Job Title: Security Operations Center (SOC) Analyst
Job Purpose: L1 SOC Analyst – XDR Platform - L1 SOC Analyst to provide 24x7 security monitoring and support for Extended Detection and Response (XDR) platform. This role is the first line of defense in identifying, triaging, and escalating potential security incidents, ensuring threats are addressed quickly and effectively.
Qualification: Graduation
Certification:
Experience: 5+ Years
Responsibilities:
• Monitor the XDR platform and SIEM dashboards for security alerts and suspicious activities.
• Perform initial triage of alerts to assess severity, scope, and potential impact.
• Escalate confirmed incidents to respective domains/Resolving Teams with detailed findings.
• Investigate events using log analysis, threat intelligence, and platform tools.
• Assist in log source validation and troubleshooting to maintain data accuracy.
• Perform log integration break-fix activities when data feeds are disrupted.
• Follow established SOPs and incident escalation procedures.
• Document all investigations and actions taken in the ticketing system.
• Work collaboratively with senior analysts to improve detection rules and alert accuracy.
Skills & Experience
• Basic to intermediate experience with XDR platforms (e.g., Microsoft Defender XDR, CrowdStrike)
• Familiarity with SOC monitoring, detection, triage, and incident escalation.
• Knowledge of log collection, parsing, and troubleshooting.
• Understanding of common cyber threats and attack techniques.
• Good problem-solving and communication skills.
• Willingness to work in rotational shifts (including nights/weekends).
• Preferred certifications: CompTIA Security+, Microsoft SC-200, CEH, or similar.
Mandatory: