25 Sep
|
ROVIX Technologies
|
Gurugram
25 Sep
ROVIX Technologies
Gurugram
Company: ROVIX Technologies
Designation: SOC Analyst
Employment Type: Full-Time
Location: Onsite/ Hybrid
Experience: 1–5 Years
Work Mode: As per project requirement
Shift: Rotational / 24×7 SOC Operations
Company Description ROVIX Technologies is a trusted IT and cybersecurity firm focused on delivering secure, innovative, and scalable digital solutions. The company provides specialized IT services, cybersecurity consulting, and technology integration for clients in both domestic and international markets. With a strong commitment to integrity and excellence, ROVIX Technologies helps organizations enhance their digital resilience and safeguard critical assets.
The team works closely with businesses to design tailored solutions that support long-term stability and sustainable growth.
Job Overview
ROVIX Technologies is looking for a SOC Analyst responsible for monitoring, detecting, investigating, and responding to cybersecurity threats using SIEM and other security technologies
Key Responsibilities:
- Monitor and analyze security alerts using Splunk or other SIEM platforms.
- Perform alert triage, investigation, classification, and escalation.
- Analyze logs from firewalls, endpoints, servers, network devices, applications, cloud, VPN, DNS, and authentication systems.
- Investigate suspicious activities, IOCs, malware alerts, unauthorized access, and other security incidents.
- Perform basic threat hunting and correlate events across multiple data sources.
- Work with Splunk SPL, dashboards, alerts,
correlation searches, data models, and use cases.
- Support SIEM rule tuning, false-positive reduction, and security use-case development.
- Analyze alerts from EDR/XDR, NDR, firewall, IDS/IPS, and other security tools.
- Use threat intelligence and frameworks such as MITRE ATT&CK; during investigations.
- Document incidents, investigation findings, and recommended actions.
- Follow SOC SOPs, playbooks, SLAs, and incident escalation procedures.
- Coordinate with L2/L3 analysts, IT, network, cloud, and other teams for incident resolution.
Required Skills:
- Positive understanding of SOC operations and SIEM concepts.
- Hands-on experience with Splunk, Microsoft Sentinel, QRadar, ArcSight, LogRhythm, Elastic, or similar SIEM.
- Knowledge of Windows/Linux, TCP/IP, DNS, HTTP/HTTPS, VPN, firewalls, and authentication.
- Understanding of incident response, threat detection, IOC analysis, and threat intelligence.
- Basic knowledge of EDR/XDR and network security technologies.
- Good analytical, troubleshooting, documentation, and communication skills.
- Willingness to work in rotational/24×7 shifts when required.
- Preferred Certifications
- Splunk Certified User / Power User / Admin
- CompTIA Security+
- CEH / CySA+
- CHFI
- SC-200
- GIAC certifications such as GCIH/GCFE
Education:
- Bachelor's degree in Computer Science, IT, Cybersecurity, or a related field. Relevant certifications and practical experience will be considered.
📌 SOC Analyst (Gurugram)
🏢 ROVIX Technologies
📍 Gurugram