INTL INDIA - L2 SOC Analyst

Insight Global
Round Rock, TX, United States
24 days ago
Apply on jobs.insightglobal.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Compensation
$37,440.0 - $45,760.0
Working hours
Regular working hours

Tech stack

Microsoft Windows Cyber Security Computer Networks Noise Reduction Linux Intrusion Detection Systems Log Analysis Network Forensics Security Information and Event Management Mitre Att&ck Malware Cybercrime
+1 more
Microsoft Sentinel

Job description

  • Respond to security incidents and threat analysis.
  • Remediate high severity security incidents
  • Lead & participate in threat hunting and threat intelligence activities
  • Conduct advanced technical investigations for critical incidents paying attention to specific analysis and fast remediation advice with a focus on improving the customer security posture
  • Conduct analysis of infected hosts or analyze network traffic to identify attacker activity
  • Handle specific forensic and malware analysis, as well as complex log analysis requests
  • Perform event correlation review through incoming data feeds, ticketing systems and security alert mechanisms
  • Provide context on complex security incidents from Customer and other available resources, collect and assemble data, as well as contribute to technical reports
  • Utilize in-depth technical knowledge to design procedures for the detection of threat actor’s behavior, as well as develop and implement standard technical procedures (runbooks) to be used by the Security Monitoring team for day-to-day operations
  • Perform Event Stream tuning utilizing internal tools, metrics and experience involving key security concepts for systems efficiency
  • Review security related events assess their risk and validity based on available network, endpoint, and global threat intelligence information
  • Research and make recommendations for applying MITRE ATT&CK and NIST framework aligned strategies to the Customer’s environment
  • Guide and mentor fresh Cyber Security L1 Analyst in triaging activities
  • Accept work escalated by L1 Analysts for further analysis and reporting

Requirements

  • Requires 5+ Years of experince. At least 3-4 years SOC.
  • Experience with Microsoft Sentinel or Crowdstrike EDR/XDR toolsets
  • Understanding of SIEM, Endpoint Security solutions, Linux and Windows operating systems, Honeypots, Sinkholes and Malware Sandbox Technologies
  • Incident Response & Threat Hunting Understanding
  • Understanding of threat intelligence and threat modeling concepts
  • Advanced knowledge of cybersecurity components, principles, practices, and procedures
  • Understanding of computer network exploitation (CNE) and computer network defense (CND) concepts
  • Ability to research about targeted threat groups and their tactics, techniques and procedures (TTP)
  • Understanding of vulnerability and exploit analysis
  • Experience in conducting network traffic analysis and the detection of malicious code on endpoint systems
  • In-depth understanding about Windows and Linux System internals (process tree, event IDs, registry, scheduled tasks, etc)
  • Ability to clearly communicate technical observations to a variety of audiences, and strong written and verbal presentation skills
  • Flexible to support team during Public Holidays either in shift or On Call support
  • Experience with creating rules for noise reduction (suppression, whitelisting, custom rules)

Benefits & conditions

  • Multiple security certifications from the following: SANS GCIA, GCIH CCNA, CCIE, NGFW Specialization GREM, GCFE, OSCP (Threat Hunting specialist)

  • Secureworks

Benefit packages for this role will start on the 1st day of employment and include medical, dental, and vision insurance, as well as HSA, FSA, and DCFSA account options, and 401k retirement account access with employer matching. Employees in this role are also entitled to paid sick leave and/or other paid time off as provided by applicable law.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on jobs.insightglobal.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · World Congress 2025

6:01 min

Handling container constraints and fileless malware

Dimitrij Klesev +1 · LIVE

4:34 min

Motivational categories behind modern cybercriminal activities

Mauro Verderosa · LIVE

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

3:55 min

Demonstrating .NET installation on Debian and Azure Linux

Silvano Coriani Silvano Coriani · Europe 2026 Virtual

14:14 min

Addressing audience inquiries on analytical implementation and career growth

Julian Joseph · LIVE

Videos

See all

Related articles

See all