We await your innovation at TCS : Hiring | Security Operations Center Analyst |
Greetings from TCS!!
Required Total Experience : 5+ years
Work location : Hyderabad, Bangalore.
Required Technical Skill Set :
- 5–8 years of SOC or relevant cybersecurity experience, preferably with time in a L2 SOC role
- Required Skills Proficiency with SIEM tools (Splunk, QRadar , or equivalent)
- Experience with IDS / IPS, firewall management, endpoint security, and log analysis.
- Strong understanding of network security protocols, threat intelligence, and vulnerability management.
- Expertise in incident detection, forensic investigation, root cause analysis, and malware analysis.
Good to have skills :
Scripting skills ( Python , Bash, etc.) are a plusExcellent communication, collaboration, and documentation skills.Qualification : Bachelor’s degree in information technology, Cybersecurity, Computer Science, or related field.
Role Summary :
The SOC L2 Analyst is responsible for in-depth investigation, triage, escalation, and response to security incidents.
This role acts as the primary responder for escalated threats and requires advanced analytical skills, incident management experience, and proficiency in modern security tools and methodologies
Responsibilities :
Monitor, analyze, and investigate security alerts from SIEM, EDR, email gateways, and other sourcesConduct detailed investigations into suspicious activities, validate true / false positives, and perform root cause analysis of incidents.Coordinate incident response and containment procedures for verified security incidents; escalate to L3 or management if requiredCollaborate with L1 analysts to improve detection accuracy and incident response efficiencies.Maintain and update documentation, playbooks, standard operating procedures, and incident response plansPrepare comprehensive reports and ensure proper documentation of incidents.Participate in threat hunting and proactive vulnerability management activities.Stay current on the latest cyber threats, attack techniques, and best practices.Support continuous improvement in SOC processes, detection logic, and coverage.Relevant certifications (CompTIA Security+, CySA+, CEH, CISSP, or similar) are highly preferred.Regards,
Hari Chandana