03 Sep
|
Eyne Tech Services
|
Kochi
03 Sep
Eyne Tech Services
Kochi
Job Summary
Shift: 24 7 / Rotational Shift As an L1 SOC Analyst, you will be responsible for monitoring security alerts, performing initial triage and investigation, identifying potential security incidents, and escalating confirmed or suspicious activities to the appropriate teams.
You will work with technologies including SIEM, SOAR, EDR, Cloud, Network, Datacenter, Application and Database.
Responsibilities
- Monitor security alerts across SIEM, EDR, and other integrated security platforms.
- Perform initial alert triage and validation.
- Investigate suspicious activities using available logs and security telemetry.
- Identify false positives and document investigation findings.
- Classify alerts and incidents based on severity and potential business impact.
- Escalate confirmed security incidents to L2/L3 analysts and customer teams according to defined procedures.
- Support investigation of endpoint, identity, email, cloud, network, and application-related security events.
- Maintain accurate incident and investigation documentation.
- Follow SOC SOPs, playbooks, and runbooks during investigations.
- Participate in shift handovers and ensure proper communication of ongoing incidents.
- Monitor assigned security platforms for operational issues and escalate platform-related problems.
- Support preparation of daily, weekly, and monthly SOC reports.
- Contribute to knowledge-base updates and continuous improvement of SOC processes.
- Maintain awareness of current cybersecurity threats,
attack techniques, and vulnerabilities.
The candidate will work with or gain exposure to
- Microsoft Sentinel
- Stellar Cyber
- Wazuh
- CrowdStrike
- SentinelOne
- Huntress EDR
- Microsoft Entra ID
- Microsoft 365 Security
- Microsoft Azure
- Amazon Web Services (AWS)
- Firewalls and VPN
- Web Application Firewall (WAF)
- Endpoint Security
- Application and Database Logs
- Threat Intelligence
- Mitre attck
- Understanding of cybersecurity concepts
- Understanding of networking fundamentals such as TCP/IP, DNS, HTTP/HTTPS, VPN, and firewalls
- Basic understanding of Windows and Linux environments
- Understanding of authentication, authorization, and MFA
- Ability to analyze logs and identify suspicious activity
- Good analytical and problem-solving skills
- Solid documentation and communication skills
- Willingness to work in rotational shifts
Good to Have
- Experience with Microsoft Sentinel or another SIEM
- Experience with EDR/XDR platforms
- Microsoft security certifications such as SC-200 or AZ-500
- Security+ or equivalent cybersecurity certification
- Knowledge of KQL
- Understanding of MITRE ATTCK
- Basic knowledge of incident response and threat intelligence
Disclaimer: This job posting has been aggregated from external source. Role details, content, and availability are subject to change. Applicants are advised to confirm the latest information directly on the company website before applying.
📌 SOC Analyst (Kochi)
🏢 Eyne Tech Services
📍 Kochi