Cybersecurity Analyst / SOC Analyst L2

Beyondsoft Singapore

Singapore

On-site

SGD 90,000 - 140,000

Full time

17 hours ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Beyondsoft Singapore is seeking a capable SOC Analyst (L2) to perform triage, investigate security alerts across SIEM, EDR/XDR, cloud, and identity platforms.

You will correlate events, hunt threats using MITRE ATT&CK, coordinate containment and remediation with IT teams, and document findings for stakeholders.

Must have a degree in cybersecurity or IT and 4+ years in SOC/IR; strong communication and cloud familiarity with AWS/Azure/GCP preferred.

Qualifications

  • Degree or Diploma in Cybersecurity, IT, or related field.
  • 4+ years of experience in SOC operations or incident response (L2 preferred).
  • Experience with SIEM, EDR/XDR, and cloud or identity security tools.
  • Strong understanding of attack chains, MITRE ATT&CK, and threat analysis.
  • Hands-on experience in incident investigation or threat hunting.
  • Familiar with AWS, Azure, and GCP.
  • Knowledge of networking concepts (TCP/IP, DNS, HTTP).
  • Analytical and problem-solving skills; good communication for cross-functional work.
  • Certs such as CompTIA Security+, CEH, or GCIH are a plus.
  • Ability to operate independently in a SOC environment.

Responsibilities

  • Perform L2 triage and investigation of security alerts across SIEM, EDR/XDR, email, identity, network, and cloud platforms.
  • Correlate events to identify root cause, scope, and impact of security incidents.
  • Investigate phishing, malware, account compromise, and unauthorised access cases.
  • Conduct proactive threat hunting using threat intelligence and MITRE ATT&CK framework.
  • Support containment, remediation, and recovery activities during incidents.
  • Document investigation findings and prepare incident reports for stakeholders.
  • Escalate complex or high severity incidents to L3 or relevant teams with clear handover notes.
  • Monitor security dashboards and respond to alerts within defined SLAs.
  • Assist in vulnerability assessment and coordinate patching with relevant teams.
  • Contribute to SOC improvements (playbooks, detection tuning, onboarding of new tools).
  • Stay updated on emerging threats, attack techniques, and security trends.
  • Work closely with IT, infrastructure, and other teams during incident response.

Skills

MITRE ATT&CK
Threat analysis
Incident investigation
Threat hunting
Networking concepts
Analytical thinking
Problem solving
Communication
Independent work

Education

Degree or Diploma in Cybersecurity, IT, or related field

Tools

SIEM
EDR/XDR
AWS
Azure
GCP
Cloud security tools

Job description

  • Perform L2 triage and investigation of security alerts across SIEM, EDR/XDR, email, identity, network, and cloud platforms
  • Correlate events to identify root cause, scope, and impact of security incidents
  • Investigate phishing, malware, account compromise, and unauthorised access cases
  • Conduct proactive threat hunting using threat intelligence and MITRE ATT&CK framework
  • Support containment, remediation, and recovery activities during incidents
  • Document investigation findings and prepare incident reports for stakeholders
  • Escalate complex or high severity incidents to L3 or relevant teams with clear handover notes
  • Monitor security dashboards and respond to alerts within defined SLAs
  • Assist in vulnerability assessment and coordinate patching with relevant teams
  • Contribute to SOC improvements (playbooks, detection tuning, onboarding of new tools)
  • Stay updated on emerging threats, attack techniques, and security trends
  • Work closely with IT, infrastructure, and other teams during incident response
Qualification
  • Degree or Diploma in Cybersecurity, IT, or related field
  • At least 4 years of experience in SOC operations or incident response (L2 preferred)
  • Experience with SIEM, EDR/XDR, and cloud or identity security tools
  • Strong understanding of attack chains, MITRE ATT&CK, and threat analysis
  • Demonstrated hands on experience in incident investigation or threat hunting
  • Familiar with common cloud platforms such as AWS, Azure, or GCP
  • Good knowledge of networking concepts and protocols (TCP/IP, DNS, HTTP, etc)
  • Strong analytical and problem solving skills
  • Good communication skills to work with cross functional teams
  • Relevant certifications such as CompTIA Security+, CEH, or GCIH are a plus
  • Ability to operate independently in a SOC environment

Beyondsoft is committed to being an equal opportunity employer and provides equal employment opportunities to all employees and applicants. We strive to cultivate a workplace that celebrates diversity and inclusion, where individuals of all backgrounds—regardless of nationality, ethnicity, religion, age, gender identity, sexual orientation, or any other distinguishing trait—can succeed and thrive. We prohibit discrimination and harassment of any type with regard to race, color, religion, age, national origin, disability status, genetics, sexual orientation, gender identity, or expression. This policy applies to all terms and conditions of employment, including recruiting, hiring, and the entire employee lifecycle. We are focused on creating an environment where everyone can reach their full potentetl

Employment offers from Beyondsoft are contingent upon the successful completion of any required pre-employment processes, in line with applicable laws and regulations. Beyondsoft does not ask for any recruitment fees, nor does it request any unauthorized payments from candidates as part of the hiring pro

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Operations SOC Analyst
Security Operations SOC Analyst

Red Alpha Cybersecurity • Singapore

On-site
SGD 70,000 - 110,000
Security Analyst L2
Security Analyst L2

ENSIGN INFOSECURITY (CYBERSECURITY) PTE. LTD. • Singapore

On-site
SGD 70,000 - 95,000
L3 SOC analyst & SOC Lead
L3 SOC analyst & SOC Lead

INSYGHTS SECURITY PTE. LTD. • Singapore

On-site
SGD 120,000 - 180,000
Senior Cyber Security Consultant
Senior Cyber Security Consultant

Singtel • Singapore

On-site
Confidential
Senior SOC Engineer, Digital Infrastructure
Senior SOC Engineer, Digital Infrastructure

Kerry Consulting • Singapore

On-site
SGD 110,000 - 180,000
Cybersecurity SOC Analyst
Cybersecurity SOC Analyst

SPADE CONSULTING AND SERVICES PTE. LTD. • Singapore

On-site
SGD 55,000 - 95,000
Cybersecurity Consultant
Cybersecurity Consultant

PERCEPT SOLUTIONS PTE. LTD. • Singapore

On-site
SGD 120,000 - 180,000
SOC Analyst I
SOC Analyst I

UST • Singapore

On-site
SGD 60,000 - 90,000
Senior Analyst, Threat Detection and Response
Senior Analyst, Threat Detection and Response

SATS Ltd. • Singapore

On-site
SGD 90,000 - 150,000
SOC Analyst
SOC Analyst

DACTA SG PTE. LTD. • Singapore

On-site
SGD 60,000 - 90,000