Nopal Cyber logo
Nopal CyberPosted 3 months ago

Security Analyst - L2

On-siteKotwalucheruvu Tanda, State of Telangāna, Republic of India

Full TimeBachelors DegreeSmall

Job Summary

Conduct deep-dive investigations on alerts from SIEM, EDR/XDR, Cloud, DLP, and Email Security tools to reconstruct attack timelines and identify root cause. Analyze advanced threats including lateral movement, privilege escalation, and malware activity by performing endpoint and cloud incident analysis. Tune DLP and DAM policies to reduce false positives while creating and enriching IOCs for threat intelligence lookups. Lead incident investigations, provide containment recommendations, and ensure timely escalation to L3/IR teams for critical incidents. Improve detection use cases and maintain detailed incident documentation while supporting threat hunting activities. Work in a 24x7 rotational shift environment with 3 to 6 years of SOC experience required.

Required Qualifications

  • 3 to 6 years of experience in SOC / Cyber Security Operations / Incident Response
  • Bachelor's degree in Cybersecurity, Computer Science, IT, or related field
  • Strong hands-on experience with SIEM platforms (Sentinel, Splunk, QRadar, ArcSight)
  • Experience with EDR/XDR tools (Microsoft Defender, CrowdStrike, SentinelOne)
  • Practical knowledge of cloud security monitoring (Azure, AWS, GCP)
  • Experience in Netskope DLP and Database Activity Monitoring alert investigations
  • Understanding of email security solutions and phishing/BEC analysis
  • Relevant certifications: CySA+, CCSP, CEH, GCIA, GCIH, SC-200, Splunk Certified
  • Strong knowledge of MITRE ATT&CK framework and attack lifecycle mapping
  • Ability to correlate events across endpoint, network, cloud, and database layers
  • Proficiency in SIEM query languages (KQL, etc.)
  • Solid understanding of network protocols, authentication mechanisms, and log analysis
  • Experience in incident handling, root cause analysis, and attack chain reconstruction
  • Strong analytical and problem-solving skills with attention to detail
  • Ability to work independently and mentor L1 analysts
  • Effective communication skills for technical and non-technical stakeholders
  • Ability to work in a 24x7 rotational shift environment

Hiring someone like this?

Get your role in front of qualified candidates on Sorce.

Get started

Apply to this job in one click with Sorce

Apply on Sorce