Senior Engineer SOC Level Two

Rayana EventsIndia₹1,000,000 – ₹1,800,000
Adzuna INPosted 1d agoOriginal Listing
it-jobs

Job Description

Senior Engineer - SOC (L2) Experience 6+ years in SOC / Blue Team / Incident Response role Location Mumbai Industry Preference BFSI / Regulated Financial Environment preferred Role Summary SOC L2 Analyst will be responsible for advanced alert triage, threat investigation, detection tuning, incident response coordination, and supporting SOC efficacy as per regulatory requirements (SEBI CSCRF). The role requires strong log analysis, endpoint telemetry investigation, and structured incident handling capability across EDR, SIEM, NDR, and cloud environments. Key Responsibilities Perform advanced alert triage and root cause analysis Conduct deep investigation using EDR/XDR telemetry Perform log correlation across SIEM, endpoint, firewall, and identity logs Lead incident handling for medium to high severity security incidents Map incidents to MITRE ATT&CK techniques Develop and tune detection use cases Reduce false positives through rule optimization Support regulatory reporting and SOC documentation Contribute to incident playbooks and response SOPs Participate in threat hunting exercises Provide technical mentoring to L1 analysts Mandatory Qualifications 6+ years of hands-on SOC / Incident Response experience Certified Ethical Hacker (CEH) from EC-Council At least one OEM Security Platform Certification (EDR/SIEM/XDR platform) Examples (any one): SentinelOne Certified Analyst Microsoft Security Operations Analyst (SC-200) Splunk Security / Power User Certification IBM QRadar Analyst Certification Strongly Preferred GIAC certification from GIAC (GSOC / GCIH / GCIA) Experience in regulated environments (SEBI, RBI, ISO 27001) Hands-on detection rule creation experience Experience in threat hunting Knowledge of MITRE ATT&CK framework Technical Skill Expectations Candidate must demonstrate: Strong log analysis capability Query-based investigation experience (SPL, KQL, AQL or equivalent) Understanding of endpoint attack lifecycle Knowledge of Windows event logs, Linux logs, network telemetry Experience handling phishing, malware, lateral movement, data exfiltration cases Basic scripting (PowerShell / Python preferred) Ability to prepare structured incident reports Behavioral Expectations Structured thinking under pressure Clear written documentation skills Ability to handle regulator/auditor queries Escalation maturity Ownership mindset What We Are Not Looking For Pure monitoring experience without investigation depth Only tool-navigation knowledge Red-team-only background without SOC experience Fresh CEH without practical SOC exposure Growth Path SOC L3 SOC Manager

Get AI-Matched to This Job

Upload your resume and our AI will score how well you match this and thousands of similar roles.