Security Operations Center Analyst- L2

5 hours ago


Mumbai, Maharashtra, India Intertec Softwares Full time ₹ 12,00,000 - ₹ 24,00,000 per year

  JOB TITLE:

L2 Security Operations Center (SOC) Analyst

Number of Positions

One

JOB PURPOSE:

To act as a senior-level analyst in the 24x7 Security Operations Center (SOC), responsible for advanced security event triage, log analysis, threat investigation, and response coordination using modern security platforms such as SIEM, SOAR, EDR, and Threat Intelligence systems. The L2 SOC Engineer will also contribute to dashboard optimization, incident documentation, playbook updates, and assist in the administration of key tools such as Splunk and CrowdStrike.

QUALIFICATION:

Graduation

CERTIFICATIONS:

  • CompTIA CySA+ / Security+ / CEH
  • Splunk Core Certified User / Power User
  • Microsoft AZ-500 / SC-200
  • CrowdStrike Certified Falcon Responder (CFR)

Any of the above.

EXPERIENCE:

6+

REPORTING TO:

SOC Lead - Mohammed Sayed

RESPONSIBILITIES (INCLUDES ALL TASKS):

Security Monitoring & Incident Handling

· Triage and investigate escalated alerts from SIEM, XDR (CrowdStrike), EDR, email, and network security tools.

· Perform log correlation and in-depth investigations using Splunk/Elastic dashboards and queries.

· Handle incidents across endpoints, cloud (Azure/OCI/GCP), email, DLP, and network layers.

· Respond to phishing, malware, unauthorized access, and insider threat alerts.

· Support forensic triage using EDR tools and sandbox results (e.g., Falcon Sandbox).

SOC Engineering & SIEM Operations

· Create, fine-tune, and optimize detection rules and dashboards in Splunk.

· Maintain and troubleshoot Splunk forwarders, heavy forwarders, and dashboards under guidance.

· Participate in log onboarding and validation for new sources (e.g., CSPM, EDR, DLP, Cloud tools).

· Support automation workflows and enrichment via playbooks.

Tool Proficiency & Admin Support

· Hands-on knowledge of:

· SIEM: Splunk, Elastic (optional)

· EDR/XDR: CrowdStrike

· Email Security: Mimecast

· DLP: Forcepoint (Web/Email), Netskope (CASB/ZTNA)

· Vulnerability Management: Nessus, Qualys

· Threat Intel Tools: IOC lookups, sandboxing tools, OSINT

Documentation & Compliance

  • Maintain updated incident records, timelines, and evidence in ITSM or ticketing platforms.
  • Contribute to SOP/Playbook updates, audit reports, and RCA documentation.
  • Participate in compliance checks for ISO 27001 and internal audits.

Continuous Improvement

  • Suggest detection logic improvements based on new threats or recurring false positives.
  • Engage in purple teaming and threat hunting exercises as needed.

TECHNICAL SKILLS /COMPETENCIES:

MANDATORY

  • 3-6 years of relevant experience in a SOC environment.
  • Strong hands-on knowledge of SIEM (Splunk) and EDR (CrowdStrike).
  • Experience in log analysis, threat detection, and incident handling.
  • Good understanding of TCP/IP, DNS, HTTP, VPN, authentication, cloud security basics.
  • Familiarity with ISO 27001, or NIST IR process is a plus.
  • Certifications such as CompTIA CySA+, CEH, Splunk Core/User, or AZ-500 preferred.

OPTIONAL

SOFT SKILLS:

MANDATORY

  1. Bachelor's degree in computer science, Information Technology, or related field.
  2. At least 6 years of experience in support operations
  3. Strong analytical mindset and attention to detail.
  4. Ability to prioritize under pressure and respond within SLA timelines.
  5. Proactive, accountable, and a team player.
  6. Willingness to work in shifts (24x7 SOC coverage) if required.


  • Mumbai, Maharashtra, India Intertec Softwares Pvt Ltd Full time ₹ 12,00,000 - ₹ 36,00,000 per year

      JOB TITLE: L2 Security Operations Center (SOC) Analyst Number of Positions One JOB PURPOSE: To act as a senior-level analyst in the 24x7 Security Operations Center (SOC), responsible for advanced security event triage, log analysis, threat investigation, and response coordination using modern security platforms such as SIEM, SOAR, EDR, and Threat...

  • Network Security

    2 weeks ago


    Mumbai, Maharashtra, India Sattrix Information Security Full time ₹ 8,00,000 - ₹ 25,00,000 per year

    Device Management (IDM) Support Engineers – L1, L2 & L3Location: Chennai, Hyderabad and MumbaiIDM (Skills required):Forcepoint - DLPRSAFIM - Trellix/TripwireSeclorePIM - Arcon / Cyber ArcEmail - O 365 - DefenderOpen Positions:L3 - Device Management Support Engineer / SMEExperience: 10–12 years (Minimum 7 years in Security Operations, Architecture &...

  • Security Admin L2

    7 days ago


    Mumbai, Maharashtra, India HireWand Technologies Full time ₹ 4,00,000 - ₹ 6,00,000 per year

    Job Brief:We are seeking a skilled Security Admin L2 to support security investigations, incident response, and SIEM monitoring.In this role, you will analyze alerts, guide L1 analysts, coordinate incident response, and perform deep-dive investigations across various security technologies. You will also help optimize SOC processes, fine-tune SIEM rules, and...


  • Navi Mumbai, Maharashtra, India ESDS Software Solution Limited Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    We are seeking a highly skilled and experienced SOC Lead with 4 to 8 years of hands-on experience in cybersecurity, specializing in threat detection, incident management, you will be responsible for overseeing the operation and performance of our Security Operations Center, ensuring efficient threat monitoring, detection, and response for multiple client...


  • Navi Mumbai, Maharashtra, India Esds Software Solutions Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    We are seeking a highly skilled and experienced SOC Lead with 4 to 8 years of hands-on experience in cybersecurity, specializing in threat detection, incident management, you will be responsible for overseeing the operation and performance of our Security Operations Center, ensuring efficient threat monitoring, detection, and response for multiple client...


  • Mumbai, Maharashtra, India Wipro Full time ₹ 4,00,000 - ₹ 8,00,000 per year

    Job DescriptionJob Title: Cyber Security Analyst L2Req Id: 104138City: MumbaiState/Province: MaharashtraPosting Start Date: 10/16/25Wipro Limited (NYSE: WIT, BSE: 507685, NSE: WIPRO) is a leading technology services and consulting company focused on building innovative solutions that address clients' most complex digital transformation needs. Leveraging our...


  • Mumbai, Maharashtra, India Sattrix Information Security Full time ₹ 4,00,000 - ₹ 12,00,000 per year

    Job Title:Network Security Engineers (L1 / L2 / L3)Location:Chennai / Mumbai / HyderabadEmployment Type:Full-time | Client RoleShifts: Rotational ShiftsWork Mode:Work from OfficeAbout the Role:We are looking for highly skilled and motivatedNetwork Security Engineers (L1, L2 & L3). You'll be responsible for managing, operating, and optimizing a wide range of...

  • Cyber Analyst L2

    2 days ago


    Mumbai, Maharashtra, India L&T Technology Services Ltd. Full time ₹ 5,00,000 - ₹ 10,00,000 per year

    LTTS IndiaMumbaiJob DescriptionJob Description: Cyber AnalystLocation: Navi Mumbai, Maharashtra, IndiaLevel: L2 (Based on experience and skill set)Job SummaryThe Cyber Analyst will act as the first point of contact for citizens reaching out to Maharashtra Cyber. The role involves handling cyber-related grievances, providing timely responses, supporting...

  • Security Analyst

    6 days ago


    Mumbai, Maharashtra, India SHI LOCUZ ENTERPRISE SOLUTIONS PVT LTD Full time ₹ 4,00,000 - ₹ 12,00,000 per year

    Security Analyst Level – L1 Location – Mumbai Exp – 2+ Yrs Proven working experience 2-3 year(s)) in a security operations center (SOC). Hands-on experience with security tools (e.g., SIEMs like Splunk or QRadar, antivirus/EDR, firewalls). Basic understanding of networking (TCP/IP, DNS, VPNs) and common attack vectors (phishing, malware,...


  • Mumbai, Maharashtra, India APTO SOLUTIONS - EXECUTIVE SEARCH & CONSULTANTS Full time ₹ 6,00,000 - ₹ 18,00,000 per year

    #Hiring Alert – Site Reliability Engineer L2 (SRE) Location: Mumbai - contractualExperience - 5+ YearsNotice - Immediate Joiners Apply Now: Skills & Experience:5+ years of proven tech experience.Hands-on in Data Center Operations (DCOps) – Linux installation, configuration & troubleshooting.Strong experience in Java, container technologies...