
Senior SOC Analyst Level 3
7 days ago
What will your essential responsibilities include
- Take full ownership of incidents escalated by Level 2 analysts.
- Conduct complex investigations and provide advice to L2 SOC analysts.
- Develop customized scripts and procedures to automate repetitive tasks and improve the efficiency of incident response activities.
- Provide expert advice on incident remediation and recovery efforts.
- Develop threat remediation strategies.
- Perform proactive analysis of AXA XLs attack surface and advice on potential threats and attack vectors.
- Review and provide feedback on security control capability gaps based on security intrusion trends.
- Create and refine runbooks/playbooks for all alerts.
- On-board log sources and work on log issues.
- Fine-tune EDR and other tooling to exclude noise and false positives.
- Create and fine-tune content in SIEM - correlation rules, Dashboard and Reports.
- Interact with SIEM, EDR and other SOC tooling vendors (TAC Support) to remediate any issues with tooling.
- Monitor API threat detection, reporting and containments.
- Demonstrate experience in conducting digital forensics investigations relating to incident detection and response.
- Responsible for making decisions and identifying required actions. During high-severity security incidents, you will advise the AXA XL Head of SOC, CISO and CSO on appropriate containment, eradication, and remediation measures.
- Provide an after-hours point of escalation for critical incidents.
- Define the operational roadmap and key metrics for incident detection and response.
- Collaborate with internal stakeholders to align on and implement security incident detection and response processes.
- Develop SOC security incident policies and investigation procedures, for use across multiple information systems and teams.
- Conduct compliance monitoring and perform SOC/SIEM security control testing.
- Analyze, define, and manage the delivery of new SIEM rules.
- Conduct use case testing and modify or create as and when required.
- Create new custom detection rules using KQL.
- Design and implement SIEM and EDR enhancements and configurations.
- Manage and represent the Security Operations team on ethical hack exercises. You will report to the Head of SOC.
Required Skills and Abilities:
- Good knowledge of Microsoft Defender and Microsoft Sentinel, including developing complex KQL queries.
- Experience in performing digital forensics investigations.
- Experience in developing scripts (Python, Powershell, etc.) quickly in reaction to incidents.
- Demonstrate experience of good knowledge in information security principles applied to architecture, networks & systems, digital forensics, security risk assessments and software development).
- Good knowledge and understanding of technologies utilized in cyber security (SIEM, SOAR, Firewalls, IAM, IDS/IPS, Anti-malware, End Point Protection, Database Security, Threat management/intelligence).
- Actionable knowledge of MITRE ATT&CK framework.
- Effective knowledge of exploitable vulnerabilities and remediation techniques.
- Experience in automating manual processes for responding to security incidents.
- Experience in threat intelligence and CERT/CSIRT activities.
- Knowledge of current threat actor techniques.
- Understanding of threat landscapes and threat modelling, security threat and vulnerability management, and security monitoring.
- Awareness of tools and techniques used by attackers to enter corporate networks, including common IT system flaws and vulnerabilities.
Desired Skills and Abilities:
- Excellent troubleshooting and critical thinking skills.
- Experience in SOC documentation development.
- Demonstrated experience in communicating complex security concepts, both verbally and in writing, to a variety of audiences.
- Must take ownership of tasks and demonstrate a high degree of autonomy to ensure completion.
- Must be personable and foster good stakeholder and peer group working relationships.
- Certifications such as CISSP, GIAC, CEH or other.
-
SOC Analyst Level 2
2 weeks ago
Gurgaon, Haryana, India Axa XL Full timeJob DescriptionWhat will youressential responsibilities include- Act as an escalation point for Level 1 analysts and contribute to the Level 1 capability.- Deep dive analysis of escalated alerts to understand impact and prioritize tickets.- Provide additional context on the threats.- Forensics Investigations.- Monitor and support Incident remediation.- Root...
-
SOC Analyst
5 days ago
Gurgaon, Haryana, India Xiarch Bharat Full time ₹ 2,50,000 - ₹ 7,50,000 per yearSOC Analyst – L1 (Monitoring & Triage)Job Purpose:The L1 SOC Analyst provides the first line of defense by monitoring alerts, performing initial triage (systematic evaluation, prioritization, and response to security alerts.) and escalating incidents as per SOPs and SLAs.Key Responsibilities:• Monitor SIEM, SOAR, EDR, and security dashboards 24x7.•...
-
Soc Analyst 2
2 weeks ago
Gurgaon, Haryana, India Purplesynapz Labs Full time ₹ 9,00,000 - ₹ 12,00,000 per yearWe are seeking a skilled Qradar SOC Analyst / Consultant - L2 with 3-6 years of experience to join our dynamic Security Operations Center in Gurgaon/Gurugram. The ideal candidate will have hands-on experience with IBM QRadar SIEM
-
Soc Analyst
2 weeks ago
Gurgaon, Haryana, India Mynd Full time ₹ 9,00,000 - ₹ 12,00,000 per yearWe are looking for the candidates from Delhi/NCR for the position of IT Security Engineer for US client in Gurgaon locationCandidates from West and South location need not to applyJob descriptionJob Title: SOC Analyst Tier 2Looking for Immediate Joiners or who can Join within 15-20 Days.Location: GurgaonShift: Rotational Shift / US ShiftBudget: As per market...
-
SOC L1 Analyst
2 weeks ago
Gurgaon, Haryana, India Assystem Full time ₹ 9,00,000 - ₹ 12,00,000 per yearAssystem Stup is a full-service project delivery consultancy company offering master planning, comprehensive building design, engineering and project management services. We serve many clients in decarbonised energy, transportation, cities & territories, buildings and commercial, institutional, recreational and manufacturing facility infrastructures.As part...
-
Soc Analyst
2 weeks ago
Gurgaon, Haryana, India Path Mentors Staffing Solution Full time ₹ 9,00,000 - ₹ 12,00,000 per year3+ years of experience with one or more of the following technologies from an operator or administrator perspective: Microsoft servers, Linux servers, networking devices, security applications.Experience working in a customer support environment Required Candidate profileThe Analyst responds within established service levels to incidents and requests in an...
-
SOC Senior Engineer
18 hours ago
Gurgaon, Haryana, India Guardian Life Full time ₹ 1,04,000 - ₹ 1,30,878 per yearJob Description:Job Description SummaryProvide tier two operational support, leading team efforts in resolution of incidents and outages for information security technology and its dependencies on Public and Private Cloud computing environments, shared platforms, and operating systems for more than three of the following technologies:Ensuring team's...
-
SOC Analyst L2
3 days ago
Gurgaon, Haryana, India Rackspace Technology Full time ₹ 9,00,000 - ₹ 12,00,000 per yearWhat were looking forTo support our continued success and deliver a Fanatical Experience to our customers, Rackspace Cyber Defence is looking for an Indian based Security Operations Analyst(L2) to support Rackspaces strategic customers.This role is particularly well-suited to a self-starting, experienced and motivated Sec Ops Analyst, who has a proven record...
-
SOC Analyst L3
2 weeks ago
Gurgaon, Haryana, India Rackspace Technology Full time ₹ 15,00,000 - ₹ 25,00,000 per yearSOC Analyst L3 (Sentinel is must)Our purpose is to enable our customers to defend against the evolving threat landscape across on-premises, private cloud, public cloud and multi-cloud workloads.Our goal is to go beyond traditional security controls to deliver cloud-native, DevOps-centric and fully integrated 24x7x365 cyber defence capabilities that deliver a...
-
Senior Security Analyst
2 weeks ago
Gurgaon, Haryana, India Ahead Full time ₹ 15,00,000 - ₹ 20,00,000 per yearSOC Analysts at AHEAD monitor customer environments and perform Incident Detection, Validation, and Incident Reporting. SOC Analysts are the frontline of SOC and are customer-facing representatives. SOC Analysts are responsible for triaging events, incidents, and reporting validated incidents to the customer for incident response. Incumbents will possess...