SOC L3

7 days ago


Bengaluru, Karnataka, India Onzestt Services Full time


• Use Case Development: Knowledge of organizational risks and threats to

design relevant and effective detection rules.


• Log Sources: Understanding log formats, sources, and parsing for accurate

data utilization in use cases.


• SIEM and Analytics Tools: Familiarity with platforms like Securonix, Sentinel,

or Splunk to implement and monitor use cases.


• Alert Logic: Ability to define thresholds, logic, and conditions to reduce false

positives and improve detection accuracy.


•  Incident Response Needs: Awareness of incident response workflows to

align use cases with actionable intelligence.


• Performance Metrics: Skills to create and optimize KPI/KRI reports to track

detection and response performance.


• Fine-Tuning Methodology: Experience in analyzing alert data to refine use

cases and adjust logic periodically. Detect and respond to company-wide

security incidents, coordinating cross-functional teams to mitigate and

eradicate threats.


• Incident response lead for high impact cyber security incidents


• Triage events, escalations and incidents to determine remediation and

resolution actions


• Coordinate appropriate response activities across teams or directly with

stakeholders to rapidly remediate potential threats


• Develop playbooks to improve processes and information sharing across

teams


• Initiative and project-related support to provide Security Operations and

Incident Response perspective and subject matter expertise


• Contribute technical and process improvements within the team


• Participate in current operations, on call rotation. Which includes some after-

hours responsibilities and escalations.

Primary Skill: (Must Have)


• Experience in Cyber Threat incident response, vulnerability research,

malware analysis and exploit investigation.


• Demonstrated experience in computer security related disciplines, including

but not limited to the following subject areas: software vulnerabilities and

exploitation, host forensics, malware analysis, network traffic analysis, Insider

Threat and web-focused security topics.


• Knowledgeable about modern security related subjects and trends, for

example, Advanced Persistent Threat (APT), Spear Phishing, and credential

compromise techniques


• Proven ability to drive large scale, high visibility projects with high

collaboration and leadership


• Excellent judgment, decision making skills, and the ability to work under

pressure


• Excellent written and oral communication skills


• Excellent presentation skills and experience of presenting to senior

management


• Solid understanding of events, related fields in log records and alerts reported

by various data sources such as Windows/Unix systems, IDS/IPS, AV,

HIDS/HIPS, WAFs, firewalls, and web proxies


• Develop and improve the existing EDR Specific usecases for enhanced

detection.


• Analyze the TTP's of the emerging threats and co-ordinate with the EDR team

to develop use cases at EDR.


• Closely co-ordinate and provide continuous support for CSIRT team in an

event of a P1/P2 Security Incidents.


• Conduct a Security Incident tabletop simulation internally with in SOC to

gauge the process and track improvements.


•  Handle BEC emails targeted against VIP users within the Organization



  • Bengaluru, Karnataka, India Nokia Full time

    The incumbent will work in feature development of the GX platform which is part of the optical division of Nokia. The role involves feature development , planning technical requirements, and managing product evolution through design and documentation. The incumbent will also contribute to improving product performance and support the integration of...

  • SOC Level 1 Analyst

    2 days ago


    Bengaluru, Karnataka, India Cysigil Full time

    SOC Level 1 AnalystLocation:Bengaluru, IndiaExperience:0–3 YearsEmployment Type:Full-Time (Onsite Only)About the RoleWe are hiring aSecurity Operations Center (SOC) Level 1 Analystfor a full-time onsite role. As a front-line cyber defender, you will monitor, analyze, and respond to security events using industry-leading tools likeElastic SIEM,Microsoft...


  • Bengaluru, Karnataka, India Saviynt Full time US$ 1,43,000 - US$ 2,31,000 per year

    Saviynt is an identity authority platform built to power and protect the world at work. In a world of digital transformation, where organizations are faced with increasing cyber risk but cannot afford defensive measures to slow down progress, Saviynt's Enterprise Identity Cloud gives customers unparalleled visibility, control and intelligence to better...

  • Senior SOC Analyst

    2 days ago


    Bengaluru, Karnataka, India Wrike Full time

    Wrike is the most powerful work management platform. Built for teams and organizations looking to collaborate, create, and exceed every day, Wrike brings everyone and all work into a single place to remove complexity, increase productivity, and free people up to focus on their most purposeful work.Our vision:A world where everyone is free to focus on their...


  • Bengaluru, Karnataka, India 7Rays Semiconductors Full time ₹ 20,00,000 - ₹ 25,00,000 per year

    Title : CPU Physical Design LeadExp- 10+ YearsHigh speed core development – Synth, constraints, and Physical DesignEngineer must have significant knowledge on highspeed cores including CPU, GPU, DDR etcMust have synthesis & Constraints experience with PPA in mindMust work with RTL designers for optimizations and feedbackMust be knowledgeable on silicon...


  • Bengaluru, Karnataka, India Next Digital Recruitment Full time ₹ 8,00,000 - ₹ 24,00,000 per year

    Job Title: Cyber Security Engineer L3 and Team LeadsLocations: BengaluruPosition Type: Full-TimeExperience: 8+ yearsKey Responsibilities:● Design, deploy, and manage security architectures focusing on SSE, SASE, and Identity Management solutions.● Operate and maintain security tools and platforms, including XDR systems and SOC environments.● Monitor,...

  • Soc Analyst 2

    1 week ago


    Bengaluru, Karnataka, India Capgemini Full time

    Key Responsibilities:Perform incident analysis and escalate when necessary.Document findings for seamless handover to L3 or other responders.Conduct threat research and data analysis.Coordinate with IT/Application/Infrastructure teams for issue resolution.Execute deep dives and threat hunts; propose corrective actions.Develop detection use cases based on...


  • Bengaluru, Karnataka, India St. Fox Full time

    Job Overview:St. Fox is seeking skilled Cyber Security Engineers at multiple levels, including L1, L2, L3, and Team Leads, to join our growing team of experts. We are looking for dedicated professionals who are proficient in a wide range of cyber security technologies and frameworks, with a strong focus on Secure Service Edge (SSE), Secure Access Service...


  • Bengaluru, Karnataka, India UST Full time

    Provide L2 operational support for multi-vendor network security platforms (Fortinet, Palo Alto, Check Point, Juniper, Cisco ASA).Troubleshoot and resolve firewall, proxy, and security gateway incidents raised by L1 or automated monitoring systems.Perform daily health checks on firewalls, IPS, load balancers, and security gateways (CPU/memory utilization,...

  • Group Manager I

    1 day ago


    Bengaluru, Karnataka, India UST Full time

    Role DescriptionRole Proficiency:Should be able to manage multiple teams or domains or services by considering business strategies customer requirements compliance requirements laws and regulations etc. with guidance from directors.OutcomesRoutine management of the Information Security and other compliance framework and systems.Leadership and strategic...