CSOC Level 2 Analyst

Acesoft Labs

Bengaluru

Hybrid

INR 1,200,000 - 1,800,000

Full time

14 days+
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Acesoft Labs in Bengaluru is seeking a CSOC Level 2 Analyst for Enterprise IT to join our security operations.

You will conduct in-depth incident response, log analysis, and produce detailed reports, using THOR Scanner, VMRay, and Recorded Future Sandbox among others.

The role requires 3-6 years of experience, and you must be flexible for 24/7 shifts including weekends.

Qualifications

  • 3–6 years of enterprise IT security experience.
  • Hands-on experience with Microsoft security products.
  • Knowledge of NIST and MITRE ATT&CK frameworks.
  • Willing to work in 24/7 rotational shifts including weekends.
  • Strong incident reporting and log-analysis skills.

Responsibilities

  • Perform advanced incident response activities.
  • Conduct comprehensive log analysis.
  • Prepare detailed incident reports and timelines.
  • Utilize security tools to improve incident response efficiency.
  • Review user access logs for unauthorized activities.
  • Analyze email logs to trace phishing and spoofed messages.
  • Maintain and refine SOC knowledgebase and playbooks.

Skills

Incident response
Threat analysis
SIEM
Email security
Log analysis
Security tooling

Tools

THOR Scanner
VMRay
Recorded Future Sandbox
SIEM systems
IDS/IPS

Job description

CSOCLevel 2 Analyst (Enterprise IT):
Experience:
  • 3-6 years

NP : Immediate - 15 days

Expertise:
  • Well-versed in Microsoft Security Products, including MS Defender for Endpoint, Cloud, Identity, AV, and MS Sentinel.
  • Knowledge of Incident Response frameworks knowledge (NIST, MITRE ATT&CK, Cyber Kill Chain)
  • C-SOC Level 2 Analysts are responsible for advanced incident response activities, comprehensive log analysis, and detailed incident reporting.
  • Skilled in utilizing tools to enhance the efficiency of Incident Response within a SOC.
  • Experienced with THOR Scanner, VMRay, and Recorded Future Sandbox is a plus.
  • Knowledgeable in Application, Cloud, and Infrastructure security, including Firewalls, Proxies, and Web Application Firewalls (WAF).
  • Must be willing to provide support and be flexible to work in 24/7 rotational shifts, including weekends.
Technical Knowledge:
  • Proficient in using advanced tools to detect and analyze sophisticated threats.
  • Capable of conducting in-depth technical analyses of incidents, providing detailed technical information.
  • Experienced in documenting and analyzing incident timelines and events.
  • Skilled in reviewing and analyzing user access logs to identify unauthorized or suspicious activities.
  • Proficient in analyzing email logs to trace phishing attacks, spoofed messages, and other email-related threats.
  • Expertise in using SIEM (Security Information and Event Management) systems, IDS/IPS (Intrusion Detection/Prevention Systems), and other security monitoring tools.
  • Experienced in using sandbox environments to safely analyze and understand malware behaviour.
  • Able to provide technical feedback to internal security teams.
  • Strong analytical skills to interpret complex datasets and identify patterns indicative of security threats.
  • Support mail security during incidents by collaborating with L3-Mail-Security and Mail Teams to address issues such as spoofed messages and other email threats.
  • Skilled in refining and tuning alerting systems based on insights from incident investigations to reduce false positives and enhance detection capabilities.
  • Responsible for maintaining and managing the SOC Knowledgebase, including playbooks, processes, and contacts.
  • Collaborate with the Cyber Incident Response (CIR) Service for activation and incident management.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Security Analyst - L2
Security Analyst - L2

Nopal Cyber, LLC. • Hyderabad

On-site
INR 1,200,000 - 1,600,000
SOC L3 Expert
SOC L3 Expert

Maandag® Middle East • India

On-site
INR 800,000 - 1,200,000
SOC L1 Analyst
SOC L1 Analyst

Verint • Bengaluru

On-site
INR 1,000,000 - 1,500,000
SOC-L2
SOC-L2

TechDefence Labs • Hyderabad

On-site
INR 900,000 - 1,500,000
L3 SOC Analyst
L3 SOC Analyst

UST • Bengaluru

On-site
INR 1,500,000 - 2,100,000
Lead SOC Analyst
Lead SOC Analyst

Sampoorna Consultants • Bengaluru

On-site
INR 1,000,000 - 1,500,000
Senior Analyst - SOC
Senior Analyst - SOC

SHI • Hyderabad

On-site
INR 900,000 - 1,300,000
L2 SOC Analyst
L2 SOC Analyst

UST • Dadri

On-site
INR 600,000 - 1,000,000
L3 SOC Analyst
L3 SOC Analyst

Envision Technology Solutions • India

Remote
INR 2,500,000 - 4,500,000
SOC Level 2 Engineer – Remote Support
SOC Level 2 Engineer – Remote Support

I A M IT Technologies LLC • Hyderabad

Remote
INR 600,000 - 1,200,000