Job Description SOC Analyst – Level 2
We are seeking a proactive Senior SOC Analyst (L2) to support 24x7 Security Operations Center (SOC) functions. The role focuses on advanced security monitoring, incident triage, analysis, and response coordination across enterprise environments, with additional support for Windows (Wintel) and network security operations.
Key Responsibilities:
· Monitor and respond to security alerts in a 24x7 SOC environment.
· Perform L2 triage, validation, and analysis of security incidents.
· Investigate security events using SIEM, EDR, and monitoring tools.
· Perform in-depth incident analysis including scope, impact, and root cause indicators.
· Escalate complex incidents to L3 teams with complete documentation and evidence.
· Support Windows Server security operations including Active Directory, GPO, DNS, and DHCP troubleshooting.
· Assist in network security operations including firewall rule checks, VPN troubleshooting, and IDS/IPS monitoring.
· Collaborate with network and infrastructure teams for threat containment and remediation.
· Participate in threat hunting and proactive security monitoring activities.
· Analyze logs, endpoint behavior, and network traffic for anomalies.
· Support vulnerability management and patch coordination.
· Maintain incident records, timelines, and shift handover documentation.
· Ensure adherence to security policies, frameworks, and compliance standards.
· Coordinate with Client , infrastructure, cloud, and application teams during major incidents
· Participate in risk review and change advisory discussions
Required Technical Skills:
· Experience in SOC / Security Operations / Command Center environments.
· Strong hands-on experience with Windows Server and Active Directory (GPO, DNS, DHCP).
· Knowledge of network security tools including firewalls, proxies, IDS/IPS, and VPNs.
· Experience with SIEM platforms such as Microsoft Sentinel, Wazuh, or Seceon.
· Familiarity with EDR tools for endpoint monitoring and response.
· Understanding of incident response frameworks (NIST, SANS).
· Strong skills in log analysis and security event investigation.
· Ability to work in a 24x7 high-pressure operational environment.
Qualifications:
· Bachelor’s degree in computer science, Information Technology, Cybersecurity, or a related field.
· Experience in SOC, Security Operations, or IT Security Command Center environments.
· Strong hands-on experience with Windows Server administration, including Active Directory, GPO, DNS, and DHCP.
· Experience working with SIEM tools such as Microsoft Sentinel, Wazuh, or Seceon OTM.
· Exposure to EDR platforms for endpoint monitoring, detection, and response.
· Good understanding of network security components including firewalls, proxies, IDS/IPS, and VPNs.
Pay: ₹950,000.00 - ₹1,400,000.00 per year
Benefits:
- Health insurance
- Life insurance
- Paid sick time
- Paid time off
- Provident Fund
Work Location: In person