SOC L2 Analyst

AutoFlow Technologies (AutoFlowTech)

Mumbai

On-site

INR 1,200,000 - 1,800,000

Full time

6 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

AutoFlow Technologies (AutoFlowTech) seeks a SOC Analyst L2 to oversee day-to-day SOC operations delivered by the MSSP, coordinate with LOBs, and support SIEM/SOAR activities and incident management. The role requires ensuring security monitoring coverage, service delivery, and compliance with RBI/SEBI/IRDAI guidelines, with availability for after-hours incidents when needed.

You will act as the central point between MSSP, business lines, audit teams and security functions to drive SOC programs

Qualifications

  • Experience: 3-4 years in SOC Operations, Security Monitoring, Incident Response, SIEM or MSSP Operations.
  • Required Skills: SIEM, Incident Management.
  • Regulatory Exposure: RBI, SEBI, CERT-In, IRDAI requirements, Security Audits, VAPT.

Responsibilities

  • Act as primary operational coordinator for SOC MSSP SOC services and other Aditya Birla Capital Line of Business (LOB's) for SOC related matters.
  • Track daily alerts, incidents, escalations and operational deliverables across LOB's.
  • Coordinate with LOB SPOCs for log onboarding, asset integration, monitoring coverage and security use-case deployment.
  • Maintain centralized trackers for onboarding status, dependencies, incidents, audit observations and pending action items.
  • Manage escalation matrix and ensure timely resolution of blockers impacting SOC services.
  • Track onboarding progress and ensure monitoring coverage for critical business assets.
  • Maintain SOC use case and playbook inventory.
  • Support during development, testing and optimization of SOAR playbooks.
  • Ensure automation of triage, enrichment, ticket creation and response activities wherever feasible.
  • Track playbook effectiveness and improvements.
  • Coordinate tuning of detection rules and correlation use cases.
  • Support threat hunting activities and compromise assessments.
  • Improve alert quality and reduce false positives.
  • Maintain repository of alerts, incidents, RCA reports, playbooks, SOC reports and audit evidence.
  • Support RBI, SEBI, IRDAI, CERT-In and Internal Audit requirements.
  • Track closure of audit observations and compliance action items.
  • Prepare daily, weekly and monthly SOC reports.
  • Track MTTD, MTTA, MTTR, alert trends, incident trends and SLA compliance.
  • Maintain dashboards for monitoring coverage, incidents and automation effectiveness.
  • Provide operational MIS to management.
  • Support SIEM, SOAR, UEBA and SOC modernization initiatives.
  • Track implementation of new use cases and monitoring controls.
  • Drive automation and process optimization initiatives.
  • Support cyber resilience and operational maturity improvements.
  • Participate in critical incident response activities beyond business hours whenever required.
  • Support major security incidents, cyber crisis situations and emergency escalations.
  • Coordinate with MSSP and internal teams for rapid incident resolution.
  • RBI Cyber Security & Cyber Resilience expectations
  • SEBI CSCRF (Cyber Security & Cyber Resilience Framework)
  • IRDAI Cyber Security Guidelines
  • Internal Audit, External Audit and Regulatory Assessments

Skills

SIEM
Incident Management
SOC Operations
MSSP Operations
Security Monitoring
Coordination
Regulatory Compliance

Job description

Role Purpose: The SOC Analyst L2 will be responsible for day-to-day management of SOC operations delivered by the SOC MSSP, coordination with ABCL Lines of Business (LOBs), SIEM/SOAR operations, incident management, security monitoring coverage, service delivery management, SOC transformation initiatives, and regulatory compliance support. The resource will act as the central coordination point between MSSP, LOB stakeholders, technology teams, audit teams and security functions to ensure effective SOC service delivery and successful execution of SOC programs.

Additional Requirement: Ability to support critical incidents, audits and security operations beyond business hours whenever required.

Key Result Areas (KRA) & Responsibilities (SOC Operational Resource):
KRA Responsibilities
SOC Operations & MSSP Management

Act as primary operational coordinator for SOC MSSP SOC services and other Aditya Birla Capital Line of Business (LOB's) for SOC related matters.

  • Track daily alerts, incidents, escalations and operational deliverables across LOB's.
LOB Coordination, SOC Onboarding & Program Management
  • Coordinate with LOB SPOCs for log onboarding, asset integration, monitoring coverage and security use-case deployment.
  • Maintain centralized trackers for onboarding status, dependencies, incidents, audit observations and pending action items.
  • Manage escalation matrix and ensure timely resolution of blockers impacting SOC services.
  • Track onboarding progress and ensure monitoring coverage for critical business assets.
SOAR & Playbook Management

Maintain SOC use case and playbook inventory.

  • Support during development, testing and optimization of SOAR playbooks.
  • Ensure automation of triage, enrichment, ticket creation and response activities wherever feasible.
  • Track playbook effectiveness and improvements.
Use Case Detection Enhancement

Coordinate tuning of detection rules and correlation use cases.

  • Support threat hunting activities and compromise assessments.
  • Improve alert quality and reduce false positives.
Regulatory & Operational Compliance Support

Maintain repository of alerts, incidents, RCA reports, playbooks, SOC reports and audit evidence.

  • Support RBI, SEBI, IRDAI, CERT-In and Internal Audit requirements.
  • Track closure of audit observations and compliance action items.
SOC Reporting & Metrics

Prepare daily, weekly and monthly SOC reports.

  • Track MTTD, MTTA, MTTR, alert trends, incident trends and SLA compliance.
  • Maintain dashboards for monitoring coverage, incidents and automation effectiveness.
  • Provide operational MIS to management.
SOC Transformation & Continuous Improvement

Support SIEM, SOAR, UEBA and SOC modernization initiatives.

  • Track implementation of new use cases and monitoring controls.
  • Drive automation and process optimization initiatives.
  • Support cyber resilience and operational maturity improvements.
24x7 Incident Support

Participate in critical incident response activities beyond business hours whenever required.

  • Support major security incidents, cyber crisis situations and emergency escalations.
  • Coordinate with MSSP and internal teams for rapid incident resolution.
Regulatory Alignment
  • RBI Cyber Security & Cyber Resilience expectations
  • SEBI CSCRF (Cyber Security & Cyber Resilience Framework)
  • IRDAI Cyber Security Guidelines
  • Internal Audit, External Audit and Regulatory Assessments
Qualification & Experience
  • Experience:3-4 years in SOC Operations, Security Monitoring, Incident Response, SIEM or MSSP Operations.
  • Required Skills: SIEM, Incident Management.
  • Regulatory Exposure: Experience supporting RBI, SEBI, CERT-In, IRDAI requirements, Security Audits, VAPT and Regulatory Assessments.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

SISA Information Security - Security Operations Center Manager - SIEM/SOAR
SISA Information Security - Security Operations Center Manager - SIEM/SOAR

SISA • Bengaluru

On-site
INR 3,000,000 - 5,200,000
SOC Manager
SOC Manager

SISA • Bengaluru

On-site
INR 6,000,000 - 9,000,000
Security Operations Center Manager
Security Operations Center Manager

CMS It Services • Dadri

On-site
INR 1,400,000 - 2,100,000
Security Operations Center Analyst - L2
Security Operations Center Analyst - L2

SRM Technologies • Chennai District

On-site
INR 900,000 - 1,500,000
SOC Analyst – L1
SOC Analyst – L1

AlifCloud IT Consulting Pvt. Ltd. • Maharashtra

On-site
INR 350,000 - 550,000
SOC Analyst
SOC Analyst

Access Healthcare • Chennai District

On-site
INR 1,200,000 - 1,800,000
SOC Analyst - L1 - Mumbai
SOC Analyst - L1 - Mumbai

Neysa • Mumbai

On-site
INR 500,000 - 800,000
Senior SOC Analyst
Senior SOC Analyst

Hireginie • Bengaluru

On-site
INR 1,200,000 - 1,800,000
SOC L1 Analyst
SOC L1 Analyst

Verint • Bengaluru

On-site
INR 1,000,000 - 1,500,000
Cyber Security Threat Hunter - L3
Cyber Security Threat Hunter - L3

SHI • Hyderabad

On-site
INR 400,000 - 700,000