Talent.com
SOC Analyst - SIEM Tools

SOC Analyst - SIEM Tools

WorkassistGurgaon
16 days ago
Job description

Title : SOC Analyst

Function : Cyber Security Operations / Managed Detection and Response (MDR)

Experience : 3-5 Years

Role Summary

The SOC Analyst serves as the primary technical interface between the client's onsite security team and the Managed Detection and Response (MDR) or Security Operations Center (SOC) teams, ensuring seamless integration and effective incident handling.

This role demands hands-on expertise in security platforms, particularly FortiSIEM and EDR solutions, combined with practical knowledge of network architecture, including firewall, switching, and routing configuration.

The analyst is critical for timely incident coordination, triage validation, and providing technical insights on threat trends and security posture enhancement.

Primary Responsibilities

  • Act as the dedicated onsite point of contact for the customer, bridging technical communication between the client's IT teams and the Global SOC / MDR analysts during investigation and remediation phases.
  • Coordinate and meticulously track the entire incident response lifecycle, including initial alert triage, technical validation of security incidents, evidence gathering, and timely escalation to L2 / L3 teams per established playbooks.
  • Support the technical onboarding of new log sources (e.g., cloud flow logs, application logs, security appliance feeds) into the SIEM platform, ensuring proper parsing, normalization, and asset visibility updates for accurate correlation.
  • Implement and validate necessary configuration changes within SIEM, SOAR, and MDR workflow platforms to optimize detection rules, suppression logic, and automated response capabilities.
  • Perform in-depth technical review and validation of security alerts, incident tickets, and operational reports generated by the MDR platform, ensuring the accuracy of threat containment and investigation data.
  • Provide actionable insights to customer stakeholders on emerging incident trends, evolving threat patterns, and the overall effectiveness of security controls during customer review meetings.
  • Ensure immediate and timely technical communication of critical incidents (e.g., confirmed breaches, ransomware activity) to key internal and external stakeholders using predefined communication protocols.
  • Maintain and technically update all operational documentation, including detailed investigation procedures, runbooks for automated workflows, and standardized reporting templates.
  • Collaborate directly with customer IT / security teams during joint investigations, guide technical remediation efforts, and provide necessary evidence and reports for compliance and internal audits.
  • Actively utilize FortiSIEM for advanced query writing, dashboard creation, and rule tuning, leveraging integrated EDR platforms to perform endpoint threat hunting and deeper root cause analysis.
  • Install, configure, and manage high-availability firewalls (specifically FortiGate models), developing intricate security policies, VPNs, and traffic shaping rules to enforce stringent network protection.
  • Demonstrate proficiency in secure switching and routing principles, ensuring that network architecture supports secure segmentation, access control lists (ACLs), and traffic flow efficiency for optimal security sensor placement.

Required Technical Skills

  • SIEM / SOAR Operations : Hands-on experience with SIEM platforms (e.g., FortiSIEM, Splunk, Sentinel) including alert tuning, log correlation, and basic SOAR playbook execution.
  • Incident Response : Proven ability to manage the technical aspects of the incident lifecycle (Triage, Validation, Containment, Eradication) and coordinate activities with cross-functional teams.
  • Network Security : Practical expertise in the deployment and configuration of FortiGate firewalls, including policy creation, NAT, and UTM features.
  • Endpoint Security : Experience utilizing and operating an EDR platform for threat investigation, endpoint isolation, and forensic data collection.
  • Networking Fundamentals : Strong technical familiarity with switching (VLANs, port security) and routing protocols (OSPF, BGP) necessary to ensure secure and segmented network environments.
  • Communication & Coordination : Excellent ability to translate highly technical findings into clear, concise, and actionable status updates for management and non-technical audiences.
  • Preferred Skills :

  • Industry certification such as CompTIA Security+, GSEC (GIAC Security Essentials), or Fortinet NSE 4 / 5.
  • Experience with cloud security monitoring and alert ingestion from platforms like Azure Security Center or AWS GuardDuty.
  • Proficiency in writing investigation queries using languages like KQL (Kusto Query Language) or specialized SIEM query syntax.
  • Familiarity with threat intelligence platforms (TIP) and integrating threat feeds into the SIEM for enhanced detection.
  • Basic scripting skills (Python, PowerShell) for automating routine operational tasks or data parsing.
  • Knowledge of MITRE ATT&CK framework and applying its techniques to map and enrich security incidents.
  • (ref : hirist.tech)

    Create a job alert for this search

    Soc Analyst • Gurgaon

    Related jobs
    • Promoted
    SOC Level-1 Analyst

    SOC Level-1 Analyst

    Airtel DigitalNew Delhi, Delhi, India
    The Security Operation Centre (SOC) Information Security Analyst is the first level of monitoring in the SOC.The position monitors and responds to security events from managed customer security sys...Show moreLast updated: 24 days ago
    • Promoted
    SOC Design Verification Lead

    SOC Design Verification Lead

    L&T Technology ServicesDelhi, India
    L&T Technologies is looking to hire for SOC DV Lead role.Job Location : Bangalore Job Title : SoC DV Lead YEARS OF EXPERIENCE : 8+ Years. JOB DESCRIPTION : Expertise in verifying.Develop functional t...Show moreLast updated: 29 days ago
    • Promoted
    SOC Analyst

    SOC Analyst

    ConfidentialGurgaon / Gurugram, India
    Monitor SIEM Console & Dashboards and provide response to the internal team on reported incidents.Monitor and review the activities. Monitor & Reporting of system components health and take necessar...Show moreLast updated: 6 days ago
    • Promoted
    SOC Engineer

    SOC Engineer

    Webologix Ltd / INCDelhi, India
    Job Position : SOC Engineer Location : PAN.Experience : 5+ to 10+ Years Must have : Forensics - Others Roles Responsibilities Review daily operational activities and timely mentor junior analysts Condu...Show moreLast updated: 29 days ago
    • Promoted
    ChargePoint - Senior SOC Analyst - SIEM

    ChargePoint - Senior SOC Analyst - SIEM

    ChargePointGurgaon
    About Us : With electric vehicles expected to be nearly 30% of new vehicle sales by 2025 and more than 50% by 2040, electric mobility is be...Show moreLast updated: 29 days ago
    • Promoted
    Capgemini - SOC Operations Analyst - SIEM

    Capgemini - SOC Operations Analyst - SIEM

    Capgemini Technology Services India LimitedGurugram
    SOC Operations : Mumbai, Pune, Hyderabad, Chennai, Noida, Gurgaon, Bangalore, Gandhinagar Choosing Capgemini means choosing a company where you will be empow...Show moreLast updated: 30+ days ago
    • Promoted
    SOC Lead

    SOC Lead

    ITC InfotechDelhi, India
    Location : Bangalore Mode : Hybrid.Role Summary : Lead and manage day-to-day SOC operations to ensure proactive detection and response to cyber threats. Drive operational excellence, process maturity, ...Show moreLast updated: 2 days ago
    • Promoted
    Soc Analyst (L4)

    Soc Analyst (L4)

    ConfidentialNoida
    SIEM tools to identify potential threats;VAPT tools, Incident Handling, Forensic Analysis;CEH.CSA;CySA+;CISA;incidents and breaches. operating systems, network devices, and security devices.Familia...Show moreLast updated: 30+ days ago
    • Promoted
    Senior SOC Analyst

    Senior SOC Analyst

    ConfidentialGurgaon / Gurugram, India
    With electric vehicles expected to be nearly 30% of new vehicle sales by 2025 and more than 50% by 2040, electric mobility is becoming a reality. ChargePoint (NYSE : CHPT) is at the center of this re...Show moreLast updated: 2 days ago
    • Promoted
    Senior SOC Analyst Level 3

    Senior SOC Analyst Level 3

    ConfidentialGurgaon / Gurugram
    What will your essential responsibilities include.Take full ownership of incidents escalated by Level 2 analysts.Conduct complex investigations and provide advice to L2 SOC analysts.Develop customi...Show moreLast updated: 30+ days ago
    • Promoted
    VLSI - SOC Verification Lead / Manager

    VLSI - SOC Verification Lead / Manager

    HCLTechDelhi, India
    You are a highly skilled and experienced SoC Verification Lead with a passion for pushing the boundaries of technology.With a minimum of 5 to 20Years of experience in the SoC / IP / Subsystems verifica...Show moreLast updated: 23 days ago
    • Promoted
    SOC Engineer - L3

    SOC Engineer - L3

    ITC InfotechDelhi, India
    Location : Hyderabad Mode : Hybrid.Role Summary Act as the senior-level analyst responsible for handling complex security incidents and advanced threats. Lead investigations, triage escalations from L...Show moreLast updated: 2 days ago
    • Promoted
    SOC 2

    SOC 2

    ConfidentialNoida, India
    AIG is looking for experienced soc 2 consultants on full / part time and contractual role.Preffered skills are- SOC monitoring, working knowledge in any of the SIEM tools like ArcSight , Qradar , Spl...Show moreLast updated: 1 day ago
    • Promoted
    • New!
    L1 SOC Analyst

    L1 SOC Analyst

    USTfaridabad, haryana, in
    UST is looking for a L1 SOC Analyst with atleast 2-3 years of exp.NP : Immediate to 30 days only.Location : Kochi, Trivandrum, Hyderabad. The primary role of a SOC Level 1 Analyst is to serve as the ...Show moreLast updated: 8 hours ago
    • Promoted
    SOC Lead

    SOC Lead

    USTDelhi, India
    UST is looking for a SOC Lead with atleast 8 years of exp.NP : Immediate to 30 days only.Interested candidate can share your updated CV to bhoopathyraja. JD : Must have experience as Lead / Manager in ...Show moreLast updated: 23 days ago
    • Promoted
    Lead

    Lead

    MindsprintDelhi, India
    SOC Tools Engineering and Operation lead at Mindsprint, Chennai.Qualification : BE / BTech / MSC / or equivalent degree.How to apply : Please send your updated resume to palani. The SOC Engineering and Ope...Show moreLast updated: 2 days ago
    • Promoted
    SOC Design Verification Engineer

    SOC Design Verification Engineer

    ACL DigitalDelhi, India
    SOC Verification engineer : Years of Relevant Experience : 4+ years Location : Bangalore 1.Should have worked on SOC level verification. Should have good understanding of coding testcase in C or X86.Sh...Show moreLast updated: 15 days ago
    • Promoted
    SOC Analyst Level 2

    SOC Analyst Level 2

    ConfidentialGurgaon / Gurugram
    What will your essential responsibilities include.Act as an escalation point for Level 1 analysts and contribute to the Level 1 capability. Deep dive analysis of escalated alerts to understand impac...Show moreLast updated: 30+ days ago