L2 SOC Analyst

4 days ago


Bengaluru, India UST Full time

4 - 8 Years

1 Opening

Bangalore, Kochi, Trivandrum

Role description

L2 SOC Analyst

Experience : 4 to 8 years

SOC Analyst L2 SOC Analyst L2 is an operational role, focusing on ticket quality and security incident deeper investigation and will be responsible to handle the escalated incidents from Level 1 team within SLA.

Responsibilities:

  • SOC Analyst L2 would work closely with SOC L1 team, L3 team & customer and responsible for performing deeper analysis and need to interact with client in daily calls and need to take the responsibility of handling the True Positive incidents on time.

  • When L1 escalates an incident to L2, need to conduct more analysis and, if needed, escalate to the L3 team, or L2 analyst must advise L1 team members until the incident is resolved.

  • Perform deep analysis to security incidents to identify the full kill chain

  • Perform remediation steps according to the findings or initiate steps for remediation

  • Prepare RCA for major incidents

  • Handle L2 and above level technical escalations from L1 Operations team and resolve within SLA.

  • Identify the security gaps and need to recommend new rules/solution to L3/Customer

  • Need to suggest finetuning for existing rules based on the high count/wherever required

  • Create and manage the Incident handling playbook, process runbooks and ad-hoc documents whenever needed

  • Recommend finetuning for s with logic and threshold, and possibly the query as well for the SIEM


• Recommend new usecases with logic and threshold, and possibly the query as well for the SIEM
• Respond to clients' requests, concerns, and suggestions

  • Proactively support L1 team during an incident.

  • Performs and reviews tasks as identified in a daily task list.

  • Ready to work in 24x7 rotational shift model including night shift

  • Incident detection, triage, analysis and response.

  • Coordinating with customers for their security related problems and providing solutions.

  • Share knowledge to other analysts in their role and responsibilities

  • Provide knowledge transfer to L1 such as advance hunting techniques, guides, cheat sheets etc

Knowledge Experience:

  • Minimum 4 Years of experience in Security Operations

  • Security event monitoring, triage, and thorough incident investigation.

  • Research and understand log sources for effective security monitoring.

  • Isolate issues, respond to incidents, and mitigate threats swiftly.

  • Adjust SIEM rules for better and incident specifications.

  • Optimize SIEM capabilities, aid in audit/logging, and generate timely reports.

  • Conduct vulnerability scans, prioritize, and plan remediation.

  • Proactively search for suspicious activities through Threat Hunts.

  • Offer valuable Threat Intelligence to verify security concerns.

  • Identify endpoint threats using EDR/AV analysis and Cybereason scans.

  • Develop and maintain security operation standards, procedures, and playbooks.

Essential Skills:

  • Experience working with SIEM solutions (preferably Qradar)

  • Experience with EDR solutions (preferably CrowdStrike)

  • Experience with firewalls (preferably PaloAlto)

  • Experience with email security gateways (preferably Mimecast)

  • Experience with cloud security (preferably AWS)

  • Experience with IAM solutions (preferably Okta)

  • Continuous Learning innovation and optimization

  • Ensure completion of learning programs as suggested by Managers Suggest ideas that will help innovation and optimization of processes.

  • Help develop the ideas into proposals.

  • Provide suggestions to reduce the manual work Strong verbal and written English communication

  • Strong interpersonal and presentation skills Ability to work with minimal levels of supervision

Skills

Soc,Cybersecurity,SIEM

About UST

UST is a global digital transformation solutions provider. For more than 20 years, UST has worked side by side with the world's best companies to make a real impact through transformation. Powered by technology, inspired by people and led by purpose, UST partners with their clients from design to operation. With deep domain expertise and a future-proof philosophy, UST embeds innovation and agility into their clients' organizations. With over 30,000 employees in 30 countries, UST builds for boundless impact—touching billions of lives in the process.


  • SOC L2 Analyst

    2 weeks ago


    Bengaluru, Chennai, India AltiSec Full time ₹ 1,04,000 - ₹ 1,30,878 per year

    We are seeking a highly motivated and skilled SOC L2 Analyst to join our security team at Bangalore & Chennai. The ideal candidate will be responsible for advanced security incident analysis, threat hunting, and the development of new detection rules and playbooks. This role will also have a partial focus on security governance, including assisting with...

  • L2 SOC Analyst

    2 weeks ago


    Bengaluru, Karnataka, India UST Full time ₹ 4,00,000 - ₹ 8,00,000 per year

    4 - 8 Years1 OpeningBangalore, Kochi, TrivandrumRole descriptionL2 SOC AnalystExperience : 4 to 8 yearsSOC Analyst L2 SOC Analyst L2 is an operational role, focusing on ticket quality and security incident deeper investigation and will be responsible to handle the escalated incidents from Level 1 team within SLA.Responsibilities:SOC Analyst L2 would work...

  • SOC Analyst-l2

    2 weeks ago


    Bengaluru, India Terraeagle Technologies Pvt Ltd Full time

    We are seeking a highly skilled and experienced SOC (Security Operations Center) Analyst L2 to join our dynamic team. As an L2 SOC Analyst, you will be responsible for detecting, analyzing, and responding to security incidents and threats within our organization's network and systems. Your role will involve actively monitoring security events, investigating...

  • SOC L2

    1 week ago


    Bengaluru, Karnataka, India Procain Consulting & Services Full time

    **Designation**: SOC L2 **Location**:Bengaluru **Experience**: 4+ years **Qualification**: Bachelors Degree/Postgraduate **Job Code**: JD2208370 **J**ob Responsibilities**: - Perform monitoring, identification, investigation, documentation, resolution and reporting of security alerts through prioritization of events based on risk/exposure. - Analyze...


  • Bengaluru, Karnataka, India Pradha Solutions Full time ₹ 9,00,000 - ₹ 12,00,000 per year

    Job Title:L2 SOC Analyst – Security Operations (Splunk, QRadar, EDR) | OnsiteLocation:Bangalore (Onsite Only)Experience Required:Minimum 2 years in a Security Operations Center (SOC) environmentAbout the Role:Pradha Solutions is seeking a proactive and skilled L2 SOC Analyst to join our cybersecurity team. This is an onsite role where you'll be responsible...

  • SOC Analyst

    4 days ago


    Bengaluru, India Outworx Solutions Full time

    Level: L1+L2 A level one (L1) Security Operation Center (SOC) analyst performs several activities in addition to the monitoring activity:Monitor security alertsParticipate in use case and rule workshopsParticipate in rule tuning sessionsParticipate in response procedure workshopsParticipate in lessons learned workshopsParticipate in education sessions as...

  • Senior Analyst SOC L2

    2 weeks ago


    Bengaluru, Karnataka, India Capgemini Full time ₹ 4,00,000 - ₹ 8,00,000 per year

    About CompanyChoosing Capgemini means choosing a company where you will be empowered to shape your career in the way you'd like, where you'll be supported and inspired by a collaborative community of colleagues around the world, and where you'll be able to reimagine what's possible. Join us and help the world's leading organizations unlock the value of...

  • SOC Analyst

    1 week ago


    Bengaluru, Karnataka, India Outworx Solutions Full time ₹ 1,40,000 - ₹ 28,00,000 per year

    Level: L1+L2A level one (L1) Security Operation Center (SOC) analyst performs several activities in addition to the monitoring activity:Monitor security alertsParticipate in use case and rule workshopsParticipate in rule tuning sessionsParticipate in response procedure workshopsParticipate in lessons learned workshopsParticipate in education sessions as...

  • Soc Analyst

    4 days ago


    Bengaluru, India Insightek Global Consulting Full time

    *Immediate Joiner* Experience: 4+ years Location: Bangalore We are looking for a SOC Analyst (L2 Incident Response) with 4+ years of relevant experience in the required technologies. Key Responsibilities: Handle and respond to security incidents in line with the Incident Response lifecycle. Perform threat analysis and provide actionable recommendations....

  • Soc Analyst 2

    6 days ago


    Bengaluru, Delhi, NCR, India Coforge Full time ₹ 9,00,000 - ₹ 12,00,000 per year

    Job Title: SOC Analyst L2Experience: 3+ YearsLocation: Delhi, IndiaAbout the RoleWe are seeking an experienced SOC Analyst (Level 2) to join our Security Operations Center team. The ideal candidate will have hands-on expertise in ArcSight (connectors/parsers), with strong skills in monitoring, detecting, analyzing, and responding to security incidents. This...