Senior SOC (Security Operations Center) Analyst

Orcapod Consulting Services

Mumbai

Hybrid

INR 1,200,000 - 1,800,000

Full time

7 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Orcapod Consulting Services is hiring a SOC Sentinel Analyst L3 to lead advanced threat detection and incident response using Microsoft Sentinel. The role involves designing detections, tuning SIEM rules, and mentoring junior analysts in a fast-paced SOC.

Ideal candidates will have strong KQL skills, MITRE ATT&CK mapping, cloud security experience, and automation with Logic Apps/SOAR to continuously enhance SOC capabilities.

Qualifications

  • Strong hands-on experience with Microsoft Sentinel (SIEM).
  • Expertise in KQL for detection engineering and threat hunting.
  • Deep understanding of cybersecurity concepts, attack vectors, and incident response lifecycle.
  • Knowledge of MITRE ATT&CK framework, TTPs, and threat intelligence integration.

Responsibilities

  • Lead investigation and response for complex, high-severity security incidents.
  • Design, develop, and optimize detection use cases in Microsoft Sentinel.
  • Create and maintain analytics rules, KQL queries, playbooks, and automation workflows.
  • Tune SIEM alerts to reduce false positives and improve detection.
  • Integrate threat intelligence feeds and map detections to MITRE ATT&CK.

Skills

Cybersecurity concepts
Incident response lifecycle
Threat hunting mindset
Leadership & mentoring
Stakeholder management
Communication

Education

Bachelor degree in CS/IT/IS or similar

Tools

Microsoft Sentinel
KQL
Logic Apps / SOAR
Azure AD / Defender suite
Firewalls / EDR / Cloud platforms

Job description

Hi,

we are hiring for

Description:

Job Title: SOC Sentinel Analyst L3
Role Overview

The SOC Sentinel Analyst L3 is a senior-level security operations role responsible for advanced threat detection, incident response, and SIEM engineering using Microsoft Sentinel. This role involves handling complex security incidents, developing detection use cases, fine-tuning SIEM rules, and driving continuous improvement in SOC capabilities.

Key Responsibilities
  • Lead investigation and response for complex and high-severity security incidents escalated from L1 and L2 teams.
  • Design, develop, and optimize detection use cases in Microsoft Sentinel based on TTPs, threat intelligence, and emerging attack patterns.
  • Create and maintain analytics rules, KQL queries, playbooks, and automation workflows to enhance detection and response capabilities.
  • Continuously tune and enhance SIEM alerts to reduce false positives and improve detection accuracy.
  • Integrate threat intelligence feeds and map detections to MITRE ATT&CK framework.
  • Lead root cause analysis (RCA) and post-incident reviews to identify gaps and recommend improvements.
  • Mentor and guide L1/L2 analysts, improving investigation quality and SOC maturity.
  • Collaborate with stakeholders across security, IT, and engineering teams to strengthen security posture.
  • Ensure compliance with SOC processes, SOPs, and security frameworks.
Required Skills & Qualifications
  • Strong hands-on experience with Microsoft Sentinel (SIEM)
  • Expertise in KQL (Kusto Query Language) for detection engineering and threat hunting
  • Deep understanding of cybersecurity concepts, attack vectors, and incident response lifecycle
  • Knowledge of MITRE ATT&CK framework, TTPs, and threat intelligence integration
  • Experience with log sources such as Azure AD, Defender suite, Firewalls, EDR, and Cloud platforms
  • Proficiency in automation tools (Logic Apps / SOAR)
  • Strong analytical, problem-solving, and decision-making skills
  • Excellent communication and stakeholder management abilities
Preferred Qualifications
  • Certifications such as:
    • Microsoft SC-200 (Security Operations Analyst)
    • CEH / CISSP / GCIA / GCIH
  • Experience with cloud security (Azure/AWS)
  • Scripting knowledge (PowerShell, Python)
Education Qualification
  • Degree in Computer Science, Information Technology, Information Services, or similar
Experience
  • 68+ years of experience in SOC / Cyber Security operations
  • Minimum 2-3 years working specifically with SIEM engineering and Microsoft Sentinel
Key Competencies
  • Leadership and mentoring capability
  • Strong ownership and accountability
  • Proactive threat hunting mindset
  • Continuous improvement and innovation focus
  • Ability to work under pressure and manage critical incidents
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Sr. Security Operations Analyst
Sr. Security Operations Analyst

Simfluent • Dadri

On-site
INR 1,200,000 - 1,800,000
SOC L3 Expert
SOC L3 Expert

Maandag® Middle East • India

On-site
INR 800,000 - 1,200,000
L2 SOC Analyst
L2 SOC Analyst

UST • Thiruvananthapuram

Hybrid
INR 600,000 - 900,000
Security Operations Center Analyst- L2
Security Operations Center Analyst- L2

Incedo Inc. • Gurugram District

On-site
INR 900,000 - 1,500,000
Soc Analyst 2
Soc Analyst 2

Aspire Systems • Ernakulam, Chennai District, Bengaluru

Hybrid
INR 1,200,000 - 1,800,000
Security Analyst
Security Analyst

Access Healthcare • Zone 7 Ambattur

On-site
INR 1,200,000 - 2,100,000
SOC Analyst – L1
SOC Analyst – L1

WORKSENT • Ernakulam

On-site
INR 600,000 - 900,000
Senior Engineering, Security - R01565242
Senior Engineering, Security - R01565242

Brillio 2 • Bengaluru

On-site
INR 350,000 - 550,000
Cyber Security Analyst (SOC)
Cyber Security Analyst (SOC)

Genpact • Pune District

Hybrid
INR 700,000 - 1,100,000
Senior Engineering, Security Professional
Senior Engineering, Security Professional

Brillio • Bengaluru

On-site
INR 450,000 - 600,000