L2 SOC Analyst

5 - 8 years

10 - 20 Lacs

Posted:1 week ago| Platform: Naukri logo

Apply

Work Mode

Work from Office

Job Type

Full Time

Job Description


About us

BluSapphire is a cloud-native, AI-powered cybersecurity platform that helps enterprises detect and mitigate threats efficiently, reducing business risk and operational burden.

Their Beyond XDR platform uses big data analytics to process overwhelming security alerts, enabling swift breach detection and response. This results in faster time-to-value, reduced human intervention, and enhanced security operations.

Position Details L2 SOC Analyst

Continuing its strategic expansion, BluSapphire is enhancing the capabilities of the Security Operations Center and seeks experienced, dynamic professionals for the L2 SOC Analyst role. This position plays a pivotal role in the incident response team, requiring a strong background in cybersecurity, client interaction, and a proactive approach. The L2 SOC Analyst operates advanced security monitoring solutions, ensuring swift responses to identified security events. The role entails working in a shift schedule to provide 24/7 coverage, following an initial ramp-up period.

Location :

Desired Qualification

Experience

Employment Type

Job Responsibilities

  • Act as an escalation point for high and critical severity security incidents and conduct thorough investigations to determine potential impact and understand the extent of compromise.
  • Verify and authenticate events, alerts, and incidents reported by L1 analysts.
  • Analyze attack patterns, Tools, Techniques and Procedures (TTPs) to identify methods of attacks and attack life cycle.
  • Defining, planning, implementing, maintaining, and upgrading security measures, policies, and controls.
  • Carry out in-depth investigation and correlation and work with the stakeholders towards mitigation and closure of critical, high severity and other complex incidents.
  • Developing and implementing novel threat detection content, rules, and use cases for deployment in the SIEM platform involves working with diverse data sets, including Proxy, VPN, Firewall, DLP, etc. This includes the creation of sophisticated and advanced rules while ensuring precise fine-tuning for optimal performance.
  • Conduct analysis to gather evidence, validate root cause and analyze the extent of compromise leveraging Client’s security toolset.
  • Collaborate with cross-functional teams, to ensure end to end management of security incident lifecycle.
  • Conduct thorough investigations to identify true positives from false positives, prioritize incidents, and recommend appropriate actions.
  • Respond to incident escalations and provide solid recommendations.
  • Identify and leverage emerging threat intelligence (IOCs, updated rules, etc.) to identify affected systems and the scope of the attack.
  • Ensure process compliance through regular reviews and updates of existing SOPs, processes, standards, guidelines, and checklists on a periodic basis (quarterly/half-yearly). Additionally, assist in the development and improvement of Security Operations processes, involving the creation or modification of SOPs, Playbooks, and Work instructions.
  • Perform Advanced diligent Threat correlation between multiple security event sources such as firewall logs, threat intelligence feeds, AV, IDS, IPS, and MDR solutions
  • Train L1/L2 via planned knowledge transfer & internal training sessions.

Job Requirements

  • Minimum 5 years’ experience working in a large-scale IT environment with focus on Cyber / Information Security.
  • Strong Knowledge of Network security (Firewalls, Proxies, IDS/IPS, Vulnerability Scanner).
  • Seasoned in Digital forensics, malware assessment, and Threat Hunting.
  • 5+ years of hands-on experience on leading analytical platforms like Splunk, Qradar, Hunters, SumoLogic, Sentinel. Knowledge of other security technologies (such as Email Security Gateway, SOAR, IPS/IDS, Proxy, EDR, TI, DLP, CASB, PAM etc.) will be an added advantage.
  • Deep understanding of MITRE ATT&CK Framework.
  • Customer-facing, with good report-writing skills and strong communication skills at all levels.
  • Ability to provide technical and service leadership to L1 and other L2 analysts. Be a thought leader in the SOC.
  • Knowledge of Security Best Practices and Concepts.
  • Conducting vulnerability testing and risk analyses to assess security and performing internal. and external security audits.
  • Strong analytical and problem-solving skills.
  • Lead incident investigation and response activity
  • Participate in on-call rotation for after-hours security incident escalations.
  • Capability to communicate and listen to needs from organizational or client stakeholders.
  • Staying up to date with emerging security threats
  • Well-developed logical thinking capabilities, to be able to investigate cases.
  • Reliability and overall good communication skills – both verbal and written.
  • Able to work in shift schedule.
  • Staying up to date with emerging security threats.
  • Good interpersonal skills – clear communication, attentive & careful listening, empathetic behavior, being positive, supporting useful ideas & honest efforts of colleagues, being positive.

Nice To Have

  • Ethical hacking certification or CISSP or GCIH or training is a major advantage.

Interested candidates can send their resumes to psanginatham@blusapphire.com along with the below details.

Name:

Total Exp:

Relavant Exp:

Current Location:

Preferred Location:

Current CTC:

Expected CTC :

Notice Period :

Available to attend face to face Interview, Yes/NO :

Mock Interview

Practice Video Interview with JobPe AI

Start Job-Specific Interview
cta

Start Your Job Search Today

Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

Job Application AI Bot

Job Application AI Bot

Apply to 20+ Portals in one click

Download Now

Download the Mobile App

Instantly access job listings, apply easily, and track applications.

coding practice

Enhance Your Skills

Practice coding challenges to boost your skills

Start Practicing Now

RecommendedJobs for You

thiruvananthapuram, all india

kochi, hyderabad, thiruvananthapuram

thiruvananthapuram, kerala

hyderabad, telangana, india