SOC Analyst-L2

2 hours, 27 minutes ago
Full-time
Mid Level
Cybersecurity
Protera

Protera

Protera Technologies modernizes, optimizes, and secures enterprise workloads in the cloud, offering proactive services to solve business challenges, optimize costs, and mitigate risks with transparency.

IT Services
251-1K
Founded 1998

Description

  • Monitor security alerts and analyze activity across SIEM, EDR, NDR, FIM, and antivirus platforms to detect threats in real time.
  • Perform correlation and pattern analysis across multiple data sources to identify anomalies and attack behavior.
  • Execute incident response activities including triage, containment, eradication, and recovery in line with NIST standards.
  • Document incidents with root cause analysis, attack vectors, corrective actions, and post-incident review findings.
  • Develop, maintain, and improve incident response playbooks and runbooks for recurring alerts and use cases.
  • Collaborate on SOAR playbooks to automate enrichment, containment, and notification workflows.
  • Tune detection rules and security tooling to reduce false positives and improve alert fidelity.
  • Conduct vulnerability assessments, track remediation efforts, and coordinate with IT teams on risk reduction.
  • Manage and optimize security tools and integrations to improve incident visibility, response time, and operational readiness.
  • Generate incident metrics, dashboards, and compliance reports, and support audits and evidence gathering.

Requirements

  • 4+ years of experience in SOC operations, cybersecurity, or incident response.
  • Strong knowledge of EDR, SIEM, SOAR, NDR, FIM, and antivirus/NGAV platforms.
  • Experience writing playbooks, automating responses, and tuning detection logic.
  • Familiarity with incident handling frameworks, threat hunting, and digital forensics.
  • Working knowledge of MITRE ATT&CK, Cyber Kill Chain, NIST IR, and ISO 27001.
  • Preferred certifications include CompTIA Security+, CySA+, CEH, Microsoft SC-200, or equivalent.
  • Preferred experience with SIEM tools such as Splunk, Microsoft Sentinel, QRadar, or Elastic.
  • Preferred experience with EDR/NDR tools such as CrowdStrike Falcon, Defender for Endpoint, SentinelOne, Darktrace, or Corelight.
  • Preferred experience with FIM/AV tools such as Tripwire, Qualys FIM, Trellix/McAfee, Sophos, or Bitdefender.
  • Strong communication and documentation skills for technical and executive audiences.
  • Ability to work effectively in high-pressure, time-sensitive environments with precision and accuracy.

Benefits

  • Work-from-home setup.
  • Comprehensive medical benefits.
  • Gratuity, PF, EPS, bonus, and NPS.
  • Shift allowances and on-call allowance.
  • Health and wellness allowances.
  • Learning and development allowances.
  • No-question-asked certification policy.
  • Certification bounty bonus.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

FBS Information Security Analyst

Capgemini 100K+ Internet Software & Services

FBS – Farmer Business Services, in partnership with Capgemini as Employer of Record, is seeking a Platform Security team member to help secure Farmers’ SaaS platforms and support compliance and access governance across a global environment.

57 minutes ago

Threat Intelligence Analyst (Quantitative Methods)

Moonshot 51-250 Diversified Consumer Services

Moonshot is seeking an Analyst to support threat intelligence reporting on online targeted violence in the US, focusing on open-source analysis and delivery of insights for US-based clients.

Kibana Python Tableau
1 hour, 12 minutes ago

SOC Analyst

Kraft Kennedy 51-250 Internet Software & Services

Kraft Kennedy is hiring a remote SOC Analyst to support its managed security services team by maintaining the SIEM platform, investigating incidents, and helping improve client security operations.

Azure Linux PowerShell Python SIEM
1 hour, 42 minutes ago

Sr. Lead Incident Response / Supervisor Level 5

WaveStrong, 51-250 Internet Software & Services

Sr. Lead Incident Response / Supervisor Level 5 professional role focused on protecting enterprise systems, data, and networks by leading complex security initiatives and improving cyber defense operations.

2 hours, 27 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers