SOC Analyst – L1

Provisiontech

Gangtok

On-site

INR 420,000 - 600,000

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Provision Technologies LLP in Gangtok, Sikkim is seeking an L1 SOC Analyst to join the Security Operations team. You will monitor security events, perform initial triage, and escalate incidents to L2 as needed.

This on-site role requires working in a 24×7 rotational shift environment within an infrastructure-focused team. The ideal candidate has 2+ years in IT/security, strong SIEM understanding, and familiarity with Windows/Linux, firewalls, and EDR tools.

Qualifications

  • Graduation in CS/IT/Cybersecurity or equivalent.
  • Minimum 2 years of IT/security experience, hands-on SOC preferred.
  • Certifications such as Security+, CEH, CySA+ considered a plus.

Responsibilities

  • Monitor security alerts and events using SIEM/SOC platforms.
  • Perform first-level alert triage and classify incidents.
  • Analyze logs from firewalls, servers and endpoints.
  • Identify IOCs and escalate high-risk incidents to L2.
  • Maintain incident tickets and daily SOC reports.

Skills

SOC operations
Security monitoring
Log analysis
Networking basics
Firewall security
Windows basics
Linux basics
EDR
Analytical skills
Communication
Documentation

Education

CS/IT/Cybersecurity degree

Tools

SIEM
EDR tools

Job description

Company: Provision Technologies LLP
Location: Gangtok, Sikkim
Employment type: Full-time | On-site
Experience: 2+ years
Work mode: 24×7 rotational shifts

About the role:

Provision Technologies LLP is looking for a SOC Analyst – L1 to join our Security Operations team supporting a critical infrastructure environment in Gangtok, Sikkim.

The L1 Analyst will be the first line of defence, responsible for monitoring security events, performing initial alert triage, identifying potential threats and escalating genuine incidents to the L2/Security Engineering team.

Key responsibilities:
  • Monitor security alerts and events through SIEM and SOC platforms
  • Perform first-level alert triage, validation and classification
  • Analyse logs from firewalls, servers, endpoints, network devices and authentication systems
  • Identify suspicious activities, Indicators of Compromise (IOCs) and potential security incidents
  • Perform basic investigation and event correlation
  • Escalate confirmed or high-risk incidents to L2
  • Monitor security events across IT infrastructure and, where applicable, OT/SCADA environments
  • Perform basic threat intelligence enrichment of IPs, domains, URLs and file hashes
  • Create and maintain incident tickets with accurate investigation details
  • Maintain shift handover notes, incident records and daily SOC reports
  • Monitor the health of log sources and escalation ingestion/connectivity issues
  • Follow established SOC SOPs, incident response procedures and escalation matrices
  • Work closely with L2 analysts, security engineers and the customer IT/OT team
Required skills:
  • Good understanding of SOC operations and SIEM
  • Practical experience in security alert monitoring and log analysis
  • Understanding of:
    • TCP/IP, DNS, HTTP/HTTPS, SMTP, SSH and VPN
    • Firewalls and network security
    • Windows and Linux fundamentals
    • Endpoint security / EDR
  • Understanding of common cyber threats such as:
    • Phishing
    • Malware
    • Brute-force attacks
    • Credential compromise
    • Privilege escalation
    • Lateral movement
    • Command & Control
    • Data exfiltration
  • Good analytical and problem-solving skills
  • Strong written and verbal communication
  • Good incident documentation and reporting skills
Qualification & experience:
  • B.Tech/B.E./BCA/B.Sc./MCA/M.Sc. in Computer Science, IT, Cybersecurity or equivalent
  • Minimum 2 years of relevant IT/Security experience
  • Preferably 1.5–2+ years of hands-on SOC/Security Monitoring experience
  • Experience with any SIEM platform is preferred
  • Certifications such as Security+, CEH, CySA+, CSA or SC-200 will be an advantage
Important:
  • This is an on-site position in Gangtok, Sikkim
  • Candidates must be willing to relocate to Gangtok
  • Willingness to work in 24×7 rotational shifts is essential
  • Candidates with only theoretical knowledge or certification-based exposure, without practical SOC experience, may not be suitable
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

SOC Analyst / Security Engineer – L2
SOC Analyst / Security Engineer – L2

Provisiontech • Gangtok

On-site
INR 600,000 - 1,200,000
SOC Analyst – Level 1 (L1)
SOC Analyst – Level 1 (L1)

Techsec Digital Global Private Limited • Mumbai Suburban

On-site
INR 350,000 - 650,000
SOC Analyst – L1
SOC Analyst – L1

AlifCloud IT Consulting Pvt. Ltd. • Maharashtra

On-site
INR 350,000 - 550,000
SOC Analyst - L1 - Mumbai
SOC Analyst - L1 - Mumbai

Neysa • Mumbai

On-site
INR 500,000 - 800,000
Soc Analyst L1
Soc Analyst L1

TechDefence Labs • Ahmedabad District

On-site
INR 400,000 - 700,000
null
Soc Analyst
Soc Analyst

Firstmeridian Global Services • Hyderabad

On-site
INR 350,000 - 500,000
SOC Analyst
SOC Analyst

Access Healthcare • Chennai District

On-site
INR 1,200,000 - 1,800,000
SOC Analyst L1
SOC Analyst L1

Altisec Technologies • Pune District

On-site
INR 800,000 - 1,200,000
Senior Security Analyst
Senior Security Analyst

Eventus Security • Navi Mumbai

On-site
INR 800,000 - 1,400,000
SOC Analyst (Cyber Security Incident Response)
SOC Analyst (Cyber Security Incident Response)

Alike Thoughts • Bengaluru

On-site
INR 600,000 - 1,200,000