OT SOC Analyst

2 days ago


New Delhi, India L&T Technology Services Full time

Role Summary:As an L2 OT SOC Analyst, you will be responsible for advanced threat detection, incident response, and forensic analysis within Operational Technology (OT) environments using Claroty XDOME. You will handle escalated alerts from L1 analysts, perform deep-dive investigations, and contribute to the continuous improvement of OT cybersecurity operations.Key Responsibilities:- Monitor and analyze security alerts from Claroty XDOME and other integrated SIEM/EDR platforms. - Conduct in-depth investigations of suspicious activities and OT-specific incidents. - Perform threat hunting and exposure management across OT assets. - Lead incident response efforts including containment, eradication, and recovery. - Collaborate with L1 analysts and engineering teams to refine detection rules and playbooks. - Maintain and update incident response documentation and reporting dashboards. - Analyze vulnerabilities in OT systems and recommend mitigation strategies. - Ensure SLA compliance and contribute to SOC process improvements. - Participate in forensic analysis and malware investigations within OT environments. - Provide mentorship and guidance to L1 analysts.Required Skills & Experience:Experience: 3–6 years in cybersecurity, with at least 2 years in a SOC environment focused on OT or ICS/SCADA systems.Certifications: CEH, CISSP, GCFA, GCFE, or Claroty XDOME-specific training preferred.Technical Skills:- Proficiency in Claroty XDOME, SIEM tools (Splunk, QRadar, ELK), and EDR platforms. - Strong understanding of OT protocols (Modbus, DNP3, OPC, etc.) and CPS asset management. - Familiarity with IDS/IPS, firewalls, VPNs, and threat intelligence platforms. - Scripting knowledge (Python, Bash, Perl) for automation and analysis. - Knowledge of Windows, Linux, and Unix operating systems. - Experience with forensic tools and packet analysis.



  • New Delhi, India ColorTokens Inc. Full time

    About ColorTokens AtColorTokens , we empower businesses to stay operational and resilient in an increasingly complex cybersecurity landscape. Breaches happen—but with our cutting-edgeColorTokens Xshield™ platform , companies can minimize the impact of breaches by preventing the lateral spread of ransomware and advanced malware. We enable organizations to...


  • New Delhi, India ColorTokens Inc. Full time

    About ColorTokensAtColorTokens, we empower businesses to stay operational and resilient in an increasingly complex cybersecurity landscape. Breaches happen—but with our cutting-edgeColorTokens Xshield™ platform, companies can minimize the impact of breaches by preventing the lateral spread of ransomware and advanced malware. We enable organizations to...

  • Junior Soc Analyst

    4 weeks ago


    Delhi, India Airtel Full time

    SOC Analyst | JOB Description | Airtel 1 3 Years of Experience Role – SOC Analyst – A1 Roles and Requirements The Level 1 SOC Security Analyst is responsible for conducting information security investigations due to security incidents identified from various SOC entry channels (SIEM, Tickets, Email and Phone). Experience with Seceon Tool. Act as a point...


  • Noida, Uttar Pradesh - New Delhi, India Rockwell Automation Full time

    Rockwell Automation is a global technology leader focused on helping the world s manufacturers be more productive sustainable and agile With more than 28 000 employees who make the world better every day we know we have something special Behind our customers - amazing companies that help feed the world provide life-saving medicine on a global scale and focus...

  • Incident Manager

    13 hours ago


    New Delhi, India Adani Enterprises Limited Full time

    The Security Operations & Incident Response professional will be responsible for orchestrating enterprise-wide incident response strategies across both OT and IT environments. The role demands deep operational expertise, the ability to coordinate with threat intelligence, forensics, red/blue teams, and the vision to continuously evolve detection and response...

  • SOC Level-1 Analyst

    2 days ago


    New Delhi, India Airtel Digital Full time

    Job Summary:The Security Operation Centre (SOC) Information Security Analyst is the first level of monitoring in the SOC. The position monitors and responds to security events from managed customer security systems as part of a team on a rotating 24 x 7 x 365 basis.Your background should include exposure to security technologies including firewalls, IPS/IDS,...


  • New Delhi, India Airtel Digital Full time

    Job Summary:The Security Operation Centre (SOC) Information Security Analyst is the first level of monitoring in the SOC. The position monitors and responds to security events from managed customer security systems as part of a team on a rotating 24 x 7 x 365 basis.Your background should include exposure to security technologies including firewalls, IPS/IDS,...

  • SOC Level-1 Analyst

    3 days ago


    new delhi, India Airtel Digital Full time

    Job Summary: The Security Operation Centre (SOC) Information Security Analyst is the first level of monitoring in the SOC. The position monitors and responds to security events from managed customer security systems as part of a team on a rotating 24 x 7 x 365 basis. Your background should include exposure to security technologies including firewalls,...

  • SOC Level-1 Analyst

    23 hours ago


    New Delhi, India Airtel Digital Full time

    Job Summary: The Security Operation Centre (SOC) Information Security Analyst is the first level of monitoring in the SOC. The position monitors and responds to security events from managed customer security systems as part of a team on a rotating 24 x 7 x 365 basis. Your background should include exposure to security technologies including firewalls,...

  • SOC Level-1 Analyst

    22 hours ago


    New Delhi, India Airtel Digital Full time

    Job Summary: The Security Operation Centre (SOC) Information Security Analyst is the first level of monitoring in the SOC. The position monitors and responds to security events from managed customer security systems as part of a team on a rotating 24 x 7 x 365 basis. Your background should include exposure to security technologies including firewalls,...