Security Operations Center Analyst

5 years

0 Lacs

Posted:3 days ago| Platform: Linkedin logo

Apply

Work Mode

On-site

Job Type

Full Time

Job Description

Role Summary

L1 SOC Analyst (3–5 years)


Key Responsibilities

1. Real-Time Monitoring (Eyes on Glass)

  • Continuous monitoring of security events across SIEM platforms such as

    Azure Sentinel, Splunk ES, Google SecOps (formerly Chronicle), QRadar

    .
  • Identify anomalies, suspicious behavior, and early indicators of compromise.
  • Maintain situational awareness of enterprise threat posture during the shift.

2. Alert Triage & Incident Escalation (L1 Scope)

  • Perform initial triage of alerts related to malware, phishing, endpoint anomalies, lateral movement, access abuse, and network-based threats.
  • Differentiate true positives from false positives through log correlation and event validation.
  • Escalate verified incidents to L2/L3 teams as per incident playbooks and SLAs.
  • Document investigations thoroughly within

    ServiceNow, Jira, Freshservice

    , or similar ITSM systems.

3. Endpoint & Network Security Support

  • Monitor and respond to signals from EDR tools such as

    CrowdStrike, Carbon Black, Microsoft Defender

    .
  • Review firewall, IDS/IPS, and proxy logs (Palo Alto, Fortinet, Cisco, Snort/Suricata).
  • Support initial containment steps under supervision—isolating endpoints, blocking malicious domains/IPs, disabling accounts, etc.

4. DLP, Access & Cloud Security Oversight

  • Monitor DLP alerts via

    Forcepoint, Microsoft Purview

    , or equivalent solutions.
  • Validate RBAC violations, privilege escalations, and suspicious access attempts.
  • Review cloud-specific alerts in

    Azure Security Center

    , API security dashboards, and identity protection tools.

5. Reporting, Compliance & Documentation

  • Prepare incident summaries, shift handover reports, and event logs with clear timelines and evidence.
  • Follow SOPs aligned to compliance frameworks such as

    ISO 27001, HIPAA, GDPR

    .
  • Participate in monthly/quarterly reporting related to SOC performance, incident trends, and false positive reduction.

6. Continuous Improvement

  • Contribute to SIEM rule tuning, alert optimization, and detection enhancements.
  • Support development of SOC playbooks, detection use cases, and knowledge-base content.
  • Stay current with threat landscapes, MITRE ATT&CK techniques, malware trends, and cloud security patterns.


Required Skills & Competencies

1. Technical Skills

  • Hands-on experience with SIEM platforms:

    Splunk ES, Azure Sentinel, Google SecOps (Chronicle), QRadar

    .
  • Strong understanding of EDR tools:

    CrowdStrike, Carbon Black, Microsoft Defender

    .
  • Exposure to DLP tools such as

    Forcepoint

    , Microsoft DLP, or Symantec DLP.
  • Familiarity with:
  • IDS/IPS systems
  • Firewall logs & network telemetry
  • RBAC, access control & authentication mechanisms
  • Malware/phishing analysis basics
  • Cloud security fundamentals (Azure preferred)

2. Soft Skills

  • Strong analytical mindset and attention to detail.
  • Effective communication skills for escalation and reporting.
  • Ability to work in a 24x7 SOC with high operational discipline.
  • Team player with strong documentation habits.


Experience & Qualifications

  • 3–5 years

    of hands-on experience in SOC operations, security monitoring, or incident response.
  • Bachelor’s degree in Computer Science, Information Security, or related field.
  • Preferred certifications:

    SC-200, AZ-900, Security+, CySA+, CEH

    .

Mock Interview

Practice Video Interview with JobPe AI

Start Job-Specific Interview
cta

Start Your Job Search Today

Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

Job Application AI Bot

Job Application AI Bot

Apply to 20+ Portals in one click

Download Now

Download the Mobile App

Instantly access job listings, apply easily, and track applications.

coding practice

Enhance Your Skills

Practice coding challenges to boost your skills

Start Practicing Now

RecommendedJobs for You