Source description
About the role
L2 Security Operations Engineer End Point Security Experience 5+ years in SOC, Endpoint Detection & Incident Response Role Objective The L2 End Point Security Engineer is responsible for advanced threat investigation, incident leadership, root-cause analysis, and response strategy execution. This role acts as a technical escalation point and subject-matter expert (SME) for endpoint and NAC security domains. Network Access Control ClearPass Aruba Investigate advanced NAC incidents and repeated violations Lead response for compromised or rogue endpoints Advise on posture policies, strategies, and improvements Correlate NAC events with endpoint and SIEM data SOC Leadership & Continuous Improvement Serve as technical escalation authority for L1 teams Develop and improve SOPs, runbooks, and detection playbooks Support SOC maturity initiatives (use-case enhancement, automation inputs) Lead incident war rooms and stakeholder communication (technical bridge) Provide expert input for RFPs, audits, and customer reviews Skills & Expertise Technical Advanced endpoint threat analysis & IR Strong malware/ransomware understanding MITRE ATT&CK mapping Endpoint forensic fundamentals Cross-domain correlation (Endpoint + NAC + SIEM) Tools Multiple EDR platforms SIEM threat correlation Threat intelligence feeds Incident response documentation frameworks Certifications (Strongly Preferred CEH / GCED / GCIA Vendor Advanced EDR certifications Incident Response or Digital Forensics certifications If Interested Share your CV on akanksha@alliancerecruitmentagency.com Compensation: 400,000.00 - 650,000.00 per year Work Location: In person L2 Security Operations Engineer End Point Security Experience 5+ years in SOC, Endpoint Detection & Incident Response Role Objective The L2 End Point Security Engineer is responsible for advanced threat investigation, incident leadership, root-cause analysis, and response strategy execution. This role acts as a technical escalation point and subject-matter expert (SME) for endpoint and NAC security domains. Network Access Control ClearPass Aruba Investigate advanced NAC incidents and repeated violations Lead response for compromised or rogue endpoints Advise on posture policies, strategies, and improvements Correlate NAC events with endpoint and SIEM data SOC Leadership & Continuous Improvement Serve as technical escalation authority for L1 teams Develop and improve SOPs, runbooks, and detection playbooks Support SOC maturity initiatives (use-case enhancement, automation inputs) Lead incident war rooms and stakeholder communication (technical bridge) Provide expert input for RFPs, audits, and customer reviews Skills & Expertise Technical Advanced endpoint threat analysis & IR Strong malware/ransomware understanding MITRE ATT&CK mapping Endpoint forensic fundamentals Cross-domain correlation (Endpoint + NAC + SIEM) Tools Multiple EDR platforms SIEM threat correlation Threat intelligence feeds Incident response documentation frameworks Certifications (Strongly Preferred CEH / GCED / GCIA Vendor Advanced EDR certifications Incident Response or Digital Forensics certifications If Interested Share your CV on akanksha@alliancerecruitmentagency.com Compensation: 400,000.00 - 650,000.00 per year Work Location: In person