Job Description
- Investigate complex security incidents escalated from L1
- Perform detailed log analysis using KQL in Microsoft Sentinel
- Correlate events across Defender XDR, Azure AD/Entra ID, M365, endpoints, and network sources
- Identify true positives, scope of compromise, and attack patterns
- Support containment actions (account disablement, endpoint isolation, token revocation, etc.)
- Conduct threat hunting activities
- Tune and optimize analytics rules to reduce false positives
- Maintain clear investigation documentation in ticketing systems
- Participate in incident reviews and continuous improvement initiatives
Required Technical Skills
- 58 years of SOC experience
- Minimum 5 years hands-on experience inSOC/ Microsoft Sentinel
- Solid knowledge of KQL (Kusto Query Language)
- Experience with log analysis (Windows, Azure, M365, firewall, proxy, EDR)
- Understanding of Microsoft Defender XDR ecosystem
- Knowledge of Azure AD / Entra ID security events
- Familiarity with MITRE ATTCK framework
- Understanding of phishing, malware,
lateral movement, and account compromise scenarios
- Experience with incident response processes
- Strong analytical and investigation skills
- Ability to determine attack scope and impact
- Clear and structured documentation ability
- Ability to work in 24x7 shift model
Certifications (Preferred)
- Microsoft SC-200 (Security Operations Analyst)
- Microsoft AZ-500 (Azure Security Engineer)
- CompTIA Security+
- CEH (Certified Ethical Hacker)
- ECIH ( Incident Handler)
Relocation Supported:Yes
Visa Sponsorship Approved:No
At Fujitsu, we are committed to an inclusive recruitment process that values the diverse backgrounds and experiences of all applicants. We believe that hiring people from a wide variety of backgrounds makes us stronger, not because it''s the right thing to do, but because it allows us to draw on a wider range of perspectives and life experiences.
📌 Security technician (Noida)
🏢 Fujitsu
📍 Noida