Macksofy Technologies
Pune · SOC + SIEM
CERT-In EmpanelledPune

Managed SOC in Pune · IT Services, Auto OEM & GCC

24×7 SOC for Pune IT services GCCs, Hinjewadi SaaS, Chakan auto OEMs and Magarpatta BPOs — OT-aware, IEC-62443-aligned, US-parent-friendly.

01
0×7
Continuous monitoring
02
0+
OT-aware use-cases shipped
03
<0 hrs
Pune onsite SLA
04
IEC 0
OT framework alignment
SOC + SIEM in Pune

How a Macksofy soc + siem engagement runs in Pune.

Pune's managed-SOC buyer concentration is uniquely diversified — IT-services GCCs in Hinjewadi Phase II and III, SaaS and product startups in Magarpatta and Kharadi, auto OEMs and Tier-1 suppliers across the Chakan / Talegaon / Ranjangaon belt, edtech and BPO in Magarpatta City, and global pharma R&D centres in the Hinjewadi periphery. Most generic SOC offerings stretch to fit either an IT estate or a manufacturing estate but rarely both — and Pune clients increasingly need both because the auto OEM's IT-and-OT segregation is the highest-value risk on the board. Macksofy's Pune SOC is engineered for this combined estate from the Mumbai BKC anchor team with a Pune-resident lead consultant for multi-quarter programmes.

The operating model is identical to our Hyderabad SOC at the platform level — bring-your-own SIEM (Splunk Enterprise Security, Microsoft Sentinel, IBM QRadar, Elastic Security, Sumo Logic Cloud SIEM), bring-your-own EDR (CrowdStrike Falcon, SentinelOne, Microsoft Defender for Endpoint, Trellix), three-tier analyst structure (T1 24×7, T2 8×5, T3 on-call DFIR), monthly executive summary, quarterly board pack, half-yearly purple-team exercise. What differs is the detection-content library — Pune's library is calibrated for the combined IT-and-OT estate that Pune buyers actually operate.

OT-aware detection content is the Pune SOC's distinguishing capability. IEC-62443-aligned monitoring of the OT estate — purdue-model-Level-3 / Level-2 / Level-1 segmentation event detection, OPC UA / Modbus TCP / EtherNet/IP / PROFINET protocol anomaly, HMI / SCADA workstation authentication anomaly, engineering workstation USB-policy bypass detection, PLC firmware-upload event correlation, IT-to-OT lateral movement detection (the highest-leverage risk on every Pune auto OEM board). For Chakan and Talegaon auto OEMs we have shipped 80+ pre-built OT-aware use-cases mapped to IEC-62443-3-3 SR / SL requirements.

IT-services GCC content is the second pillar. Hinjewadi Phase II / III hosts delivery centres for Infosys, TCS, Wipro, Cognizant, Capgemini, IBM India, Accenture, Deloitte and many smaller IT-services firms. The detection content here is calibrated to the IT-services delivery-centre estate — VDI-based developer workstation monitoring, shared-development-environment anomaly, OffSec-style red-team-tooling detection (because IT-services parents pen-test their own delivery centres), customer-IP egress detection from VDI sessions, and the US/EU customer-imposed control catalogues that pass down through the IT-services parent. Every use-case maps to the parent's preferred control framework (NIST CSF, CIS Controls or parent-specific catalogue).

Auto OEM Tier-1 supplier content layers in additional capabilities. TISAX-aligned monitoring of customer-data flows (Volkswagen / BMW / Audi suppliers come under TISAX in 2026), supplier-portal authentication anomaly, connected-vehicle telemetry anomaly for OEMs running connected-car back-ends, and the ECU-bench / HIL-lab segregation that auto OEM R&D centres need to evidence to their European customer's procurement. We have shipped this content into Chakan, Talegaon and Ranjangaon auto OEM Tier-1 supplier SOCs that need to satisfy German automaker procurement.

DPDP Act compliance overlay is built in. Most Pune GCC and BPO engagements process personal data of Indian or foreign data principals and now need DPDP-aligned monitoring — consent-flow integrity, withdrawal-propagation, DPDP §16 cross-border-transfer evidence for sponsor / customer / parent data flows. The base detection-content library ships these capabilities; the customer's data protection officer receives a monthly memo with consent-flow events, withdrawal-propagation success rate and cross-border-transfer trend.

Tier structure is calibrated to Pune geography. Tier-1 (24×7 SIEM triage) operates from the Mumbai BKC SOC floor. Tier-2 (8×5 senior analyst and threat-hunter) operates from Mumbai BKC with a Pune-resident senior for the embedded lead role on multi-quarter programmes. Tier-3 (on-call DFIR specialist) mobilises from Mumbai BKC and drives to Pune in 3 hours via the Mumbai-Pune Expressway (or flies BOM → PNQ in 30 minutes). Onsite SLA at any Hinjewadi, Magarpatta, Kharadi or Chakan client site is 4 hours from escalation.

Procurement reality matters. Pune auto OEM Tier-1 supplier engagements close through the IT head, the plant operations head and (for TISAX-scoped customers) the parent's German customer-security function. IT-services GCC engagements close through the Indian CISO and the US/EU parent's regional CISO. Magarpatta SaaS and edtech engagements close through the CTO and head of SRE in a single weekly sync. Engagement length is typically 12-24 months minimum for the SOC retainer with a 30-day onboarding window.

Engagement workflow

Five phases. Pune timeline.

Every Macksofy soc + siem engagement in Pune runs through the same phased protocol — adapted to Pune-specific procurement, regulator and delivery realities.

01
Phase 01
Kickoff & Estate Map
  • Joint kickoff with IT head, plant operations head and (for TISAX scopes) parent's German customer-security function
  • Combined IT-and-OT asset inventory — Purdue-model-Level mapping for OT estate
  • SIEM and EDR platform confirmation, telemetry source inventory
  • Detection-content library selection — IT-services / OT / SaaS / BPO playbook combination
02
Phase 02
Content Shipment & Tuning
  • Vendor-native detection content shipment in SPL / KQL / ESQL / AQL
  • OT-aware library — 80+ use-cases mapped to IEC-62443-3-3 SR / SL where auto OEM in scope
  • TISAX-aligned monitoring content for German-automaker Tier-1 suppliers
  • IT-services VDI / shared-dev / customer-IP-egress content for Hinjewadi delivery-centre estates
03
Phase 03
Go-Live & Runbook
  • Baseline tuning and false-positive suppression against the customer's actual traffic
  • Runbook review with IT, plant operations and (where applicable) parent-customer-security
  • Go-live cutover with paired Tier-2 senior on-site for the first 72 hours at Hinjewadi or Chakan
  • First executive summary delivered at Day 30
04
Phase 04
Steady-State Operation
  • 24×7 Tier-1 triage from Mumbai BKC SOC floor with documented per-severity SLA
  • Tier-2 threat-hunting and complex correlation 8×5 with Pune-resident embedded lead
  • Tier-3 DFIR on-call with 3-hour Mumbai-Pune mobilisation via the Expressway
  • Connected-vehicle telemetry anomaly for OEMs running connected-car back-ends
05
Phase 05
Compliance & Purple-Team Cadence
  • Monthly executive summary in IT-and-OT language for combined-estate clients
  • Quarterly board pack with trend narrative and detection-content refresh
  • Half-yearly purple-team exercise with the Macksofy red-team bench
  • Annual TISAX / SOC 2 / NIST CSF evidence pack delivery for compliance team
Industries served

Which Pune verticals we deliver SOC + SIEM for.

Auto OEMs & Tier-1 suppliers

Chakan / Talegaon / Ranjangaon auto OEMs — IT-and-OT combined SOC with IEC-62443 + TISAX coverage.

IT services GCCs

Hinjewadi Phase II / III delivery centres — VDI + shared-dev + customer-IP-egress content with parent control catalogue.

Magarpatta SaaS & edtech

Magarpatta and Kharadi product companies — SOC 2 CC + ISO 27001 + DPDP evidence on demand.

Pharma R&D

Hinjewadi periphery pharma R&D — GxP-aware detection content adapted from the Hyderabad pharma library.

BPO & KPO

Magarpatta and Kharadi BPO/KPO operations — customer-data monitoring with DPDP §16 cross-border-transfer evidence.

Connected-vehicle OEMs

Auto OEMs running connected-car back-ends — telematics platform anomaly, OTA-update integrity, fleet-data-egress monitoring.

What ships

The Pune deliverable pack.

Every Pune soc + siem engagement closes with the pack below — regulator-ready evidence, technical detail and board-readable summaries.

  • 24×7 SOC operation with documented SLA per severity tier
  • Vendor-native detection content shipped into the customer's SIEM
  • OT-aware library — 80+ pre-built use-cases mapped to IEC-62443-3-3 SR / SL clauses
  • TISAX-aligned monitoring content for German-automaker Tier-1 supplier scope
  • IT-services delivery-centre content — VDI, shared-dev-environment, customer-IP-egress detection
  • Connected-vehicle telematics anomaly content where in scope
  • Monthly executive summary, quarterly board pack, half-yearly purple-team exercise
  • Annual TISAX / SOC 2 / NIST CSF evidence-pack delivery for compliance team
Recent Pune engagement

A Pune soc + siem case study.

Pune-headquartered Auto OEM Tier-1 Supplier (Chakan plant + Hinjewadi engineering centre + connected-vehicle back-end on AWS)
Scope

24×7 managed SOC across the Chakan plant OT estate (Purdue Level 0-3, four PLCs, two HMIs, one SCADA, eight engineering workstations), the Hinjewadi engineering centre IT estate (180 endpoints, 40 VDI sessions), and the AWS-hosted connected-vehicle telematics back-end; Splunk Enterprise Security platform; IEC-62443-3-3 + TISAX monitoring content shipped; quarterly German-customer-procurement evidence cycle

Outcome

Two IT-to-OT lateral movement attempts flagged and remediated pre-disclosure within the first quarter; one supplier-portal credential-stuffing campaign detected and blocked at the WAF edge; one connected-vehicle telematics anomaly traced to a misconfigured OTA-update endpoint and remediated before customer notification; TISAX surveillance cleared with zero non-conformities on first attempt; German customer procurement accepted the operational evidence pack without rework.

What clients say · Trusted India + UAE

Rated 4.9 ★ from 612 client reviews.

CERT-In Empanelled
Govt of India · MeitY
EC-Council ATC
Authorized Training
ISO 27001 Certified
Info Security Mgmt
We've worked with three Big 4 firms before Macksofy. None found what their team did in our payments stack. The most actionable report we've received in a decade.
AK
Aisha Khan
Information Security Manager · Listed Fintech · BKC, Mumbai
The CHFI training Macksofy delivered for our cyber cell raised investigation quality measurably. Practical, India-context-aware, and respectful of our operational realities.
IK
Inspector K. Joshi
Cyber Cell · Maharashtra Police · Mumbai
Came in with zero security background. 5 weeks later I was running Burp Suite and Metasploit confidently. Cleared CEH on the first attempt.
VI
Vivek Iyer
DevSecOps Lead · Healthcare SaaS · Hyderabad
FAQ

Questions Pune buyers ask before signing.

Yes — that is the Pune SOC's defining capability. The detection-content library covers Purdue-Level-0 through Level-3 OT segmentation events, OPC UA / Modbus / EtherNet/IP / PROFINET protocol anomaly, HMI / SCADA workstation authentication anomaly, and the IT-to-OT lateral movement detection that is the single highest-leverage risk on every auto OEM board. Mapped to IEC-62443-3-3 SR / SL requirements.
More services in Pune

Other Macksofy engagements in Pune.

SOC + SIEM in other cities

Same engagement, other Macksofy metros.

Talk to us

Get a fixed-price proposal in 48 hours.

Tell us about your security need — pentest, audit, training or a wider engagement. A senior consultant will reply within a few business hours.

CERT-In Empanelled
Information Security Auditor · India
  • CERT-In Empanelled
  • EC-Council ATC · CompTIA Authorized
  • 20,000+ professionals trained
  • India + UAE engagements
Human verification· Cloudflare Turnstile

By submitting this form you agree to be contacted by Macksofy. We typically respond within a few business hours and never share your details. Protected by Cloudflare Turnstile and rate limiting.