Associate SOC

Epsilon Data Management

Bengaluru

On-site

INR 900,000 - 1,500,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Epsilon Data Management in Bengaluru, India is seeking a SOC Security Analyst to monitor, detect, and respond to cybersecurity threats across enterprise environments. You will analyze alerts from SIEM/EDR, perform initial investigations, and proactively hunt for threats.

Develop use cases, support incident response, and collaborate with cross-functional teams to enhance security posture. The role requires hands-on experience with SIEM/EDR across Windows, Linux, networks, and cloud platforms,

Qualifications

  • 3-5 years in a SOC or similar cybersecurity role.
  • Strong knowledge of incident response methodologies.
  • Proficient with SIEM for log analysis and dashboards.
  • Experience with EDR for endpoint investigation and response.
  • Familiarity with Windows/Linux, networks, and cloud security services.

Responsibilities

  • Monitor, analyse, and triage security alerts from SIEM/EDR and other solutions.
  • Perform initial investigation to determine scope and root cause.
  • Proactively hunt for threats using analytics and threat feeds.
  • Develop and fine-tune detection use cases, rules, and dashboards.
  • Coordinate incident escalation with IR team and stakeholders.
  • Generate security reports and assist with audits.
  • Create and maintain runbooks and knowledge base articles.
  • Collaborate with IT Ops, Dev, Network, and Security Compliance.

Skills

SIEM
EDR
Threat hunting
Incident response
Python
PowerShell
MITRE ATT&CK
Documentation

Education

Bachelor's degree in a relevant field

Tools

SIEM platforms
EDR solutions
Cloud security services (AWS/Azure/GCP)

Job description

Job Summary

A SOC Security Analyst is responsible for monitoring, detecting, and responding to cybersecurity threats across enterprise environments. The role focuses on analyzing alerts from SIEM, EDR, and other security tools, performing initial incident investigations, and proactively hunting for potential threats. The analyst enhances security posture by developing and fine-tuning detection use cases, supporting incident response, and collaborating with cross-functional teams. Strong expertise in security operations, threat intelligence, and multi-platform environments (on-premise and cloud) is essential, along with the ability to produce clear documentation, reports, and actionable insights in a fast-paced environment.

Responsibilities
  • Security Monitoring & Alert Triage: Monitor, analyse, and triage security alerts and events from SIEM, EDR, IDS/IPS, firewalls, and other security solutions in a timely and efficient manner.
  • Incident Detection & Initial Analysis: Perform initial investigation and analysis of detected security incidents to determine scope, impact, and root cause across various environments, including operating systems (Windows, Linux), networks, databases, EDR consoles, and cloud infrastructure (AWS, Azure, GCP).
  • Threat Hunting & Proactive Detection: Proactively hunt for threats, anomalies, and indicators of compromise (IOCs) within the environment using advanced analytics, threat intelligence feeds, and various security tools to uncover stealthy attacks.
  • Use Case Creation & Fine-tuning: Develop, implement, and fine-tune security monitoring use cases, correlation rules, alerts, and dashboards within SIEM and other security platforms to enhance detection capabilities and reduce false positives.
  • Incident Coordination & Escalation: Act as a primary point of contact for incident escalation, coordinating with the Incident Response (IR) team and other stakeholders during active security incidents, providing detailed initial findings and analysis.
  • Reporting & Compliance Support: Generate comprehensive security reports, metrics, and incident summaries for management and security compliance purposes, contributing to audit requirements and overall security posture improvements.
  • Documentation & Knowledge Sharing: Create and maintain detailed documentation for security procedures, runbooks, incident handling guides, and knowledge base articles to ensure consistent operations and facilitate team knowledge transfer.
  • Cross-Functional Collaboration: Collaborate effectively with cross-functional teams, including IT Operations, Development, Network Engineering, and Security Compliance, to improve overall security hygiene.
  • Continuous Learning & Threat Intelligence: Stay current with the latest cybersecurity threats, attack techniques (e.g., MITRE ATT&CK), industry best practices, and security technologies through continuous learning, certifications, and consumption of threat intelligence.
Qualifications
  • 3-5 years of experience in a Security Operations Centre (SOC), Blue Team, or similar cybersecurity role.
  • Strong understanding of security principles, common attack vectors, and incident response methodologies.
  • Proficiency with SIEM platforms for log analysis, rule creation, and dashboarding.
  • Hands‑on experience with EDR solutions for endpoint investigation and response.
  • Demonstrable experience monitoring and securing various technologies, including Windows/Linux OS, network devices (firewalls, IDS/IPS), databases, and cloud platforms (AWS, Azure, GCP security services).
  • Knowledge of network protocols (TCP/IP), cybersecurity frameworks (NIST, MITRE ATT&CK), and scripting languages (Python, PowerShell) is a plus.
  • Excellent analytical, problem‑solving, and communication skills (written and verbal).
  • Ability to work independently and as part of a team in a fast‑paced environment.
Personal Attributes
  • Strong and innovative approach to problem‑solving and finding solutions
  • Excellent communicator (written and verbal, formal and informal)
  • Flexible and proactive/self‑motivated working style with strong personal ownership of problem resolution
  • Ability to multitask and work independently with minimal supervision
  • Ability to prioritise based on criticality
  • Able to work with remote employees & teams to create highly effective documentation
Education
  • Full Time Bachelor's / Master's degree
Preferred Certifications
  • CEH
  • CompTIA Security +
  • AWS Security
  • CCSP
  • SSCP

Disclaimer : This job posting has been aggregated from external source. Role details, content, and availability are subject to change. Applicants are advised to confirm the latest information directly on the company website before applying.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Junior Engineer
Junior Engineer

Lyric Exponentials India Private Limited • Hyderabad

Hybrid
INR 1,000,000 - 1,500,000
Associate SOC
Associate SOC

Publicis Groupe Holdings B.V • Bengaluru

On-site
INR 800,000 - 1,400,000
Associate SOC
Associate SOC

Publicis Groupe • Bengaluru

Hybrid
INR 900,000 - 1,500,000
Associate SOC
Associate SOC

Publicis Groupe ANZ • Bengaluru

Hybrid
INR 600,000 - 1,200,000
Information Security Specialist
Information Security Specialist

ZEISS India • Bengaluru

On-site
INR 800,000 - 1,200,000
Senior Security Operations Center (SOC) Analyst
Senior Security Operations Center (SOC) Analyst

Intuitive Apps • Mumbai

On-site
INR 1,500,000 - 2,300,000
Manager SOC
Manager SOC

Adani Group • Ahmedabad District

On-site
INR 700,000 - 1,200,000
E2E Networks - Security Operations Center Analyst - Firewall Management
E2E Networks - Security Operations Center Analyst - Firewall Management

E2E Cloud • Chennai District

On-site
INR 500,000 - 800,000
Cyber Security Analyst (SOC)
Cyber Security Analyst (SOC)

Genpact • Pune District

On-site
INR 900,000 - 1,500,000
SOC Analyst
SOC Analyst

Flentas • Pune District

On-site
INR 700,000 - 1,100,000