soc analsyt (Bengaluru)

soc analsyt (Bengaluru)

14 Aug
|
CGI
|
Bengaluru

14 Aug

CGI

Bengaluru

Position Description Company Profile: Founded in 1976, CGI is among the largest independent IT and business consulting services firms in the world. With 94,000 consultants and professionals across the globe, CGI delivers an end-to-end portfolio of capabilities, from strategic IT and business consulting to systems integration, managed IT and business process services and intellectual property solutions. CGI works with clients through a local relationship model complemented by a global delivery network that helps clients digitally transform their organizations and accelerate results.

CGI Fiscal 2024 reported revenue is CA$14.68 billion and CGI shares are listed on the TSX (GIB.A) and the NYSE (GIB). Learn more at cgi.com.

Job Title: L2 SOC Analyst Position: SSE/LA Experience: 4 to 7 years Category: Software Development/ Engineering Shift: 24/7 Rotational Shift Main location: Bangalore Position ID: J0826-0242 Employment Type: Full Time Education Qualification: Bachelor's degree in Computer Science or related field or higher with minimum 4 years of relevant experience. The L2 SOC Analyst is responsible for advanced security monitoring, investigation, and incident response across enterprise environments. This role focuses on deep analysis of alerts, threat validation, escalation handling, and coordination with L3 teams, using tools such as Microsoft Defender, Microsoft Sentinel, Cofense, Proofpoint, and Splunk.

Key Responsibilities Perform in depth analysis and triage of security alerts escalated from L1 analysts. Investigate security incidents across endpoints, email, network, and cloud environments.

Use Microsoft

Defender (Defender for Endpoint, Defender for Office 365, Defender for Cloud) to analyze endpoint and identity based threats. Monitor, investigate, and respond to incidents using Microsoft Sentinel, including querying using KQL and tuning detection rules. Analyze phishing and email based threats using Cofense and Proofpoint, including malware, spoofing, and BEC incidents.

Perform log analysis and correlation using Splunk to identify anomalous behavior and advanced threats. Validate true positives, identify root cause, and recommend remediation actions. Handle incident escalation to L3 teams and coordinate with IT, IR, and infrastructure teams.

Support containment, eradication, and recovery activities during security incidents. Create and update incident reports, playbooks, and SOPs. Assist in use case tuning, false positive reduction, and dashboard improvements.

Participate in threat hunting activities and continuous improvement initiatives.

Required Skills & Experience 3–6 years of experience in SOC operations or cybersecurity monitoring roles. Strong hands on experience with Microsoft Defender and Microsoft Sentinel. Practical experience with Splunk for log analysis and investigations.

Experience handling phishing investigations using Cofense and Proofpoint.





Solid understanding of: MITRE ATT&CK; framework Incident response lifecycle Malware, ransomware, phishing, and credential based attacks Experience With KQL (Sentinel) And SPL (Splunk) Is Preferred. Strong analytical and documentation skills.

Preferred Certifications

Microsoft SC 200 (Security Operations Analyst) Splunk Core Certified Power User / Enterprise Security GIAC (GCIA, GCIH) or equivalent CEH / CySA+ (optional) Shift & Other Requirements Willingness to work in 24×7 shifts (if required). Strong communication skills for stakeholder and client interactions. Your future duties and responsibilities Required Qualifications To Be Successful In This Role Together, as owners, let’s turn meaningful insights into action.

Life at CGI is rooted in ownership, teamwork, respect and belonging. Here, you’ll reach your full potential because… You are invited to be an owner from day 1 as we work together to bring our Dream to life. That’s why we call ourselves CGI Partners rather than employees.

We benefit from our collective success and actively shape our company’s strategy and direction. Your work creates value. You’ll develop innovative solutions and build relationships with teammates and clients while accessing global capabilities to scale your ideas, embrace current opportunities, and benefit from expansive industry and technology expertise.

You’ll shape your career by joining a company built to grow and last. You’ll be supported by leaders who care about your health and well-being and provide you with opportunities to deepen your skills and broaden your horizons. That same commitment to fairness extends to how we use technology.

To support our recruitment team, AI tools may be used to help assess applications though they never replace human judgement. All hiring decisions remain entirely in the hands of our recruitment professionals. Come join our team—one of the largest IT and business consulting services firms in the world.

L2 soc analsyt The L2 SOC Analyst is responsible for advanced security monitoring, investigation, and incident response across enterprise environments. This role focuses on deep analysis of alerts, threat validation, escalation handling, and coordination with L3 teams, using tools such as Microsoft Defender, Microsoft Sentinel, Cofense, Proofpoint, and Splunk.

Key Responsibilities Perform in depth analysis and triage of security alerts escalated from L1 analysts. Investigate security incidents across endpoints, email, network,



and cloud environments.

Use Microsoft

Defender (Defender for Endpoint, Defender for Office 365, Defender for Cloud) to analyze endpoint and identity based threats. Monitor, investigate, and respond to incidents using Microsoft Sentinel, including querying using KQL and tuning detection rules. Analyze phishing and email based threats using Cofense and Proofpoint, including malware, spoofing, and BEC incidents.

Perform log analysis and correlation using Splunk to identify anomalous behavior and advanced threats. Validate true positives, identify root cause, and recommend remediation actions. Handle incident escalation to L3 teams and coordinate with IT, IR, and infrastructure teams.

Support containment, eradication, and recovery activities during security incidents. Create and update incident reports, playbooks, and SOPs. Assist in use case tuning, false positive reduction, and dashboard improvements.

Participate in threat hunting activities and continuous improvement initiatives.

Required Qualifications To Be Successful In This Role Ensemble, en tant que propriétaires, mettons notre savoir-faire à l’œuvre. La vie chez CGI est ancrée dans l’actionnariat, le travail d’équipe, le respect et un sentiment d’appartenance. Chez nous, vous pourrez exploiter votre plein potentiel parce que… Nous vous invitons à devenir propriétaire dès le jour 1 alors que nous travaillons ensemble à faire de notre rêve une réalité.

C’est pourquoi nous nous désignons comme associés de CGI, plutôt que comme employés. Nous tirons profit des retombées de notre succès collectif et contribuons activement à l’orientation et à la stratégie de notre entreprise. Votre travail crée de la valeur.

Vous élaborerez des solutions novatrices et développerez des relations durables avec vos collègues et clients, tout en ayant accès à des capacités mondiales pour concrétiser vos idées, saisir de nouvelles opportunités, et bénéficier d’une expertise sectorielle et technologique de pointe. Vous ferez évoluer votre carrière en vous joignant à une entreprise bâtie pour croître et durer. Vous serez soutenus par des leaders qui ont votre santé et bien-être à cœur et qui vous permettront de saisir des occasions afin de parfaire vos compétences et élargir les horizons.

Ce même engagement envers l’équité s’étend à notre utilisation des technologies. Afin de soutenir notre équipe de recrutement, des outils d’IA peuvent être utilisés pour aider à l’évaluation des candidatures, sans jamais remplacer le jugement humain. Toutes les décisions d’embauche demeurent entièrement entre les mains de nos professionnels du recrutement.

Joignez-vous à nous, l’une des plus importantes entreprises de conseil en technologie de l’information (TI) et en management au monde.

📌 soc analsyt (Bengaluru)
🏢 CGI
📍 Bengaluru

Reply to this offer

Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.

Subscribe to this job alert:

Get the latest job offers by email for: soc analsyt (bengaluru) / bengaluru