SOC Analyst

Access Healthcare

Chennai District

On-site

INR 900,000 - 1,300,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Access Healthcare in Ambattur, Chennai seeks a Security Analyst (Tier 2) to join its SOC. You will monitor, investigate, and respond to cyber incidents across a large enterprise. The role focuses on SIEM management, incident response, and threat detection.

You will work with tools like Splunk, Sentinel, QRadar; use EDR platforms; develop rules and dashboards; automate tasks with SOAR; coordinate with IT teams and ensure SLA adherence.

Qualifications

  • Minimum 5 years in a 24x7 SOC environment.
  • Hands-on experience with SIEM tools (Splunk, Sentinel, or QRadar).
  • EDR expertise with CrowdStrike, Defender, SentinelOne, or Cortex XDR.
  • Certifications such as CEH, CHFI, CompTIA+, GCIA/GCIH, or equivalent.

Responsibilities

  • Manage and maintain SIEM platform ensuring log ingestion health and rule accuracy.
  • Lead Tier 2 incident response per IR playbook and SLAs.
  • Document investigations and actions in ITSM systems like ServiceNow or Jira.
  • Perform root cause analysis on major incidents and share lessons learned.
  • Develop and tune detection and correlation rules and security dashboards.
  • Identify log source gaps and onboard data sources to SIEM.
  • Automate triage with SOAR playbooks to reduce MTTD/MTTR.
  • Monitor endpoint telemetry using EDR platforms to detect malware and LotL.
  • Analyze firewall and network logs for suspicious traffic and policy violations.
  • Investigate alerts from IDS/IPS, proxies, DNS security, and NDR tools.
  • Consume threat intel feeds and enrich alerts across security stack.

Skills

SOC operations
Incident response
Threat detection
Root cause analysis
Automation

Education

Bachelor's degree in Information Technology / Cyber Security

Tools

Splunk
Microsoft Sentinel
QRadar
CrowdStrike Falcon
Microsoft Defender for Endpoint
SentinelOne
Cortex XDR
Palo Alto
FortiGate
Check Point
ServiceNow

Job description

Department: Information Security / Security Operations Center (SOC)

Designation: L2 Information Security

Reporting To: SOC Manager

Experience: Minimum 5 years in a SOC / Security Operations environment

Work Location: Ambattur, Chennai

Role:

We are seeking an experienced Security Analyst (Tier 2) to join our Security Operations Center (SOC) team. The successful candidate will serve as a subject matter expert in enterprise security monitoring, responsible for the detection, investigation, and response to cybersecurity incidents and threats across a large-scale, complex enterprise environment.

Responsibilities:
  • Manage and maintain the SIEM platform — ensuring log ingestion health, data source onboarding, parser validation, and rule accuracy.
  • Lead and coordinate Tier 2 incident response activities — containing, eradicating, and recovering from security incidents in line with the SOC IR playbook and defined SLAs.
  • Document all investigation steps, findings, evidence, and actions taken accurately within the ITSM / ticketing system (e.g. ServiceNow, Jira).
  • Perform root cause analysis (RCA) on significant incidents and contribute lessons learned to post-incident review reports.
  • Develop, tune, and maintain detection rules, correlation rules, and dashboards to improve coverage across the MITRE ATT&CK framework.
  • Identify log source gaps and work with IT and infrastructure teams to onboard missing data sources into the SIEM.
  • Automate repetitive triage tasks through SOAR playbooks (e.g. Cortex XSOAR, Sentinel Logic Apps) to improve analyst efficiency and reduce MTTD/MTTR.
  • Monitor and investigate endpoint telemetry using EDR platforms (e.g. CrowdStrike Falcon, Microsoft Defender for Endpoint, SentinelOne) to detect malicious activity including malware, ransomware, and living off-the-land (LotL) attacks.
  • Analyse firewall logs and network traffic data (Palo Alto, FortiGate, Cisco ASA, Check Point) to identify suspicious traffic patterns, policy violations, and network-based threats.
  • Investigate alerts originating from IDS/IPS systems, web proxies, DNS security platforms, and network detection and response (NDR) solutions.
  • Consume and operationalize threat intelligence feeds (commercial and open-source) — triaging IOCs, enriching alerts, and updating blocking lists in SIEM, firewall, and EDR platforms.
  • Track active threat campaigns, adversary groups, and CVEs relevant to the organization’s sector and technology stack.
  • Collaborate with IT, infrastructure, and engineering teams on threat remediation
Qualification:
  • Any degree in information technology specialization in Cyber Security/ Forensic, computer science, Information Technology
  • 5 to 7 years of experience working in a 24x7 Security Operation Center (SOC) environment.
  • Hands-on experience working with any of the SIEM tools (Splunk, Microsoft Sentinel, or QRadar)
  • EDR expertise (CrowdStrike Falcon, Microsoft Defender, SentinelOne, or Cortex XDR)
  • Relevant certifications such as CEH, CHFI, COMPTIA +, GCIA, GCIH, Splunk, Elastic, Microsoft Sentinel, QRadar, or equivalent.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Walk-in | Senior Security Analyst
Walk-in | Senior Security Analyst

Access Healthcare • Chennai District

On-site
INR 900,000 - 1,200,000
Security Operations Center Analyst - L2 || Mumbai || Only Immediate Joiner
Security Operations Center Analyst - L2 || Mumbai || Only Immediate Joiner

Innova ESI • Mumbai

On-site
INR 800,000 - 1,200,000
Soc Analyst
Soc Analyst

Incedo • Gurugram District

On-site
INR 1,800,000 - 2,400,000
24x7 Rotational Shift
Willingness to work on weekends/holid-
Security Analyst - L2
Security Analyst - L2

Nopal Cyber, LLC. • Hyderabad

On-site
INR 1,200,000 - 1,600,000
SOC Analyst
SOC Analyst

Resillion • Bengaluru

Hybrid
INR 600,000 - 900,000
SOC L1 Analyst
SOC L1 Analyst

Verint • Bengaluru

On-site
INR 1,000,000 - 1,500,000
SOC L3 Expert
SOC L3 Expert

Maandag® Middle East • India

On-site
INR 800,000 - 1,200,000
Cyber Security Analyst (SOC)
Cyber Security Analyst (SOC)

Genpact • Pune District

On-site
INR 900,000 - 1,500,000
Soc Analyst
Soc Analyst

Deloitte Shared Services India • Mumbai

On-site
INR 900,000 - 1,500,000
L2 SOC Analyst
L2 SOC Analyst

UST • Thiruvananthapuram

Hybrid
INR 600,000 - 900,000