Security Analyst 2

Mobikwik

Gurugram District

On-site

INR 900,000 - 1,300,000

Full time

6 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Mobikwik is seeking a security professional to implement and manage a SOC/SIEM platform on site in Gurugram. You will develop and tune SIEM rules, onboard integrations, and investigate escalated alerts across network, cloud, and endpoint telemetry.

The role requires hands-on experience with SOC/SIEM, log-source integrations, and RCA capabilities. Knowledge of MITRE ATT&CK mapping and WAF/VPN/DLP concepts is highly desirable.

Qualifications

  • Hands-on SOC/SIEM implementation is mandatory.
  • SIEM use-case and rule optimization is mandatory.
  • Security device and log-source integration is mandatory.
  • L2 incident investigation and RCA experience is mandatory.
  • Strong understanding of Firewall, VPN, DLP and WAF.

Responsibilities

  • Hands-on implementation and administration of at least one SOC/SIEM platform.
  • Develop and tune SIEM use cases, rules and alerts to reduce false positives.
  • Onboard and troubleshoot security device/log-source integrations.
  • Investigate L1 escalated alerts and perform detailed RCA.
  • Identify attack vectors and recommend containment and remediation.
  • Monitor events from Firewall, WAF, DLP, VPN, EDR/XDR, IAM/AD, Cloud and endpoints.
  • Understand L7/WAF security and MITRE ATT&CK mapping would help.
  • Develop detection capabilities against emerging threats.

Skills

SOC/SIEM implementation
SIEM use-case optimization
Log-source integration
L2 incident investigation
Firewall/VPN/DLP/WAF
IAM/AD knowledge
Cloud/AWS security
Linux investigation
Analytical troubleshooting

Job description

Key Responsibilities
  • Hands-on implementation and administration of at least one SOC/SIEM platform.
  • Develop, tune, and optimize SIEM use cases, correlation rules, and alerts to reduce false positives and improve detection.
  • Onboard and troubleshoot security device/log-source integrations with the SOC/SIEM.
  • Investigate L1-escalated alerts by correlating logs across multiple security controls and perform detailed RCA.
  • Identify attack vectors, IOCs, affected systems/users, and recommend containment and remediation.
  • Monitor and investigate security events from Firewall, WAF, DLP, VPN, EDR/XDR, IAM/AD, Cloud and endpoints.
  • Strong understanding of Firewall L2/L3/L4 concepts including ACL, NAT, routing and VPN.
  • Good understanding of L7/WAF security, OWASP Top 10, web attacks and API security; Cloudflare WAF experience preferred.
  • Working knowledge of DLP, IAM/AD, AWS/Cloud security and Linux investigation.
  • Develop and improve detection capabilities based on emerging threats, preferably mapped to MITRE ATT&CK.
Mandatory Skills
  • Hands-on SOC/SIEM implementation Mandatory
  • SIEM use-case/rule optimization – Mandatory
  • Security device/log-source integration – Mandatory
  • L2 incident investigation and RCA – Mandatory
  • Firewall, VPN, DLP and WAF understanding
  • IAM/AD, Cloud/AWS and Linux knowledge
  • Strong analytical and troubleshooting skills
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Analyst - L2
Security Analyst - L2

Nopal Cyber, LLC. • Hyderabad

On-site
INR 1,200,000 - 1,600,000
Security Analyst
Security Analyst

Access Healthcare • Zone 7 Ambattur

On-site
INR 1,200,000 - 2,100,000
SOC/SIEM Experts
SOC/SIEM Experts

Infosys • Bengaluru

On-site
INR 800,000 - 1,200,000
Soc Analyst
Soc Analyst

BUSINESSNEXT • Dadri

On-site
INR 1,200,000 - 2,000,000
Senior Security Analyst
Senior Security Analyst

Access Healthcare Service • Chennai District

On-site
INR 1,200,000 - 1,800,000
Security Operations Center Analyst - L2 || Mumbai || Only Immediate Joiner
Security Operations Center Analyst - L2 || Mumbai || Only Immediate Joiner

Innova ESI • Mumbai

On-site
INR 800,000 - 1,200,000
SOC Analyst ( Security Analyst – L2)
SOC Analyst ( Security Analyst – L2)

Soffit Infrastructure Services (P) Ltd • Ernakulam

On-site
INR 700,000 - 1,000,000
Cyber Sec_Firewall_SOC/SIEM_VAPT Experts
Cyber Sec_Firewall_SOC/SIEM_VAPT Experts

Infosys • Khordha

On-site
INR 900,000 - 1,400,000
Senior SOC Analyst
Senior SOC Analyst

DMart • Thane

On-site
INR 900,000 - 1,300,000
Walk-in | SOC - Incident Response & Handling - Consultant
Walk-in | SOC - Incident Response & Handling - Consultant

Deloitte Shared Services India • Mumbai, Hyderabad

On-site
INR 700,000 - 1,200,000