SRM Technologies Logo

SRM Technologies

SOC Analyst - L2

Posted An Hour Ago
Be an Early Applicant
In-Office
Chennai, Tamil Nadu, IND
Entry level
In-Office
Chennai, Tamil Nadu, IND
Entry level
Performs advanced security monitoring, incident response, threat hunting, malware and forensic analysis, SIEM detection engineering, and cloud security investigations. The analyst escalates and coordinates major incidents, tunes detection rules, analyzes endpoint and cloud threats, supports ransomware response, and improves cyber defense capabilities. The role participates in 24/7 coverage, on-call support, and major incident management.
The summary above was generated by AI

SOC Analyst - L2

Role Overview

The SOC Analyst L2 is responsible for advanced threat detection, incident investigation, threat hunting, malware analysis, security incident response, and continuous improvement of security monitoring capabilities. This role serves as the primary escalation point for L1 analysts and plays a key role in strengthening the organization's cyber defense posture.

Key Responsibilities

Incident Response & Investigation

  • Investigate escalated security incidents and validate true positives.
  • Perform root cause analysis and impact assessment.
  • Lead containment, eradication, and recovery activities.
  • Conduct detailed forensic investigations on endpoints and systems.
  • Coordinate with IT, Cloud, Network, and Security Engineering teams during major incidents.

Threat Hunting

  • Proactively identify emerging threats and hidden adversary activities.
  • Develop threat hunting hypotheses using MITRE ATT&CK Framework.
  • Identify attacker tactics, techniques, and procedures (TTPs).
  • Utilize threat intelligence feeds to improve detection capabilities.

SIEM & Detection Engineering

  • Tune and optimize SIEM correlation rules.
  • Develop new threat detection use cases.
  • Reduce false positives through continuous rule enhancement.
  • Improve detection coverage across cloud, endpoints, network, and identity platforms.

Cloud Security Operations

  • Monitor and investigate security events across Azure and AWS environments.
  • Analyze IAM anomalies, privilege escalations, and cloud misconfigurations.
  • Support cloud-native security tools and security posture management platforms.

Endpoint & Malware Analysis

  • Perform malware investigation and behavioral analysis.
  • Analyze EDR/XDR detections.
  • Conduct IOC and IOA investigations.
  • Support ransomware response activities.

Technical Skills

SIEM Platforms

  • Microsoft Sentinel
  • Splunk Enterprise Security
  • IBM QRadar
  • LogRhythm

Endpoint & XDR Security

  • Microsoft Defender XDR
  • CrowdStrike Falcon
  • SentinelOne
  • Cortex XDR

Threat Hunting & Incident Response

  • MITRE ATT&CK Framework
  • Cyber Kill Chain
  • Threat Intelligence Platforms
  • IOC/IOA Analysis
  • Digital Forensics

Cloud Security

  • Microsoft Azure Security
  • AWS Security Services
  • Cloud Security Posture Management (CSPM)
  • Identity Security Monitoring

Security Controls

  • WAF
  • CASB
  • DLP
  • Email Security
  • Zero Trust Security Architecture
  • Zscaler Security Monitoring (Preferred)

Shift & Scheduling

  • 24x7 Security Operations Coverage
  • On-call Support for Critical Incidents
  • Major Incident Management Participation
  • Support During Security Breach Investigations

Preferred Certifications

  • Microsoft SC-200 Security Operations Analyst
  • CompTIA CySA+
  • CEH (Certified Ethical Hacker)
  • Splunk Enterprise Security Administrator

Cloud & Security Certifications

  • Microsoft Azure Security Engineer (AZ-500)
  • AWS Security Specialty
  • Google Professional Cloud Security Engineer

Zscaler Certifications (Preferred)

  • Zscaler Certified Administrator (ZCCA-IA)
  • Zscaler Certified Security Administrator
  • Zscaler Certified Cloud Administrator
  • Zscaler Internet Access (ZIA) Administration Experience

 



HQ

SRM Technologies Chennai, Tamil Nadu, IND Office

Chennai, India

SRM Technologies Chennai, Tamil Nadu, IND Office

Perungudi, Campus 1A, 5th Floor, RMZ Millenia Business Park, , , , Chennai, Tamil Nadu, India, 600096

Similar Jobs

15 Minutes Ago
Easy Apply
Remote or Hybrid
India
Easy Apply
Senior level
Senior level
Cloud • Information Technology • Security • Software • Cybersecurity
Monitor security alerts, detect and analyze threats, respond to security incidents, assess their scope and impact, and investigate phishing incidents. The role requires experience with SOC operations, SIEM, EDR, IDS/IPS, firewalls, antivirus tools, networks, operating systems, and endpoint fundamentals. Preferred qualifications include AI-assisted threat detection, security scripting, and certifications such as Security+, CISSP, or CISM.
Top Skills: Ai/MlAntivirusCC#ChronicleComputer NetworksCrowdstrike FalconEdrEndpoint SecurityFirewallsIds/IpsOperating SystemsPowershellPythonSIEM
3 Hours Ago
Remote or Hybrid
India
Senior level
Senior level
Artificial Intelligence • Cloud • Sales • Security • Software • Cybersecurity • Data Privacy
Leads and develops a distributed software engineering team responsible for a customer-deployed virtual appliance. Owns engineering execution, architecture guidance, roadmap delivery, Scrum practices, reliability, incident response, vulnerability remediation, hiring, and team development. Requires technical fluency in Linux, virtualization, containers, customer-installed software, SaaS connectivity, and AI/LLM tools, while partnering closely with Product Management and cross-functional engineering teams.
Top Skills: Ai And Llm ToolsContainerizationGoLinuxScrumVirtualization
5 Hours Ago
Hybrid
Chennai, Tamil Nadu, IND
Senior level
Senior level
Fintech • Professional Services • Consulting • Energy • Financial Services • Cybersecurity • Generative AI
Develop data science and AI solutions using Python and Django, including data collection, labeling, curation, feature engineering, classical machine learning, and generative AI. Deploy models to production using CI/CD, Airflow, and MLflow; automate modeling pipelines and monitor model drift. Collaborate with stakeholders in Agile Scrum teams, improve testing and automation practices, and analyze business requirements.
Top Skills: AgileAirflowCi/CdDjangoHadoopMlflowPandasPythonScrumSparkSQL

What you need to know about the Chennai Tech Scene

To locals, it's no secret that South India is leading the charge in big data infrastructure. While the environmental impact of data centers has long been a concern, emerging hubs like Chennai are favored by companies seeking ready access to renewable energy resources, which provide more sustainable and cost-effective solutions. As a result, Chennai, along with neighboring Bengaluru and Hyderabad, is poised for significant growth, with a projected 65 percent increase in data center capacity over the next decade.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account