reviews, and the quick conversations before a decision gets made — is part of how you'll build the relationships that make design effective. You'll also collaborate with design, product, and engineering partners in the US and Spain, so operating across time zones and communicating well in writing are part of the job. You'll manage a small team of designers and own the quality of the work across these products. The design questions here don't have established answers — how do you make an autonomous system legible? How do you build user trust in AI-generated root cause analysis? How do you design a handoff from machine decision to human judgment? If you're already working in AI product design, or actively building toward it, and you want to lead a team
Who are we? FalconX is a pioneering team of operators, investors, and builders committed to revolutionizing institutional access to the crypto markets. Operating at the intersection of traditional finance and cutting-edge technology, FalconX addresses the industry's foremost challenges: Navigating the digital asset market can be complex and fragmented, with limited products and services that support trading strategies, structures, and liquidity found in conventional financial markets. As a comprehensive solution for all digital asset strategies from start to scale, FalconX operates as the connective tissue empowering clients with seamless navigation through the ever- evolving cryptocurrency landscape. Responsibilities Be part of a trading systems engineering team, dedicated to building out the core trading platforms. Work closely with cross functional teams to improve the system reliability, scalability and security. Engage in and improve the quality supporting the platform. Build and manage systems, infrastructure and applications through automation. Provide operational support to internal teams working on the platform. Work on improvements to bring in high efficiency, reduce latency, deploy systems faster. Practice sustainable incident response and blameless postmortems. Together with your engineering team, you will share an on-call rotation and be an escalation contact for service incidents. Implement and maintain rigorous security best practices across all infrastructure, with a focus on minimizing attack surface and ensuring data integrity. Monitor system health and performance with a keen eye for identifying and resolving issues before they affect trading activity. Manage user queries and service requests (often requiring in depth analysis of the technical and/or business logic of our systems). Proactive approach to problem analysis and resolution of production incidents. Manage Issue tracking and prioritisation of day to day production incidents. Manage platf
About the Role We are seeking an experienced Azure DevOps Engineer to design, implement, and maintain CI/CD pipelines, cloud infrastructure, and automation solutions on Microsoft Azure. This role bridges development and operations, ensuring reliable, secure, and scalable delivery of applications and infrastructure. Location: Hyderabad-India-Onsite Duration: Fulltime Responsibilities Design, build, and maintain CI/CD pipelines using Azure DevOps (Pipelines, Repos, Artifacts, Boards) Architect and manage Azure cloud infrastructure using Infrastructure as Code (ARM templates, Bicep, or Terraform) Automate build, test, and deployment processes across multiple environments Implement and manage containerization and orchestration (Docker, Azure Kubernetes Service) Monitor system performance, availability, and security using Azure Monitor, Log Analytics, and Application Insights Collaborate with development, QA, and security teams to streamline release management Implement Azure security best practices, identity management (Azure AD/Entra ID), and network architecture Manage cost optimization and governance across Azure subscriptions Troubleshoot production issues and support incident response Document infrastructure, pipelines, and operational procedures Required Qualifications Microsoft Certified: Azure Solutions Architect Expert, Azure Administrator Associate (required) 3+ years of hands-on experience with Azure DevOps and Azure cloud services Strong experience with Infrastructure as Code (Bicep, ARM templates, or Terraform) Proficiency scripting in PowerShell, Bash, or Python Experience with Git version control and branching strategies Solid understanding of networking, security, and identity concepts in Azure Experience with containerization (Docker) and orchestration (Kubernetes/AKS) Familiarity with monitoring and logging tools (Azure Monitor, Application Insights) Preferred Qualifications Additional certifications: Azure DevOps Engineer Expert Experience with multi-
NVIDIA pioneers computer graphics, gaming, AI, and accelerated computing. We are looking for a Technical Platform Operations Lead to join our team and play an important role in scaling Sales AI applications and platforms. This position offers the opportunity to shape how these solutions operate after launch and help ensure they remain reliable, secure, well governed, widely adopted, and continuously improved. You will collaborate with Sales, Product, Engineering, Data, Security, and IT teams to strengthen platform health, improve the user experience, and increase business impact. What you’ll be doing: Lead end-to-end post-launch operations for Sales AI applications, including availability, performance, support readiness, releases, upgrades, and lifecycle planning. Develop effective processes for incident response, problem management, changes, and issue resolution. Coordinate timely recovery and lasting improvements. Analyze service-level indicators and objectives, adoption metrics, dashboards, alerts, and user feedback to identify risks, performance degradation, and usage gaps. Collaborate with partner teams to translate operational signals and user needs into prioritized improvements and roadmap inputs. Improve adoption and business value through usage analytics, enablement, feedback loops, and user experience enhancements. Establish governance practices for security, access controls, compliance, documentation, and platform support. Develop automation, observability, and self-service capabilities that simplify operations and reduce repetitive work and recurring incidents. Prepare new AI capabilities and releases for production with runbooks, monitoring, rollback plans, support models, and partner enablement. What we need to see: 8+ years of experience in technical operations, pl
About Ema Ema is building the world’s leading Agentic AI platform to transform enterprise productivity. We enable organizations to delegate repetitive tasks to Ema, the Universal AI Employee, delivering 10x gains in workforce efficiency, across functions. Founded by former executives from Google, Coinbase, Flipkart, and Okta, our team includes engineers from premier tech companies and graduates of Stanford, MIT, UC Berkeley, CMU, and IITs. We are backed by industry leading investors including Accel, Naspers/Prosus, Section32, and angels like Sheryl Sandberg and Dustin Moskovitz. Headquartered in Silicon Valley and with offices in London, Bangalore and Vancouver, Ema is at the frontier of what Agentic AI can do in production — we ship real systems that run real business processes at scale. About the Role As a Site Reliability Engineer at Ema, you will own the stability, availability, and operational health of our agentic AI platform across customer environments. You'll work closely with Engineering and DevOps to provision infrastructure, drive deployment excellence, and keep production running at the quality bar our enterprise customers expect — 99.9%+ uptime, proactive incident response, and continuous improvement. What You'll Do Infrastructure & Deployment Design and provision cloud infrastructure (GCP, Azure, AWS) tailored to customer environments, with security, scalability, and compliance built in Execute on-call SaaS deployments with minimal downtime; automate and optimize deployment workflows end-to-end Production Stability & Observability Monitor logs, alerts, and metrics to maintain SLA commitments and catch issues before they escalate Diagnose and resolve production incidents with speed and rigor; drive root cause analysis and permanent fixes Collaborate with DevOps to enhance monitoring dashboards and alerting frameworks; deliver clear system health reporting to internal and customer stakeholders Documentation & Knowledge Management Maintain de
About Hexnode Hexnode is a global leader in Unified Endpoint Management (UEM), trusted by over 100 countries and managing millions of devices worldwide. With a rapid pace of innovation, we have established ourselves as a dominant force across Apple, Windows, Android, macOS, Linux, and tvOS. Fuelling the transformation to a seamless ecosystem of connected tools, Hexnode is revolutionizing the enterprise software and cybersecurity landscape. Job Overview: In this role, you will not just oversee ticket resolution; you will lead the evolution of our support culture by implementing the Technology Acceptance Model (TAM) to ensure long-term product adoption and client success. As a linchpin of our 24/7 global operations, you will manage critical handovers and ensure our response times remain industry leading. Responsibilities: · Manage and mentor a shift of Technical Support Engineers, fostering a high-performance environment focused on technical growth and empathy. · Oversee the Shift Handover process to the incoming Lead, ensuring zero data loss and continuity of service for all high-priority issues. · Guarantee that all incoming tickets are triaged and dispatched within defined response times to meet and exceed global SLAs. · Conduct deep-dive analysis of incident patterns to identify root causes and provide strategic suggestions for incident management improvements. · Partner with Engineering and Product teams to function as the "Voice of the Customer," ensuring technical feedback directly influences the product roadmap. · Stay at the forefront of UEM trends and provide advanced training sessions for both high-value clients and internal technical stakeholders. Requirements: · 10+ years of total technical support experience, with at least 4–5 years in a formal leadership or supervisory role, preferably within a SaaS environment. · Mandatory, deep-seated expertise in Unified Endpoint Management (UEM) and its ecosystem. · Advanced Technical Exposure: Direct experie
A CAREER WITH POINT72’S TECHNOLOGY TEAM As Point72 reimagines the future of investing, our Technology group is constantly improving our company’s IT infrastructure, positioning us at the forefront of a rapidly evolving technology landscape. We’re a team of experts experimenting, discovering new ways to harness the power of open-source solutions, and embracing enterprise agile methodology. We encourage professional development to ensure you bring innovative ideas to our products while satisfying your own intellectual curiosity. WHAT YOU’LL DO Monitor, triage, and assess incidents across global markets and technology platforms, validating severity, business impact, and escalation requirements. Act as command-and-control lead for major incidents, driving structured response, rapid restoration, and informed decision-making. Coordinate recovery efforts across L1/L2/L3 support teams, engineering, infrastructure, and third-party vendors to minimize business disruption. Lead internal and external stakeholder communications, including senior leadership, during incidents and service disruptions. Trigger and govern disaster recovery (DR) failover in line with predefined criteria, controls, and governance standards. Ensure accurate, timely, and audit-ready incident documentation, including detailed timelines, evidence, and impact analysis. Facilitate post-incident reviews (RCA/post-mortems), ensure root causes are clearly identified, and track corrective and preventative actions to closure. Govern end-to-end change management, including change risk assessment, CAB facilitation, approval workflows, maintenance windows, and change-related incident management. Drive continuous improvement in incident, change, and event management processes through automation, standardization, and improved tooling and alert quality. Partner with engineering and operations teams to design scalable, resilient processes, promote best practices, and enhance operational matur
The IR Manager will work closely with the SOC team and report directly to the Head of Cybersecurity Operations. This role is responsible for managing the lifecycle of security incidents, ensuring investigation, response, and recovery, while driving continuous improvements in incident response processes and playbooks. Source: Adani Group | Job ID: 55724
$30K – $35K/yr
SPECIFIC JOB RESPONSIBILITIES Defensive Operations (SecOps): Design and automate the Security Incident Response (SIR) and Vulnerability Response (VR) lifecycles. Build playbooks in Flow Designer to automate threat containment and remediation. Offensive Operations: Develop custom scoped applications to track penetration testing results, manage red-team engagement lifecycles, and automate the ingestion of reconnaissance data. Compliance & GRC: Configure and customize Integrated Risk Management (IRM) modules to map technical controls to frameworks like SOC2, ISO 27001, HIPAA, and FedRAMP. Integrations & Orchestration: Build robust, secure integrations (REST/SOAP, IntegrationHub , MID Servers) with our XDR, SIEM (Splunk/Sentinel), and cloud-native services (AWS/Azure/GCP). Multi-Tenancy & MSSP Architecture: Architect a scalable, multi-tenant environment that ensures strict data isolation between clients while allowing for unified " ClickOps " and Terraform-driven automation. AI & Innovation: Explore and implement Now Assist (GenAI) and AI-heavy workflows to automate security reporting and incident summarization. Defensive Operations (SecOps): Design and automate the Security Incident Response (SIR) and Vulnerability Response (VR) lifecycles. Build playbooks in Flow Designer to automate threat containment and remediation. Offensive Operations: Develop custom scoped applications to track penetration testing results, manage red-team engagement lifecycles, and automate the ingestion of reconnaissance data. Compliance & GRC: Configure and customize Integrated Risk Management (IRM) modules to map technical controls to frameworks like SOC2, ISO 27001, HIPAA, and FedRAMP. Integrations & Orchestration: Build robust, secure integrations (REST/SOAP, IntegrationHub , MID Servers) with our XDR, SIEM (Splunk/Sentinel), and cloud-native services (AWS/Azure/GCP)
The Lead - Cybersecurity is responsible for safeguarding AdaniConneX's operational data center infrastructure by establishing and managing a robust cybersecurity framework covering IT and Operational Technology (OT) environments. The role will lead cybersecurity governance, cyber risk management, incident response, network and endpoint security, cyber resilience, regulatory compliance, and third-party cybersecurity assurance across multiple operational data centers. The incumbent will drive a proactive security culture, ensure adherence to cybersecurity policies and standards, strengthen cyber resilience, and support business continuity while enabling safe, secure, sustainable, and compliant data center operations. Source: Adani Group | Job ID: 57528
Site Maintenance Lead (Roads) manages comprehensive site maintenance operations, ensuring adherence to quality standards and contract specifications. Supervise routine maintenance, incident response, and electrical maintenance to optimize infrastructure reliability and operational efficiency.B120 Source: Adani Group | Job ID: 57240
The ISOC Lead is responsible for overseeing the effective functioning of the Integrated Security Operations Center (ISOC). The role focuses on leveraging advanced security technologies, real-time monitoring, and incident response mechanisms to ensure a proactive and comprehensive security framework across the organization. The ISOC Lead coordinates with multiple stakeholders to mitigate risks, enhance operational efficiency, and ensure compliance with established security protocols and regulatory requirements. Source: Adani Group | Job ID: 55436
Other cities to consider
More places hiring for this role
Get new incident response analyst jobs in India by email
Daily job updates · Unsubscribe anytime