Talent.com
SOC Analyst L3

SOC Analyst L3

Sanganan IT Solutions Pvt Ltd.uttar pradesh, India
9 hours ago
Job description

Job Title : Level 3 Security Operations Center (SOC) Analyst

Job Type :  Full Time

Job Location :

  • WORK FROM NOIDA OFFICE, PLEASE DON'T APPLY IF YOU ARE LOOKING FOR HYBRID OR WORK FROM HOME
  • Short notice period or immediate joiners are preferred.

SOC Analyst L3

Job Title : Level 3 Security Operations Center (SOC) Analyst

Job Type : Full-Time / Contract

Job Overview :

As a Level 3 SOC Analyst, you will lead advanced threat hunting, detection engineering, and incident response planning activities within a 24 / 7 MSSP environment. You’ll act as a strategic escalation point for complex incidents and bridge threat intelligence, engineering, and client-facing security functions. You will also be responsible for delivering high-impact deliverables, such as Threat Intelligence Digests, Alert Tuning Reports, and Customer-Facing Security Presentations—all aligned to operational SLAs and governance frameworks.

This role requires strong leadership, technical expertise in modern SIEM and EDR platforms (especially Microsoft Sentinel), and experience in executing MSSP service delivery obligations, including IR tabletop exercises, SLA / KPI dashboards, and quarterly threat reviews.

Key Responsibilities :

1. Advanced Threat Hunting & Detection Engineering

  • Lead targeted threat hunting activities based on hypotheses and threat intelligence using KQL, MITRE ATT&CK, and behavioral analytics.
  • Design and develop advanced detection content (Sigma rules, UEBA baselines, custom rules) across SIEM and EDR platforms.
  • Identify and close detection gaps through continuous telemetry analysis and logic refinement.
  • Coordinate log source visibility reviews, baselining, and high-fidelity use case design.
  • 2. Threat Intelligence & Operational Reporting

  • Produce and distribute Weekly Threat Intelligence Digests summarizing current threats, attack trends, and IOCs relevant to customer environments.
  • Map observed activities to TTPs and threat actor profiles.
  • Maintain threat dashboards and feed integrations to support proactive defense.
  • 3. Alert Tuning & Detection Optimization

  • Lead biweekly Alert Tuning efforts to analyze false positives, adjust thresholds, and suppress noisy detections.
  • Deliver a formal Biweekly Alert Tuning Report outlining tuning actions, impact assessments, and next steps.
  • Collaborate with content authors to implement rule changes and push updates to production environments via controlled change processes.
  • 4. Incident Response Leadership & Crisis Escalation

  • Serve as the final escalation point for Priority 1 (P1) or crisis-level incidents, ensuring incident bridge calls, executive reporting, and customer coordination occur within SLA timelines.
  • Perform deep-dive investigations into root causes and adversary techniques.
  • Own incident post-mortems and RCA (Root Cause Analysis) documentation.
  • Ensure compliance with the IR lifecycle from detection to closure, with audit-ready documentation.
  • 5. MSSP Reporting & Executive Briefings

  • Prepare and deliver Monthly and Quarterly Security Reports to MSSP clients covering :
  • Alert trends, threat landscape updates, SLA / KPI dashboards
  • Executive summaries, incident breakdowns, and risk remediation insights
  • Present findings to customer stakeholders via scheduled service review meetings and executive briefings.
  • Ensure SLA compliance targets are tracked and reported, including MTTD, MTTR, escalation compliance, and false positive rates.
  • 6. IR Tabletop Exercise Management

  • Plan, facilitate, and report on Quarterly Incident Response Tabletop Exercises with internal and external stakeholders.
  • Develop realistic, role-based tabletop scenarios (ransomware, insider threat, data exfiltration, etc.).
  • Deliver Tabletop Exercise Reports with participant feedback, lessons learned, and actionable improvements.
  • 7. SOC Governance & Pre-Onboarding Support

  • Contribute to MSSP onboarding by helping define :
  • Log source mapping and ingestion validation
  • Detection rule baselines, alert taxonomy, and escalation matrix
  • Secure communication procedures and SLA / OLA handoff alignment
  • Support pre-engagement risk assessments and operational readiness reviews.
  • Required Skills & Qualifications :

    1.    Education :

  • Bachelor’s Degree in Cybersecurity, Computer Science, Information Systems, or related field.
  • Master’s Degree is a plus.
  • 2.    Certifications (Preferred) :

  • Microsoft Certified : Security Operations Analyst Associate
  • GIAC (GCIA, GCIH, GCFA, GNFA)
  • CompTIA CySA+, CASP+, or equivalent
  • MITRE ATT&CK Defender (MAD) certification is advantageous
  • 3.    Technical Skills :

  • Expert in SIEM technologies (Microsoft Sentinel preferred), KQL, log analysis, and data correlation.
  • Hands-on experience with EDR tools (Defender for Endpoint, CrowdStrike, etc.).
  • Strong knowledge of MITRE ATT&CK, NIST IR lifecycle, and threat modeling.
  • Familiarity with threat intel platforms (MISP, Anomaly, Recorded Future).
  • Understanding of cloud security (Azure, M365, hybrid environments).
  • 4.    Soft Skills :

  • Strong presentation and documentation skills, especially for executive and customer audiences.
  • Proven ability to lead and manage cross-functional engagements (internal & external).
  • Analytical mindset with an investigative approach to threat detection.
  • Ability to work independently in high-pressure and time-sensitive environments.
  • Proven English communication skills supported by professional certifications such as IELTS, TOEIC, or BEC.
  • Ability to write technical and executive-level documentation in English, including reports, presentations, and incident summaries.
  • Experience :

  • 8-10+ years of experience in cybersecurity operations, with at least 2 years in a Level 2 or Level 3 SOC role.
  • Experience in delivering threat hunts, writing detection content, and handling major security incidents.
  • Prior MSSP experience or customer-facing security role is a significant advantage.
  • Create a job alert for this search

    Soc Analyst • uttar pradesh, India

    Related jobs
    • Promoted
    • New!
    Third Party Risk Management (TPRM) Analyst

    Third Party Risk Management (TPRM) Analyst

    Silicon Comnet Pvt Ltdlucknow, uttar pradesh, in
    L1 – Third Party Risk Management (TPRM) Analyst.Review and validate vendor responses to.Identify and document potential security or compliance gaps for review by L2 / L3 analysts.Participate in perio...Show moreLast updated: 7 hours ago
    • Promoted
    Senior Data Analyst

    Senior Data Analyst

    Ruder Finn IndiaLucknow, IN
    Ruder Finn is seeking a Senior Data Analyst (Data Analyst III) to join its award-winning Emerging Technology & Analytics team. The chosen candidate will support the agency’s new business efforts by ...Show moreLast updated: 17 days ago
    • Promoted
    SAP Co Consultant

    SAP Co Consultant

    SGS & CoLucknow, IN
    Job Title : SAP Controlling (CO) Architect.Join Us as an SAP ECC Controlling Consultant – Drive Transformation at the Intersection of. Join our dynamic organization, a leader in Professional services...Show moreLast updated: 26 days ago
    • Promoted
    Digital Analyst

    Digital Analyst

    EXLLucknow, IN
    Digital Analytics Implementation Specialist.Adobe Experience Platform (AEP).The ideal candidate will be responsible for implementing and managing advanced analytics tracking frameworks, ensuring se...Show moreLast updated: 3 days ago
    • Promoted
    Telemetry Analyst

    Telemetry Analyst

    Greymatter InnovationzLucknow, IN
    Greymatter Innovationz helps you stay digitally relevant across domains, technologies, and skillsets, every day.Support building an Enterprise Data Lakehouse focused on observability.Define relevan...Show moreLast updated: 20 days ago
    • Promoted
    APM Data Integration Analyst

    APM Data Integration Analyst

    TribolaTech IncLucknow, IN
    Title - APM Data Integration Analyst.This role ensures data integrity, integration, and governance across the APM ecosystem. The Data Integration Analyst will manage application metadata completenes...Show moreLast updated: 30+ days ago
    • Promoted
    Forward Deployed Analyst (Ex-IB / PE / HF / Buyside)

    Forward Deployed Analyst (Ex-IB / PE / HF / Buyside)

    ArcanaLucknow, IN
    Forward-Deployed Analyst – Portfolio Intelligence.Arcana builds institutional-grade analytics for leading hedge funds and asset managers. We’re hiring exceptional analysts to partner with portfolio ...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    Field CTO - Solutions Engineering - SecOps - SOAR, SIEM, DLP

    Field CTO - Solutions Engineering - SecOps - SOAR, SIEM, DLP

    CareerXperts Consultinglucknow, uttar pradesh, in
    Ready to Shape the Future of AI Security?.We're not looking for someone who just talks tech—we need a.Imagine this : You're in the room when a Fortune 500 CISO asks, "How do we stop AI from becoming...Show moreLast updated: 2 hours ago
    • Promoted
    SAP CO-S / 4 hana Architect-Hybrid Mode

    SAP CO-S / 4 hana Architect-Hybrid Mode

    Avensys ConsultingLucknow, IN
    Avensys is a reputed global IT professional services company headquartered in Singapore.Our service spectrum includes enterprise solution consulting, business intelligence, business process automat...Show moreLast updated: 6 days ago
    • Promoted
    Polarion ALM Expert – Process Implementation & Support

    Polarion ALM Expert – Process Implementation & Support

    Hexad Infosoft INLucknow, IN
    Polarion ALM Expert – Process Implementation & Support.R&D process digitalization project.The role involves implementing, configuring, and optimizing. The expert will collaborate with global stakeho...Show moreLast updated: 3 days ago
    • Promoted
    Sap Solutions Architect

    Sap Solutions Architect

    Radiant Systems IncLucknow, IN
    Mandatory to have excellent fluency in English; both written and verbal communication skills.Candidate will be regarded as an SME and should have a high level of expertise in.Service Management Lea...Show moreLast updated: 6 days ago
    • Promoted
    • New!
    Process and Compliance Analyst

    Process and Compliance Analyst

    Innodata Inc.Lucknow, IN
    The Process and Compliance Analyst is a key contributor to driving operational excellence, regulatory compliance, and continuous improvement across the organization. This role sits at the intersecti...Show moreLast updated: 6 hours ago
    • Promoted
    • New!
    Third Party Risk Management (Tprm) Analyst

    Third Party Risk Management (Tprm) Analyst

    Silicon Comnet Pvt LtdLucknow, Republic Of India, IN
    L1 – Third Party Risk Management (TPRM) Analyst.Review and validate vendor responses to.Identify and document potential security or compliance gaps for review by L2 / L3 analysts.Participate in perio...Show moreLast updated: 1 hour ago
    • Promoted
    Analyst

    Analyst

    Innodata Inc.Lucknow, IN
    Innodata is collaborating with a leading international conglomerate, to contract subject matter experts (SMEs) for a complex prompt data annotation project. SMEs will create complex prompts and resp...Show moreLast updated: 6 days ago
    • Promoted
    • New!
    L2 SOC

    L2 SOC

    alliantgrouplucknow, uttar pradesh, in
    The company was founded in 2002 and is headquartered in Houston, Texas.These credits and incentives are designed to encourage businesses to invest in certain types of activities, such as research a...Show moreLast updated: 3 hours ago
    • Promoted
    Tactical Analyst

    Tactical Analyst

    MAX SecurityLucknow, IN
    Max is Global Risk Management organization based out in Tel Aviv, Israel and its APAC HQ is based out of Mumbai.Led by veterans from Israeli Military Special Forces, Intelligence, Cyber and Secret ...Show moreLast updated: 30+ days ago
    • Promoted
    Oracle Integration Cloud (OIC) Administrator

    Oracle Integration Cloud (OIC) Administrator

    Vienna ConsultancyLucknow, IN
    Title- Oracle Integration Cloud (OIC) Administrator.Contract Duration- 6 Months ,with the possibility of extension.We are seeking a skilled Oracle Integration Cloud (OIC) Administrator responsible ...Show moreLast updated: 5 days ago
    • Promoted
    System Integration Specialist

    System Integration Specialist

    Alp Consulting Ltd.Lucknow, IN
    AI Automation & Integration Developer.AI Automation & Integration Developers.You’ll design and implement automation workflows using. APIs and enhancing business productivity with AI-driven solutions...Show moreLast updated: 5 days ago