
L2 SOC Analyst
4 weeks ago
4 - 8 Years
1 Opening
Bangalore, Kochi, Trivandrum
Role descriptionL2 SOC Analyst
Experience : 4 to 8 years
SOC Analyst L2 SOC Analyst L2 is an operational role, focusing on ticket quality and security incident deeper investigation and will be responsible to handle the escalated incidents from Level 1 team within SLA.
Responsibilities:
SOC Analyst L2 would work closely with SOC L1 team, L3 team & customer and responsible for performing deeper analysis and need to interact with client in daily calls and need to take the responsibility of handling the True Positive incidents on time.
When L1 escalates an incident to L2, need to conduct more analysis and, if needed, escalate to the L3 team, or L2 analyst must advise L1 team members until the incident is resolved.
Perform deep analysis to security incidents to identify the full kill chain
Perform remediation steps according to the findings or initiate steps for remediation
Prepare RCA for major incidents
Handle L2 and above level technical escalations from L1 Operations team and resolve within SLA.
Identify the security gaps and need to recommend new rules/solution to L3/Customer
Need to suggest finetuning for existing rules based on the high count/wherever required
Create and manage the Incident handling playbook, process runbooks and ad-hoc documents whenever needed
Recommend finetuning for s with logic and threshold, and possibly the query as well for the SIEM
• Recommend new usecases with logic and threshold, and possibly the query as well for the SIEM
• Respond to clients' requests, concerns, and suggestions
Proactively support L1 team during an incident.
Performs and reviews tasks as identified in a daily task list.
Ready to work in 24x7 rotational shift model including night shift
Incident detection, triage, analysis and response.
Coordinating with customers for their security related problems and providing solutions.
Share knowledge to other analysts in their role and responsibilities
Provide knowledge transfer to L1 such as advance hunting techniques, guides, cheat sheets etc
Knowledge Experience:
Minimum 4 Years of experience in Security Operations
Security event monitoring, triage, and thorough incident investigation.
Research and understand log sources for effective security monitoring.
Isolate issues, respond to incidents, and mitigate threats swiftly.
Adjust SIEM rules for better and incident specifications.
Optimize SIEM capabilities, aid in audit/logging, and generate timely reports.
Conduct vulnerability scans, prioritize, and plan remediation.
Proactively search for suspicious activities through Threat Hunts.
Offer valuable Threat Intelligence to verify security concerns.
Identify endpoint threats using EDR/AV analysis and Cybereason scans.
Develop and maintain security operation standards, procedures, and playbooks.
Essential Skills:
Experience working with SIEM solutions (preferably Qradar)
Experience with EDR solutions (preferably CrowdStrike)
Experience with firewalls (preferably PaloAlto)
Experience with email security gateways (preferably Mimecast)
Experience with cloud security (preferably AWS)
Experience with IAM solutions (preferably Okta)
Continuous Learning innovation and optimization
Ensure completion of learning programs as suggested by Managers Suggest ideas that will help innovation and optimization of processes.
Help develop the ideas into proposals.
Provide suggestions to reduce the manual work Strong verbal and written English communication
Strong interpersonal and presentation skills Ability to work with minimal levels of supervision
Soc,Cybersecurity,SIEM
About USTUST is a global digital transformation solutions provider. For more than 20 years, UST has worked side by side with the world's best companies to make a real impact through transformation. Powered by technology, inspired by people and led by purpose, UST partners with their clients from design to operation. With deep domain expertise and a future-proof philosophy, UST embeds innovation and agility into their clients' organizations. With over 30,000 employees in 30 countries, UST builds for boundless impact—touching billions of lives in the process.
-
SOC L2
2 weeks ago
Bengaluru, Karnataka, India Terraeagle Technologies Pvt Ltd Full timeWE'RE HIRING: SOC L2 / L3 SECURITY ANALYSTS! Are you a cybersecurity pro ready to take your career to the next level? We're on the lookout for passionate, skilled, and driven SOC L2/L3 Analysts to join our growing team! What we’re looking for: - Hands-on experience in Security Operations - Strong understanding of SIEM tools, threat detection, and incident...
-
SOC L2 Analyst
2 weeks ago
Bengaluru, Chennai, India AltiSec Full time ₹ 6,00,000 - ₹ 18,00,000 per yearWe are seeking a highly motivated and skilled SOC L2 Analyst to join our security team at Bangalore & Chennai. The ideal candidate will be responsible for advanced security incident analysis, threat hunting, and the development of new detection rules and playbooks. This role will also have a partial focus on security governance, including assisting with...
-
SOC Analyst-l2
2 weeks ago
Bengaluru, India Terraeagle Technologies Pvt Ltd Full timeWe are seeking a highly skilled and experienced SOC (Security Operations Center) Analyst L2 to join our dynamic team. As an L2 SOC Analyst, you will be responsible for detecting, analyzing, and responding to security incidents and threats within our organization's network and systems. Your role will involve actively monitoring security events, investigating...
-
SOC Analyst L1/L2
2 weeks ago
Bengaluru, India Qtek Systems Full timeDescription : POSITION SUMMARY: SOC Analyst ( L1/L2 – 2 to 6 years) The SOC Analyst is responsible for a broad range of responsibilities with a primary emphasis on 24/7, Log analysis, threat and event monitoring and data loss prevention to contribute to effective remediation of security incidents. ESSENTIAL DUTIES AND RESPONSIBILITIES ...
-
SOC Analyst L1/L2
2 weeks ago
Bengaluru, India Qtek Systems Full timeDescription : POSITION SUMMARY: SOC Analyst ( L1/L2 – 2 to 6 years) The SOC Analyst is responsible for a broad range of responsibilities with a primary emphasis on 24/7, Log analysis, threat and event monitoring and data loss prevention to contribute to effective remediation of security incidents. ESSENTIAL DUTIES AND...
-
SOC Analyst
4 weeks ago
Bengaluru, India Outworx Solutions Full timeLevel: L1+L2 A level one (L1) Security Operation Center (SOC) analyst performs several activities in addition to the monitoring activity:Monitor security alertsParticipate in use case and rule workshopsParticipate in rule tuning sessionsParticipate in response procedure workshopsParticipate in lessons learned workshopsParticipate in education sessions as...
-
Soc Analyst 1
2 weeks ago
Bengaluru, Karnataka, India NTT DATA Full time ₹ 6,00,000 - ₹ 18,00,000 per yearJob Description (L1): Candidate should have overall min. 2 years of experience and relevant 1 years of experience in Cyber Security Operations having below roles & responsibilities: Responsible for 24X7X365 days monitoring, reporting, and escalating events to our SOC Analysts (Internal & Customer Team). The Primary function is to monitor the analytics...
-
SOC L3 Analyst
3 days ago
Bengaluru, Karnataka, India Hinduja Global Solutions (HGS) Full time ₹ 12,00,000 - ₹ 36,00,000 per yearJob DescriptionThe SOC L3 Analyst is a senior-level position responsible for handling the most complex security incidents and providing strategic direction for the SOC team. This role involves leading shifts, mentoring junior analysts, and providing strategic oversight to ensure effective detection, analysis, and response to security incidents. The L3...
-
SOC Analyst
1 week ago
Bengaluru, Karnataka, India Outworx Solutions Full time ₹ 9,00,000 - ₹ 12,00,000 per yearLevel: L1+L2A level one (L1) Security Operation Center (SOC) analyst performs several activities in addition to the monitoring activity:Monitor security alertsParticipate in use case and rule workshopsParticipate in rule tuning sessionsParticipate in response procedure workshopsParticipate in lessons learned workshopsParticipate in education sessions as...
-
SOC L2
2 weeks ago
Bengaluru, Karnataka, India CyberNX Technologies Pvt Ltd. Full timeLocation - Mumbai / Bangalore - Full-time - 24 × 7 rotational shifts Role Summary The L2 analyst is the technical anchor for each shift, owning complex investigations that trigger in Microsoft Sentinel and the broader Microsoft Defender ecosystem. You will validate, scope monitoring activities, guide L1 analysts, and feed improvements back into detection...