Bangalore, KA, IN
9 days ago
CC - SE/ SOC - Defender/L2
Position Description:

Job Title: SOC Analyst – Level 2
 

Role Summary
The SOC Level 2 Analyst is responsible for advanced security event analysis, incident response, and threat hunting. This role involves working with cutting-edge security tools, including Microsoft Defender suite, to protect organizational assets.

Key Responsibilities

. Advanced Alert Analysis: Validate and investigate escalated alerts from L1 using SIEM and EDR tools.
. Incident Response: Execute containment, eradication, and recovery steps for confirmed incidents.
. Threat Hunting: Proactively search for indicators of compromise across endpoints and networks.
. Microsoft Defender Expertise: Use Microsoft Defender for Endpoint for malware detection and remediation. Monitor and respond to alerts in Microsoft Defender for Identity and Defender for Office 365. Configure and optimize Microsoft Security Center dashboards.
. Tool Integration: Work with Azure Sentinel, Splunk, QRadar, and SOAR platforms for automation.
. Forensics & Malware Analysis: Perform deep-dive investigations using sandboxing and forensic tools.
. Playbook Development: Update incident response workflows and automation scripts.
. Reporting & Compliance: Document incidents and prepare reports for audits.


Required Tools & Technologies

. SIEM: Azure Sentinel, Splunk, QRadar
. EDR: Microsoft Defender for Endpoint, CrowdStrike, Carbon Black
. Threat Intelligence: MISP, Recorded Future
. SOAR: Palo Alto Cortex XSOAR, Microsoft Sentinel Automation
. Network Security: IDS/IPS (Snort, Suricata), Firewalls
. Cloud Security: Microsoft Defender for Cloud, AWS GuardDuty
. Scripting: Python, PowerShell for automation


Skills & Qualifications

. Strong knowledge of MITRE ATT\&CK framework.
. Hands-on experience with Microsoft Defender suite.
. Familiarity with incident response lifecycle and digital forensics.
. Certifications: Microsoft SC-200, CompTIA Security+, CEH, CISSP (preferred).

 

Skills: Change ManagementNetwork SecuritySecurity Operations CenterThreat Risk Assessment What you can expect from us:

Together, as owners, let’s turn meaningful insights into action.

Life at CGI is rooted in ownership, teamwork, respect and belonging. Here, you’ll reach your full potential because…

You are invited to be an owner from day 1 as we work together to bring our Dream to life. That’s why we call ourselves CGI Partners rather than employees. We benefit from our collective success and actively shape our company’s strategy and direction.

Your work creates value. You’ll develop innovative solutions and build relationships with teammates and clients while accessing global capabilities to scale your ideas, embrace new opportunities, and benefit from expansive industry and technology expertise.

You’ll shape your career by joining a company built to grow and last. You’ll be supported by leaders who care about your health and well-being and provide you with opportunities to deepen your skills and broaden your horizons.

Come join our team—one of the largest IT and business consulting services firms in the world.

Confirmar seu email: Enviar Email