Source description
About the role
As a SOC Analyst at our Cyber Security Operations team, your role involves monitoring, detecting, investigating, and responding to security incidents to uphold the organization's security posture. The responsibilities of each SOC Analyst level are outlined as follows: - SOC Analyst L1: - Monitor security events and alerts using SIEM tools. - Perform initial triage and analysis of security incidents. - Escalate critical incidents to L2/L3 teams. - Create and maintain incident reports and documentation. - Monitor network, endpoint, and cloud security alerts. - SOC Analyst L2: - Investigate and analyze security incidents in depth. - Conduct threat hunting and forensic analysis. - Review and tune SIEM use cases and alert rules. - Coordinate incident response activities. - Provide guidance and support to L1 analysts. - SOC Analyst L3: - Lead complex incident investigations and response efforts. - Perform advanced threat hunting and malware analysis. - Develop detection use cases and security automation. - Conduct root cause analysis and recommend remediation actions. - Mentor L1 and L2 analysts and contribute to SOC strategy improvements. To excel in this role, you should possess the following qualifications: - Experience with SIEM platforms such as Splunk, QRadar, Sentinel, ArcSight, or LogRhythm. - Knowledge of incident response and threat management. - Understanding of network security, firewalls, IDS/IPS, EDR, and security monitoring tools. - Familiarity with cybersecurity frameworks and best practices. - Strong analytical and troubleshooting skills. - Excellent communication and documentation abilities. Preferred certifications include CEH, CompTIA Security+, CySA+, GCIH, and CISSP (preferred for L3). This full-time position offers a hybrid work mode, providing you with the opportunity to contribute to a dynamic Cyber Security Operations team. As a SOC Analyst at our Cyber Security Operations team, your role involves monitoring, detecting, investigating, and responding to security incidents to uphold the organization's security posture. The responsibilities of each SOC Analyst level are outlined as follows: - SOC Analyst L1: - Monitor security events and alerts using SIEM tools. - Perform initial triage and analysis of security incidents. - Escalate critical incidents to L2/L3 teams. - Create and maintain incident reports and documentation. - Monitor network, endpoint, and cloud security alerts. - SOC Analyst L2: - Investigate and analyze security incidents in depth. - Conduct threat hunting and forensic analysis. - Review and tune SIEM use cases and alert rules. - Coordinate incident response activities. - Provide guidance and support to L1 analysts. - SOC Analyst L3: - Lead complex incident investigations and response efforts. - Perform advanced threat hunting and malware analysis. - Develop detection use cases and security automation. - Conduct root cause analysis and recommend remediation actions. - Mentor L1 and L2 analysts and contribute to SOC strategy improvements. To excel in this role, you should possess the following qualifications: - Experience with SIEM platforms such as Splunk, QRadar, Sentinel, ArcSight, or LogRhythm. - Knowledge of incident response and threat management. - Understanding of network security, firewalls, IDS/IPS, EDR, and security monitoring tools. - Familiarity with cybersecurity frameworks and best practices. - Strong analytical and troubleshooting skills. - Excellent communication and documentation abilities. Preferred certifications include CEH, CompTIA Security+, CySA+, GCIH, and CISSP (preferred for L3). This full-time position offers a hybrid work mode, providing you with the opportunity to contribute to a dynamic Cyber Security Operations team.
More at Informica Solutions
Related open roles
L2 Support Engineer / L2 Application Engineer - Hyderabad (3+ Years)
Hyderabad
Python Developer - 7+ Years (Bengaluru) (India)
Bangalore
Full Stack.Net Developer - Bengaluru (5+ Years) (Chennai)
Chennai
Senior System & Network Admin - Kuala Lumpur/Hyderabad (India)
Mumbai
Snowflake Architect - Mumbai (10 - 12 Years) (India)
Mumbai
Data Architect - 12+ Years (Hyderabad, Bengaluru & Chennai) (India)
Chennai