Photon Logo

Photon

SOC Analyst | Offshore | Unitedlex

Posted 2 Days Ago
Be an Early Applicant
In-Office or Remote
Hiring Remotely in India
Mid level
In-Office or Remote
Hiring Remotely in India
Mid level
Provide 24x7 SOC monitoring, detection, triage, investigation, and incident response. Manage and tune SIEM content, onboard log sources, operate EDR/IDS/vulnerability tools, perform threat hunting, correlate alerts, document incidents, and collaborate for remediation and process improvements.
The summary above was generated by AI
Please find the attached JD. Also I have updated the experience requirement to 3–8 years. However, the experience we are looking for should be relevant SOC experience and not the candidate’s total IT experience.
Sometimes candidates transition from other domains into SOC and may have limited SOC experience despite having extensive overall IT experience. Such candidates can still be considered if they demonstrate strong learning ability, adaptability, and good grasping skills and came from a networking background.

REQUIREMENTS & COMPETENCIES:

- Bachelor’s degree.

- 3-8 years of experience of working in Security operations and Incident response.

- Hands-on experience with Hunter SIEM platform.

- Hands-on experience with SentinelOne and Microsoft Defender (EDR/XDR).

- Experience in creating detection rules, correlation logic, log onboarding, and SIEM content

management.

- Strong understanding of networking concepts and protocols including TCP/IP, DNS, HTTP/S,

SMTP, VPN, and firewall technologies

- Prior experience detecting, analyzing, and responding to security incidents.

- Demonstrated ability to analyze and correlate information from a wide variety of enterprise

technologies.

- Knowledge of MITRE ATT&CK framework and experience mapping security detections and

incidents to ATT&CK tactics and techniques a plus.

- Familiarity with cloud security monitoring and threat intelligence concepts.

- Strong experience working on scanning tool like Rapid 7.

- Ability to work in a 24x7 rotational SOC environment and handle high-severity incidents.

- Good communication and documentation skills.

RESPONSIBILITIES:

- Provide 24x7 monitoring, detection, triage, investigation, and incident response activities as

part of the Security Operations Center.

- Monitor and analyze security events and alerts across multiple technologies to identify

suspicious and malicious activities.

- Monitor and manage security technologies including Hunter SIEM, SentinelOne, Microsoft

Defender, IDS/IPS, vulnerability scanners (Rapid 7), and related security monitoring tools.

- Conduct proactive threat hunting activities to identify potential threats and indicators of

compromise.

- Investigate security alerts and incidents, determine root cause, and support containment,

remediation, and recovery activities.

- Identify successful and unsuccessful intrusion attempts through event correlation and analysis

across various security platforms.

- Ensure timely escalation and proper hand-off of security incidents for remediation and

closure.

- Develop, maintain, and optimize SIEM use cases, detection rules, filters, and alert

configurations to improve visibility and reduce false positives.

- Onboard and manage log sources and ensure proper log collection and monitoring within the

SIEM platform.

- Monitor SIEM platform health, log ingestion status, and availability of security monitoring

tools.

- Manage and track security incidents and tickets in accordance with defined SLAs.

- Support incident response activities and maintain complete documentation throughout the

incident lifecycle.

- Collaborate with internal teams, application owners, and external vendors to support security

initiatives and projects.

- Participate in shift handover activities to ensure continuity in 24x7 SOC operations.

- Continuously identify and implement opportunities for security process improvement and

enhancement of the organization’s security posture.

Similar Jobs

An Hour Ago
In-Office or Remote
Senior level
Senior level
Cloud • Information Technology • Productivity • Security • Software • App development • Automation
Lead technical pre-sales engagements for large enterprise customers in APAC (India), build trusted advisor relationships, position Atlassian solutions to meet customer goals, collaborate with sales and partners, and drive revenue outcomes while staying current on product and technical knowledge.
Top Skills: Atlassian ProductsDevOpsItsmScaled Agile
2 Hours Ago
Remote or Hybrid
Senior level
Senior level
Artificial Intelligence • Big Data • Cloud • Information Technology • Machine Learning • Software
Drive pre-sales engagement and technical enablement with global MSP partners, lead demonstrations, POVs, and value workshops, support complex enterprise deals, partner on pipeline and account planning, provide product feedback to roadmap, and deliver partner-facing thought leadership and content.
Top Skills: CloudItilItsmMicrosoft 365NexthinkService DeskWindows 11
3 Hours Ago
Easy Apply
Remote
India
Easy Apply
Entry level
Entry level
Cloud • Security • Software • Cybersecurity • Automation
As a Business Development Representative, you'll lead outreach to potential accounts, generate qualified meetings, and collaborate with marketing and sales teams to identify prospects and opportunities.
Top Skills: Linkedin Sales NavigatorOutreach.IoSalesforce

What you need to know about the Delhi Tech Scene

Delhi, India's capital city, is a place where tradition and progress co-exist. While Old Delhi is known for its rich history and bustling markets, New Delhi is defined by its modern architecture. It's clear the region places a strong emphasis on preserving its cultural heritage while embracing technological advancements, particularly in artificial intelligence, which plays a central role in shaping the city's tech landscape, fueled by investments in research and development.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account