SOC Analyst – L1

WORKSENT

Ernakulam

On-site

INR 600,000 - 900,000

Full time

5 hours ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

WORKSENT in India is seeking an L1 SOC Analyst to monitor security alerts, perform initial triage, and investigate suspicious activities. You will work with SIEM, SOAR, EDR, and cloud technologies to identify incidents and escalate when needed.

The role requires strong log analysis, documentation, and communication skills, with willingness to work rotational shifts and stay updated on threat trends and ATT&CK frameworks.

Qualifications

  • Understanding of cybersecurity concepts.
  • Understanding of networking fundamentals (TCP/IP, DNS, HTTP/HTTPS, VPN, firewalls).
  • Basic understanding of Windows and Linux environments.
  • Understanding of authentication, authorization, and MFA.
  • Ability to analyze logs and identify suspicious activity.
  • Strong analytical and problem-solving skills.
  • Good documentation and communication skills.
  • Willingness to work in rotational shifts.

Responsibilities

  • Monitor security alerts across SIEM, EDR, and other integrated security platforms.
  • Perform initial alert triage and validation.
  • Investigate suspicious activities using available logs and security telemetry.
  • Identify false positives and document investigation findings.
  • Classify alerts and incidents based on severity and potential business impact.
  • Escalate confirmed security incidents to L2/L3 analysts and customer teams according to defined procedures.
  • Support investigation of endpoint, identity, email, cloud, network, and application-related security events.
  • Maintain accurate incident and investigation documentation.
  • Follow SOC SOPs, playbooks, and runbooks during investigations.
  • Participate in shift handovers and ensure proper communication of ongoing incidents.
  • Monitor assigned security platforms for operational issues and raise platform-related problems.
  • Support preparation of daily, weekly, and monthly SOC reports.
  • Contribute to knowledge‑base updates and continuous improvement of SOC processes.
  • Maintain awareness of current cybersecurity threats, attack techniques, and vulnerabilities.

Skills

Cybersecurity concepts
Networking fundamentals
Windows and Linux basics
Authentication & MFA concepts
Log analysis
Analytical & problem-solving
Documentation & communication
Willingness to work shifts

Tools

Microsoft Sentinel
CrowdStrike
SentinelOne
Huntress EDR
Microsoft 365 Security
AWS
Firewalls and VPN
WAF
Application and Database Logs
MITRE ATT&CK
KQL

Job description

Role Overview

As an L1 SOC Analyst, you will be responsible for monitoring security alerts, performing initial triage and investigation, identifying potential security incidents, and escalating confirmed or suspicious activities to the appropriate teams.


You will work with technologies including SIEM, SOAR, EDR, Cloud, Network, Datacenter, Application and Database.


Key Responsibilities


  • Monitor security alerts across SIEM, EDR, and other integrated security platforms.

  • Perform initial alert triage and validation.

  • Investigate suspicious activities using available logs and security telemetry.

  • Identify false positives and document investigation findings.

  • Classify alerts and incidents based on severity and potential business impact.

  • Escalate confirmed security incidents to L2/L3 analysts and customer teams according to defined procedures.

  • Support investigation of endpoint, identity, email, cloud, network, and application-related security events.

  • Maintain accurate incident and investigation documentation.

  • Follow SOC SOPs, playbooks, and runbooks during investigations.

  • Participate in shift handovers and ensure proper communication of ongoing incidents.

  • Monitor assigned security platforms for operational issues and raise platform-related problems.

  • Support preparation of daily, weekly, and monthly SOC reports.

  • Contribute to knowledge‑base updates and continuous improvement of SOC processes.

  • Maintain awareness of current cybersecurity threats, attack techniques, and vulnerabilities.


Technical Areas


  • Microsoft Sentinel

  • Crowdstrike

  • SentinelOne

  • Huntress EDR

  • Microsoft 365 Security

  • Amazon Web Services (AWS)

  • Firewalls and VPN

  • Web Application Firewall (WAF)

  • Application and Database Logs

  • MITRE ATT&CK


Required Skills


  • Understanding of cybersecurity concepts.

  • Understanding of networking fundamentals such as TCP/IP, DNS, HTTP/HTTPS, VPN, and firewalls.

  • Basic understanding of Windows and Linux environments.

  • Understanding of authentication, authorization, and MFA.

  • Ability to analyze logs and identify suspicious activity.

  • Good analytical and problem‑solving skills.

  • Strong documentation and communication skills.

  • Willingness to work in rotational shifts.


Good to Have


  • Experience with Microsoft Sentinel or another SIEM.

  • Experience with EDR/XDR platforms.

  • Microsoft security certifications such as SC-200 or AZ-500.

  • Security+ or equivalent cybersecurity certification.

  • Knowledge of KQL.

  • Understanding of MITRE ATT&CK.

  • Basic knowledge of incident response and threat intelligence.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Analyst - L2
Security Analyst - L2

Nopal Cyber, LLC. • Hyderabad

On-site
INR 1,200,000 - 1,600,000
L2 SOC Analyst
L2 SOC Analyst

UST • Thiruvananthapuram

Hybrid
INR 600,000 - 900,000
SOC L1 Analyst
SOC L1 Analyst

Verint • Bengaluru

On-site
INR 1,000,000 - 1,500,000
SOC Analyst – Level 1
SOC Analyst – Level 1

Soffit Infrastructure Services (P) Ltd • Gurugram District

On-site
INR 600,000 - 900,000
SOC L3 Expert
SOC L3 Expert

Maandag® Middle East • India

On-site
INR 800,000 - 1,200,000
Soc Analyst
Soc Analyst

Incedo • Gurugram District

On-site
INR 1,800,000 - 2,400,000
24x7 Rotational Shift
Willingness to work on weekends/holid-
SOC Analyst L2
SOC Analyst L2

Keka Technologies Private Limited • Gurugram District

On-site
INR 1,200,000 - 2,500,000
Sr SOC Analyst - CyberAxis
Sr SOC Analyst - CyberAxis

Cyberaxislabs • Hyderabad

On-site
INR 1,200,000 - 1,800,000
Soc Analyst
Soc Analyst

Deloitte Shared Services India • Mumbai

On-site
INR 900,000 - 1,500,000
SOC Analyst (L1)
SOC Analyst (L1)

Wishtree Technologies • Ahmedabad District

On-site
INR 600,000 - 900,000