SOC Analyst

13 hours ago


Gurugram, India Workassist Full time

Title: SOC AnalystFunction: Cyber Security Operations / Managed Detection and Response (MDR)Experience: 3-5 YearsRole SummaryThe SOC Analyst serves as the primary technical interface between the client's onsite security team and the Managed Detection and Response (MDR) or Security Operations Center (SOC) teams, ensuring seamless integration and effective incident handling.This role demands hands-on expertise in security platforms, particularly FortiSIEM and EDR solutions, combined with practical knowledge of network architecture, including firewall, switching, and routing configuration.The analyst is critical for timely incident coordination, triage validation, and providing technical insights on threat trends and security posture enhancement.Primary Responsibilities- Act as the dedicated onsite point of contact for the customer, bridging technical communication between the client's IT teams and the Global SOC/MDR analysts during investigation and remediation phases.- Coordinate and meticulously track the entire incident response lifecycle, including initial alert triage, technical validation of security incidents, evidence gathering, and timely escalation to L2/L3 teams per established playbooks.- Support the technical onboarding of new log sources (e.g., cloud flow logs, application logs, security appliance feeds) into the SIEM platform, ensuring proper parsing, normalization, and asset visibility updates for accurate correlation.- Implement and validate necessary configuration changes within SIEM, SOAR, and MDR workflow platforms to optimize detection rules, suppression logic, and automated response capabilities.- Perform in-depth technical review and validation of security alerts, incident tickets, and operational reports generated by the MDR platform, ensuring the accuracy of threat containment and investigation data.- Provide actionable insights to customer stakeholders on emerging incident trends, evolving threat patterns, and the overall effectiveness of security controls during customer review meetings.- Ensure immediate and timely technical communication of critical incidents (e.g., confirmed breaches, ransomware activity) to key internal and external stakeholders using predefined communication protocols.- Maintain and technically update all operational documentation, including detailed investigation procedures, runbooks for automated workflows, and standardized reporting templates.- Collaborate directly with customer IT/security teams during joint investigations, guide technical remediation efforts, and provide necessary evidence and reports for compliance and internal audits.- Actively utilize FortiSIEM for advanced query writing, dashboard creation, and rule tuning, leveraging integrated EDR platforms to perform endpoint threat hunting and deeper root cause analysis.- Install, configure, and manage high-availability firewalls (specifically FortiGate models), developing intricate security policies, VPNs, and traffic shaping rules to enforce stringent network protection.- Demonstrate proficiency in secure switching and routing principles, ensuring that network architecture supports secure segmentation, access control lists (ACLs), and traffic flow efficiency for optimal security sensor placement.Required Technical Skills- SIEM/SOAR Operations: Hands-on experience with SIEM platforms (e.g., FortiSIEM, Splunk, Sentinel) including alert tuning, log correlation, and basic SOAR playbook execution.- Incident Response: Proven ability to manage the technical aspects of the incident lifecycle (Triage, Validation, Containment, Eradication) and coordinate activities with cross-functional teams.- Network Security: Practical expertise in the deployment and configuration of FortiGate firewalls, including policy creation, NAT, and UTM features.- Endpoint Security: Experience utilizing and operating an EDR platform for threat investigation, endpoint isolation, and forensic data collection.- Networking Fundamentals: Strong technical familiarity with switching (VLANs, port security) and routing protocols (OSPF, BGP) necessary to ensure secure and segmented network environments.- Communication & Coordination: Excellent ability to translate highly technical findings into clear, concise, and actionable status updates for management and non-technical audiences.Preferred Skills :- Industry certification such as CompTIA Security+, GSEC (GIAC Security Essentials), or Fortinet NSE 4/5.- Experience with cloud security monitoring and alert ingestion from platforms like Azure Security Center or AWS GuardDuty.- Proficiency in writing investigation queries using languages like KQL (Kusto Query Language) or specialized SIEM query syntax.- Familiarity with threat intelligence platforms (TIP) and integrating threat feeds into the SIEM for enhanced detection.- Basic scripting skills (Python, PowerShell) for automating routine operational tasks or data parsing.- Knowledge of MITRE ATT&CK framework and applying its techniques to map and enrich security incidents. (ref:hirist.tech)


  • SOC Analyst

    3 weeks ago


    Gurugram, India Xiarch Solutions Pvt Ltd Full time

    SOC Analyst – L1 (Monitoring & Triage) Job Purpose: The L1 SOC Analyst provides the first line of defense by monitoring alerts, performing initial triage (systematic evaluation, prioritization, and response to security alerts.) and escalating incidents as per SOPs and SLAs. Key Responsibilities: • Monitor SIEM, SOAR, EDR, and security...

  • SOC Analyst

    3 weeks ago


    Gurugram, India Xiarch Solutions Pvt Ltd Full time

    SOC Analyst – L1 (Monitoring & Triage) Job Purpose: The L1 SOC Analyst provides the first line of defense by monitoring alerts, performing initial triage (systematic evaluation, prioritization, and response to security alerts.) and escalating incidents as per SOPs and SLAs. Key Responsibilities: • Monitor SIEM, SOAR, EDR, and security dashboards...

  • Sr. Soc Analyst

    3 days ago


    Bengaluru, Gurugram, Mumbai, India Capgemini Full time ₹ 15,00,000 - ₹ 25,00,000 per year

    Role & responsibilitiesJD:This position is for a core team member at best a Technical Lead" NOT "Soc Manager" to supplement the firm's growing cyber security monitoring function, starting from 5 to max 10yrs of experience having hands on L3/Engineering level work in most recent projects.The candidate will join a team currently responsible for:Providing first...

  • SOC Manager

    1 week ago


    Delhi, Gurugram, NCR, Noida, India KPMG Assurance and Consulting Services LLP Full time ₹ 1,04,000 - ₹ 1,30,878 per year

    About KPMG in IndiaKPMG entities in India are professional services firm(s). These Indian member firms are affiliated with KPMG International Limited. KPMG was established in India in August 1993. Our professionals leverage the global network of firms, and are conversant with local laws, regulations, markets and competition. KPMG has offices across India in...

  • Senior SOC Analyst

    3 weeks ago


    Gurugram, India Egon Zehnder Full time

    The Company Egon Zehnder ( ) is the world’s preeminent leadership advisory firm, inspiring leaders to navigate complex questions with human answers. We have more than 560 consultants who bring together vast industry experience and diverse insight, operating globally through 63 offices in 36 countries spanning across Europe, the Americas, Asia Pacific, the...

  • Senior SOC Analyst

    3 weeks ago


    Gurugram, India Egon Zehnder Full time

    The Company Egon Zehnder ( ) is the world’s preeminent leadership advisory firm, inspiring leaders to navigate complex questions with human answers. We have more than 560 consultants who bring together vast industry experience and diverse insight, operating globally through 63 offices in 36 countries spanning across Europe, the Americas, Asia Pacific, the...


  • Gurugram, India ChargePoint Full time

    About Us :With electric vehicles expected to be nearly 30% of new vehicle sales by 2025 and more than 50% by 2040, electric mobility is becoming a reality.ChargePoint (NYSE: CHPT) is at the center of this revolution, powering one of the worlds leading EV charging networks and a comprehensive set of hardware, software and mobile solutions for every charging...

  • Security Analyst

    1 week ago


    Gurugram, India Advatix Full time

    We are seeking a highly experienced SOC L3 Analyst to strengthen our Security Operations Center. The ideal candidate will have advanced expertise in monitoring, analyzing, and mitigating cybersecurity threats, as well as managing security tools and mentoring junior analysts. This role involves proactive threat hunting, incident response, and collaboration...


  • Gurugram, India Genpact Full time

    Genpact (NYSE: G) is a global professional services and solutions firm delivering outcomes that shape the future. Our 125,000+ people across 30+ countries are driven by our innate curiosity, entrepreneurial agility, and desire to create lasting value for clients. Powered by our purpose - the relentless pursuit of a world that works better for people - we...


  • Gurugram, India Genpact Full time

    Genpact (NYSE: G) is a global professional services and solutions firm delivering outcomes that shape the future. Our 125,000+ people across 30+ countries are driven by our innate curiosity, entrepreneurial agility, and desire to create lasting value for clients. Powered by our purpose - the relentless pursuit of a world that works better for people - we...