Job Title: SOC Analyst - Security Operations
Location:
Designation:
Job Brief
SOC Analyst Security Operations
Key Responsibilities
- Perform daily SOC monitoring, detection, and incident response activities.
- Monitor security alerts from SIEM, SOAR, and other security platforms.
- Investigate and analyse security events to determine severity and impact.
- Create and update incident tickets, ensuring accurate documentation.
- Conduct internal and external security audits and assessments.
- Investigate security breaches, determine root causes, and recommend corrective actions.
- Support the improvement of incident response, forensic, and disaster recovery processes.
- Research emerging threats and update detection and mitigation strategies.
- Enforce security best practices and compliance policies.
- Assist in external compliance and regulatory audits.
- Prepare and submit daily, weekly, and monthly SOC operational reports.
- Coordinate with IT teams and vendors during incident resolution.
- Participate in 24x7 shift operations, including weekend/holiday rotations.
Required Skills & Experience
- Bachelor’s degree in Computer Science, Information Technology, or equivalent.
- –6 years of hands-on experience in cybersecurity/SOC operations.
- Strong understanding of:
- Network protocols, OS & database security.
- Cloud environments (Windows, Unix, Linux, MS Azure, Android, iOS).
- Malware analysis, compromise investigation, and forensics.
- SIEM/SOAR tools (rule tuning, correlation, incident handling).
- Vulnerability & penetration testing (web, OS, network, MDM, cloud).
- Hands-on experience with tools such as LogRhythm, LogRhythm NetMon, FortiAnalyzer, SolarWinds, Nessus, Acunetix, IBM AppScan, Qualys.
- Strong scripting skills (Python preferred).
- Knowledge of IDS, WAF, IP reputation systems, code review, and social engineering assessments.
- Familiarity with ISO 27001, PCI-DSS, GDPR, HIPAA, NIST, SOX, OWASP, OSSTMM, COSO frameworks.
Soft Skills
- Strong analytical and problem-solving skills.
- Excellent communication and collaboration skills.
- Ability to manage multiple priorities in a fast-paced environment.
- Willingness to work in rotating shifts for 24x7 SOC operations.
Certifications(At least one mandatory)
- CEH – Certified Ethical Hacker
- CompTIA Security+
- EC-Council Certified Incident Handler (ECIH)
- EC-Council Certified SOC Analyst (CSA)
Department:
Position Summary:
The Analyst - Governance, Risk & Compliance (GRC) will support the organization’s efforts in managing risks, ensuring compliance with relevant regulations and policies, and promoting strong governance practices. This role will involve assisting in the identification, assessment, and mitigation of risks, as well as ensuring that compliance and governance frameworks are adhered to across the organization.
Key Responsibilities:
- Assist in the development, implementation, and monitoring of risk management frameworks and processes.
- Identify and assess risks across various business functions and processes.
- Support the development and enforcement of policies and procedures to ensure compliance with applicable laws, regulations, and internal standards.
- Coordinate and support compliance audits, reviews, and assessments.
- Assist in reporting and tracking risk management activities, including the status of mitigation plans and compliance efforts.
- Conduct research and analysis on regulatory requirements and industry best practices to ensure the organization’s adherence to GRC standards.
- Collaborate with other departments to ensure effective governance processes and practices are implemented across the organization.
- Maintain accurate records and documentation related to risk and compliance activities.
- Assist in the development of risk management and compliance training for staff members.
- Participate in incident response and remediation efforts when compliance or governance violations are detected.
Qualifications:
- Bachelor's degree in Business, Finance, Risk Management, Information Technology, or a related field.
- Relevant certifications (e.g., CRISC, CISA, CISM, or ISO 27001) are a plus.
- Strong understanding of risk management principles, governance frameworks, and compliance regulations.
- Experience in governance, risk, and compliance (GRC) processes and tools is preferred.
- Ability to analyze complex information, identify key issues, and develop practical solutions.
- Strong attention to detail, organizational, and time-management skills.
- Excellent communication skills, both written and verbal, with the ability to effectively interact with stakeholders at all levels of the organization.
- Proficiency in Microsoft Office Suite (Excel, Word, PowerPoint) and GRC software is a plus.
Personal Attributes:
- Analytical mindset with the ability to problem-solve.
- Proactive and self-driven, able to work independently and within a team.
- Strong interpersonal skills and the ability to work well with cross-functional teams.
- High level of integrity and professionalism.
Ability to manage multiple tasks and deadlines effectively.