Security Analyst (Serilingampalle (M))

Security Analyst (Serilingampalle (M))

12 Aug
|
NopalCyber
|
Serilingampalle (M)

12 Aug

NopalCyber

Serilingampalle (M)

Role
Overview

The SOC L2
Analyst is responsible for in-depth security investigation, incident analysis,
and response coordination across enterprise environments. This role focuses on
correlating multi-domain telemetry (SIEM, EDR/XDR, Cloud, DLP, DAM, Email
Security) to determine root cause, assess impact, and recommend containment
actions. The analyst acts as a technical escalation point for L1 and
contributes to improving detection use cases and SOC maturity.



Key
Responsibilities
- Perform
deep-dive investigations on alerts from across SIEM, EDR/XDR, Cloud, DLP, DAM,
and Email Security tools
- Correlate
logs and telemetry to reconstruct attack timelines and identify root cause
- Investigate
advanced threats such as lateral movement, privilege escalation, account
compromise, and malware activity
- Conduct
endpoint analysis (process injection, persistence mechanisms, suspicious
binaries, command-line artifacts)
- Analyze cloud
security incidents (Azure/AWS) including IAM misuse, impossible travel, token
abuse, and misconfigurations
- Perform




advanced phishing and BEC investigations, including header analysis, URL
detonation, and payload inspection
- Investigate
DLP (Netskope) alerts for potential data exfiltration, policy violations, and
insider threats
- Analyze data
movement patterns across endpoints, email, and cloud storage
- Tune and
validate DLP policies to reduce false positives and improve detection accuracy
- Investigate
DAM alerts for unauthorized database access, privilege misuse, abnormal query
patterns, and potential SQL injection attempts
- Correlate
database activity with user identity and endpoint behavior to detect malicious
intent
- Lead incident
investigation and provide containment/remediation recommendations
- Create and
enrich IOCs (IP, domain, hash) and perform threat intelligence lookups
- Ensure timely
escalation to L3/IR teams for critical incidents (P1/P2)
- Improve and
tune SIEM use cases and detection rules to reduce false positives

📌 Security Analyst (Serilingampalle (M))
🏢 NopalCyber
📍 Serilingampalle (M)

Reply to this offer

Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.

Subscribe to this job alert:

Get the latest job offers by email for: security analyst (serilingampalle (m)) / serilingampalle (m)

Subscribe to this job alert:

Get the latest job offers by email for: security analyst (serilingampalle (m)) / serilingampalle (m)