15 Sep
|
HTS Consulting
|
Bengaluru
15 Sep
HTS Consulting
Bengaluru
Security Operations Center Analyst
Location: Bengaluru, Karnataka
Experience: 2+ Years
Employment Type: Full-Time
Work Mode: 5 Days Work From Office
Department: Security Operations / Cybersecurity
Industry Focus: Security Operations | Cyber Defense | Incident Response
Client-Site: Willingness to commute to client locations as required
About the Role
We are looking for a SOC Analyst with 2+ years of hands-on experience in security monitoring, alert triage, threat investigation, and incident response.
The ideal candidate will be responsible for monitoring security events, investigating suspicious activities, identifying potential threats, supporting incident response activities, and working closely with technical teams across client environments.
Key Responsibilities
SOC Monitoring &
- Alert Triage
- Monitor and analyse security alerts from SIEM, EDR/XDR, and other security platforms.
- Perform alert triage, investigation, enrichment, and appropriate escalation.
- Analyse authentication, endpoint, network, and application logs to identify suspicious or malicious activity.
- Investigate security events and determine whether they represent genuine incidents or false positives.
- Document investigation findings, actions taken, and outcomes.
Threat Hunting &
- Incident Response
- Perform proactive threat hunting using SIEM, EDR/XDR, and threat intelligence sources.
- Support incident response activities including containment, eradication, and recovery.
- Analyse attacker behaviour and map observed activities to MITRE ATT&CK; techniques.
- Maintain investigation timelines and ensure accurate incident documentation.
- Prepare incident summaries, investigation reports, and remediation recommendations.
- Escalate critical or high-risk security incidents in accordance with defined procedures.
Client &
- Security Operations
- Work closely with infrastructure, network, application, identity,
and security teams to investigate and resolve security events.
- Support firewall, endpoint, identity, and network security investigations across client environments.
- Maintain operational dashboards, incident records, shift handovers, and security reports.
- Participate in client security reviews and provide investigation updates when required.
- Ensure timely follow-up and closure of assigned security incidents.
Required Qualifications &
- Experience
- Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or a related field.
- 2+ years of hands-on experience in SOC, Security Operations, Cyber Defense, or a related cybersecurity role.
- Solid practical knowledge of SIEM platforms such as Splunk, IBM QRadar, Microsoft Sentinel, or equivalent.
- Hands-on experience with EDR/XDR platforms such as CrowdStrike, SentinelOne, Microsoft Defender, or equivalent.
- Good understanding of MITRE ATT&CK;, threat intelligence, network security, firewalls, and security monitoring.
- Experience in log analysis, alert investigation, threat detection, and incident response.
- Good understanding of common attack techniques, security events, and indicators of compromise (IOCs).
- Knowledge of Python or PowerShell scripting is an advantage.
- Certifications such as Security+, CySA+, CEH, GCIH, or relevant cybersecurity certifications are preferred but not mandatory.
Technical Skills
- SIEM: Splunk, IBM QRadar, Microsoft Sentinel, or equivalent
- EDR / XDR: CrowdStrike,
SentinelOne, Microsoft Defender, or equivalent
- Security Operations: Alert triage, log analysis, security monitoring, incident investigation
- Threat Hunting: Threat intelligence, IOC analysis, detection engineering, proactive threat hunting
- Incident Response: Incident investigation, containment, eradication, recovery, and reporting
- Security Frameworks: MITRE ATT&CK; and relevant security frameworks
- Network Security: Firewalls, network traffic analysis, authentication, and endpoint security
- Scripting: Python / PowerShell – preferred
- Reporting: Incident reports, investigation notes, dashboards, and security metrics
Behavioral Competencies
- Strong analytical and investigative mindset with excellent attention to detail.
- Ability to analyse large volumes of security events and identify meaningful threats.
- Strong problem-solving and decision-making skills during security incidents.
- Clear written and verbal communication skills for both technical and non-technical stakeholders.
- Ability to work independently, manage priorities, and meet operational timelines.
- Strong collaboration skills when working with internal teams and client stakeholders.
- Willingness to work from office 5 days a week.
- Willingness to commute to client locations whenever project requirements demand it.
Why Join Us?
- Opportunity to work on diverse SOC and cybersecurity engagements.
- Exposure to enterprise security monitoring, threat hunting, and incident response.
- Hands-on experience with leading SIEM and EDR/XDR technologies.
- Opportunity to work with technical teams and clients across different security environments.
- Scope to develop expertise across Security Operations, Cyber Defense, Threat Hunting, and Incident Response.
Interested candidates can apply with their updated resume.
📌 Security Operations Center Analyst (Bengaluru)
🏢 HTS Consulting
📍 Bengaluru