SOC L3 Analyst

5 hours ago


bangalore, India Persistent Systems Full time

About Position: As a SOC L3 Analyst, you will be responsible for leading the investigation and response to complex security incidents, engineering advanced detection content, and optimizing security tools and processes. With a strong focus on Splunk, content engineering, Endpoint Detection and Response (EDR), and Security Orchestration, Automation, and Response (SOAR), you will enhance the SOC's capabilities to detect and mitigate advanced cyber threats. Role: SOC L3 Analyst Location: Pune Experience: 5 to 8 Years Job Type: Full Time Employment What You'll Do: Advanced Incident Response: - Lead the investigation and response to high-severity security incidents, performing deep-dive analysis and root cause determination. Develop and execute remediation plans to contain and eradicate threats. Content Engineering: - Design and develop advanced detection rules, alerts, and dashboards in Splunk to enhance threat detection capabilities. Continuously improve detection content based on emerging threats and attack patterns. Endpoint Detection and Response (EDR): - Utilize EDR tools (e.g., CrowdStrike, Carbon Black) to monitor, analyze, and respond to endpoint threats. Conduct advanced forensic analysis on compromised systems to identify indicators of compromise (IOCs) and tactics, techniques, and procedures (TTPs) used by threat actors. Security Orchestration, Automation, and Response (SOAR): - Develop and maintain automated workflows and playbooks on the SOAR platform to streamline incident response processes. Integrate SOAR with other security tools and systems to automate threat detection, investigation, and response tasks. Threat Hunting: - Conduct proactive threat hunting activities to identify hidden threats and security weaknesses within the environment. Develop and implement threat hunting methodologies and use cases. Collaboration and Mentoring: - Collaborate with other SOC analysts, threat intelligence teams, and IT departments to improve overall security posture. Provide mentorship and guidance to L1 and L2 analysts, sharing knowledge and best practices. Security Tool Optimization: - Optimize the configuration and performance of security tools, including Splunk, EDR, and SOAR platforms. Evaluate and recommend new security technologies and solutions to enhance SOC capabilities. Documentation and Reporting: - Document incident response activities, findings, and outcomes in detail. Prepare comprehensive reports and briefings for senior management and stakeholders on security incidents and SOC performance. Continuous Improvement: - Stay updated with the latest cybersecurity threats, trends, and technologies. Participate in training and professional development activities to enhance skills and knowledge. Expertise You'll Bring: Bachelor's degree in computer science, Information Security, or a related field, or equivalent experience. 8 to 11 years of experience in cybersecurity, with a focus on SOC operations, incident response, and security engineering. Proficiency with Splunk, including advanced search, dashboard creation, and content engineering. Strong expertise in EDR tools such as CrowdStrike, or similar. Experience with SOAR platforms and developing automated workflows and playbooks. Excellent analytical, problem-solving, and communication skills. Ability to work independently and as part of a team in a fast-paced environment. Preferred Certifications: - Certified Information Systems Security Professional (CISSP) - GIAC Certified Incident Handler (GCIH) - GIAC Certified Forensic Analyst (GCFA) - Splunk Certified User/Power User/Architect - Certified SOAR Analyst (CSA) Working Conditions: - This role requires working in shifts to provide 24/7 security monitoring. Benefits: Competitive salary and benefits package Culture focused on talent development with quarterly growth opportunities and company-sponsored higher education and certifications Opportunity to work with cutting-edge technologies Employee engagement initiatives such as project parties, flexible work hours, and Long Service awards Annual health check-ups Insurance coverage: group term life, personal accident, and Mediclaim hospitalization for self, spouse, two children, and parents Values-Driven, People-Centric & Inclusive Work Environment: Persistent Ltd. is dedicated to fostering diversity and inclusion in the workplace. We invite applications from all qualified individuals, including those with disabilities, and regardless of gender or gender preference. We welcome diverse candidates from all backgrounds. We support hybrid work and flexible hours to fit diverse lifestyles. Our office is accessibility-friendly, with ergonomic setups and assistive technologies to support employees with physical disabilities. If you are a person with disabilities and have specific requirements, please inform us during the application process or at any time during your employment Let’s unleash your full potential at Persistent - persistent.com/careers “Persistent is an Equal Opportunity Employer and prohibits discrimination and harassment of any kind.”


  • SOC L3 Analyst

    18 hours ago


    bangalore, India Persistent Systems Full time

    About Position: As a SOC L3 Analyst, you will be responsible for leading the investigation and response to complex security incidents, engineering advanced detection content, and optimizing security tools and processes. With a strong focus on Splunk, content engineering, Endpoint Detection and Response (EDR), and Security Orchestration, Automation, and...

  • SOC Level 1 Analyst

    4 weeks ago


    bangalore, India Cysigil Full time

    SOC Level 1 Analyst Location: Bengaluru, India Experience: 0–3 Years Employment Type: Full-Time (Onsite Only) About the Role We are hiring a Security Operations Center (SOC) Level 1 Analyst for a full-time onsite role. As a front-line cyber defender, you will monitor, analyze, and respond to security events using industry-leading tools like Elastic SIEM ,...

  • SOC Lead

    7 days ago


    bangalore, India ITC Infotech Full time

    SOC LeadLocation: BangaloreMode: HybridRole Summary:Lead and manage day-to-day SOC operations to ensure proactive detection and response to cyber threats.Drive operational excellence, process maturity, and automation across SOC functions. Coordinate incident response, threat intelligence, and security monitoring for enterprise or customer environments. Key...

  • SOC Lead

    4 weeks ago


    bangalore, India ITC Infotech Full time

    SOC Lead Location: Bangalore Mode: Hybrid Role Summary: Lead and manage day-to-day SOC operations to ensure proactive detection and response to cyber threats. Drive operational excellence, process maturity, and automation across SOC functions. Coordinate incident response, threat intelligence, and security monitoring for enterprise or customer environments....

  • SOC Lead

    6 days ago


    Bangalore, India ITC Infotech Full time

    SOC Lead Location: Bangalore Mode: Hybrid Role Summary: Lead and manage day-to-day SOC operations to ensure proactive detection and response to cyber threats. Drive operational excellence, process maturity, and automation across SOC functions. Coordinate incident response, threat intelligence, and security monitoring for enterprise or customer environments....

  • Cyber Security

    13 hours ago


    bangalore, India Sanganan IT Solutions Pvt Ltd. Full time

    Job Title: Team Lead - Security Operations Center (SoC)Location: Noida/Singapore OfficeWORK FROM NOIDA OFFICE, PLEASE DON'T APPLY IF YOU ARE LOOKING FOR HYBRID OR WORK FROM HOME Short notice period or immediate joiners are preferred. Job Overview:As the SOC Team Lead, you will oversee the daily operations and strategic direction of a multi-tiered Security...

  • Cyber Security

    4 hours ago


    bangalore, India Sanganan IT Solutions Pvt Ltd. Full time

    Job Title: Team Lead - Security Operations Center (SoC) Location : Noida/Singapore Office WORK FROM NOIDA OFFICE, PLEASE DON'T APPLY IF YOU ARE LOOKING FOR HYBRID OR WORK FROM HOME Short notice period or immediate joiners are preferred. Job Overview: As the SOC Team Lead, you will oversee the daily operations and strategic direction of a multi-tiered...

  • Senior Analyst SOC L2

    4 weeks ago


    Bangalore, India Jobted IN C2 Full time

    About Company Choosing Capgemini means choosing a company where you will be empowered to shape your career in the way you’d like, where you’ll be supported and inspired by a collaborative community of colleagues around the world, and where you’ll be able to reimagine what’s possible. Join us and help the world’s leading organizations unlock the...


  • bangalore, India Sanganan IT Solutions Pvt Ltd. Full time

    Department: Managed Services & Support & Security Operations Center (SOC)Job Type: Full-TimeReports To: SOC Team Lead / Head of Cybersecurity ServicesFull-timeWORK FROM NOIDA OFFICE, PLEASE DON'T APPLY IF YOU ARE LOOKING FOR HYBRID OR WORK FROM HOME Short notice period or immediate joiners are preferred. Job Overview:We are seeking a technically skilled and...


  • bangalore, India Sanganan IT Solutions Pvt Ltd. Full time

    Department: Managed Services & Support & Security Operations Center (SOC) Job Type: Full-Time Reports To: SOC Team Lead / Head of Cybersecurity Services Full-time WORK FROM NOIDA OFFICE, PLEASE DON'T APPLY IF YOU ARE LOOKING FOR HYBRID OR WORK FROM HOME Short notice period or immediate joiners are preferred. Job Overview: We are seeking a technically skilled...