The SOC Analyst L2 is responsible for advanced threat detection, incident investigation, threat hunting, malware analysis, security incident response, and continuous improvement of security monitoring capabilities. This role serves as the primary escalation point for L1 analysts and plays a key role in strengthening the organization's cyber defense posture.
Responsibilities
- Investigate escalated security incidents and validate true positives.
- Perform root cause analysis and impact assessment.
- Lead containment, eradication, and recovery activities.
- Conduct detailed forensic investigations on endpoints and systems.
- Coordinate with IT, Cloud, Network, and Security Engineering teams during major incidents.
- Proactively identify emerging threats and hidden adversary activities.
- Develop threat hunting hypotheses using MITRE ATT&CK; Framework.
- Identify attacker tactics, techniques, and procedures (TTPs).
- Utilize threat intelligence feeds to improve detection capabilities.
- Tune and optimize SIEM correlation rules.
- Develop current threat detection use cases.
- Reduce false positives through continuous rule enhancement.
- Improve detection coverage across cloud, endpoints, network, and identity platforms.
- Monitor and investigate security events across Azure and AWS environments.
- Analyze IAM anomalies, privilege escalations, and cloud misconfigurations.
- Support cloud-native security tools and security posture management platforms.
- Perform malware investigation and behavioral analysis.
- Analyze EDR/XDR detections.
- Conduct IOC and IOA investigations.
- Support ransomware response activities.
Technical Skills
SIEM Platforms
- Microsoft Sentinel
- Splunk Enterprise Security
- IBM QRadar
- LogRhythm
- 24x7 Security Operations Coverage
- On-call Support for Critical Incidents
- Major Incident Management Participation
- Support During Security Breach Investigations
Disclaimer: This job posting has been aggregated from external source. Role details, content, and availability are subject to change. Applicants are advised to confirm the latest information directly on the company website before applying.
📌 SOC Analyst (Chennai)
🏢 SRM Technologies
📍 Chennai
Reply to this offer
Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.