Information Security Analyst - Level 2

Hitachi Cyber

Maharashtra

On-site

INR 1,200,000 - 1,800,000

Full time

7 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Group insurance plan
In-house expert training
Employee Referral Bonus
Brand-name organization

Job summary

Hitachi Cyber is seeking an Information Security Analyst (Level 2) to lead escalation and drive cyber defense within the SOC. You will detect, investigate, and respond to security incidents, coordinating with TSS and Detection Engineering to improve threat detection and response capabilities.

Ideal candidates have 3–4 years in an SOC, hands-on experience with Microsoft Sentinel and Google SecOps, and strong communication skills for incident reporting and stakeholder updates.

Qualifications

  • Bachelor’s degree in CS/Info Security required.
  • 3–4 years in a Security Operations Center (SOC) environment.
  • Minimum 2 years with enterprise SIEM platforms, preferably Microsoft Sentinel.
  • Minimum 1 year with cloud-native security ops like Google SecOps Chronicle.
  • Strong monitoring, triage, investigation and response processes.

Responsibilities

  • Monitor, investigate, and respond to security alerts and incidents from SIEM/XDR.
  • Ensure incidents are tracked, documented, and resolved within SLAs.
  • Investigate escalated incidents with detailed event correlation and RCA.
  • Follow escalation procedures and escalate to appropriate teams.
  • Mentor Level 1 Analysts to improve analytical capabilities.
  • Update SOC docs, procedures, and knowledge articles (Confluence).
  • Coordinate with Detection Eng for SIEM tuning and false positives reduction.
  • Perform incident response and containment using approved tools.
  • Validate alert relevance and coordinate improvements where needed.
  • Leverage threat intel and IOCs during investigations.
  • Map attacker techniques to MITRE ATT&CK framework.
  • Handle customer/stakeholder communications related to incidents.
  • Support 24x7 SOC operations, including shifts and on-call rotations.
  • Exposure to threat hunting activities is desirable.

Skills

SOC operations
Incident investigation
24x7 SOC support
Communication skills
Mentoring teammates
Threat hunting

Education

Bachelor’s degree in Computer Science / Information Security

Tools

Microsoft Sentinel
Google SecOps Chronicle
Cybereason
Defender Suite
MDR/XDR platforms

Job description

Join Hitachi Cyber and play a key role in protecting organizations through advanced security monitoring and incident response.

We are looking for an Information Security Analyst (Level 2) to play a key role in our Security Operations Center (SOC), serving as the primary escalation point for security incidents and supporting the organization's cyber defense capabilities.

The ISA L2 will ensure timely and effective detection, investigation, and response to security incidents. The role is responsible for performing advanced incident analysis, determining appropriate escalation paths, and coordinating with the TSS and Detection Engineering teams to support continuous improvement of security operations and threat detection capabilities.

Here’s an overview of your main responsibilities:
  • Monitor, investigate, and respond to security alerts and incidents generated through SIEM, XDR, and security monitoring platforms such as Microsoft Sentinel, Google SecOps, Microsoft Defender, MDR/XDR platforms, and similar technologies.
  • Ensure incidents are detected, tracked, documented, and resolved within defined SLAs.
  • Investigate incidents escalated by Level 1 Analysts and perform detailed event correlation and root cause analysis.
  • Follow established escalation procedures and escalated incidents to the appropriate teams when required.
  • Mentor and support Level 1 Analysts to improve analytical and investigation capabilities.
  • Update and maintain SOC documentation, procedures, knowledge articles, and collaboration platforms (e.g., Confluence).
  • Coordinate with the Detection Engineering Team for SIEM tuning, alert optimization, use case validation, and false-positive reduction.
  • Perform incident response and containment activities using approved security tools and procedures.
  • Validate the relevance and accuracy of security alerts and coordinate improvements where necessary.
  • Leverage threat intelligence and Indicators of Compromise (IOCs) during investigations.
  • Map attacker techniques and incident findings to the MITRE ATT&CK Framework.
  • Handle customer and stakeholder communications related to security incidents and investigations.
  • This role may require support for 24x7 security operations, including rotational shifts, on-call support, and shift handovers as applicable.
  • Exposure to threat hunting activities and methodologies is desirable.
If you recognize yourself in the following, we’d love to meet you:
  • Bachelor’s degree in computer science, Information Security, Cyber Security, Information Technology, or a related field.
  • 3-4 years of experience in a Security Operations Center (SOC) environment.
  • Minimum 2 years of hands-on experience with enterprise SIEM platforms, preferably Microsoft Sentinel.
  • Minimum 1 year of experience with cloud-native security operations platforms such as Google SecOps (Chronicle) or equivalent technologies.
  • Strong understanding of security monitoring, alert triage, incident investigation, and incident response processes.
  • Knowledge of Kusto Query Language (KQL) and familiarity with YARA-L.
  • Good understanding of the MITRE ATT&CK Framework, threat intelligence, and Indicators of Compromise (IOCs).
  • Experience investigating endpoint, identity, cloud, email, and network security incidents.
  • Hands-on exposure to Microsoft Defender Suite, Google SecOps, Cybereason, or similar endpoint detection and response solutions.
  • Solid understanding of risk assessment and vulnerability management.
  • Excellent verbal and written communication skills in English, including technical documentation and incident reporting.
  • Ability to work in a 24/7 Security Operations Center (SOC) environment.
  • Willing to work Overtime, Stay on Standby role (On-Call).
Preferred Certifications
  • Microsoft Certified: Security Operations Analyst Associate (SC-200)
  • Microsoft Azure Security Engineer Associate (AZ-500)
  • Google Cloud Certified - Professional Cloud Security Engineer
  • Google Cloud Certified - Professional Cloud Security Operations Engineer
  • CompTIA Security+
  • Other Microsoft Security Certifications related to Security Operations, Incident Response, or Cloud Security.
What we offer:
  • Thorough in-house, expert training on cutting-edge technology
  • Employee Referral Bonus
  • Group insurance plan
  • Team spirit and dedication to service excellence
  • A sense of belonging to a global, brand-name organization

Thank you for your interest in this position. Only candidates selected for further consideration will be contacted.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information Security Analyst - Level 2
Information Security Analyst - Level 2

Gexel Telecom International Inc. • Pune District

On-site
INR 900,000 - 1,500,000
In-house training
Employee referral bonus
Group insurance
Sr. Security Operations Analyst
Sr. Security Operations Analyst

Simfluent • Dadri

On-site
INR 1,200,000 - 1,800,000
Sr. Security Engineer
Sr. Security Engineer

Hitachi Digital • New Delhi

On-site
INR 1,800,000 - 3,000,000
Security Analyst
Security Analyst

Access Healthcare • Zone 7 Ambattur

On-site
INR 1,200,000 - 2,100,000
Security Analyst - L2
Security Analyst - L2

Nopal Cyber, LLC. • Hyderabad

On-site
INR 1,200,000 - 1,600,000
Senior Security Analyst
Senior Security Analyst

UltraViolet Cyber • Hyderabad

On-site
INR 800,000 - 1,200,000
IT Security Engineer
IT Security Engineer

Hitachi • New Delhi

On-site
INR 1,200,000 - 1,800,000
Security Operations Analyst
Security Operations Analyst

ITOrizon • Tiruchirappalli, Bengaluru

On-site
INR 500,000 - 800,000
Structured learning and certification support
Hands-on experience with modern security tools
Clear growth path aligned to performance
Security Operations Center Analyst - L2 || Mumbai || Only Immediate Joiner
Security Operations Center Analyst - L2 || Mumbai || Only Immediate Joiner

Innova ESI • Mumbai

On-site
INR 800,000 - 1,200,000
Senior Security Analyst (L2)
Senior Security Analyst (L2)

Eventussecurity • Navi Mumbai

On-site
INR 800,000 - 1,200,000