AI Jobs Map

InfoSec Arabia · Calicut, Kerala

SOC Analyst

mid_levelfull timePosted today
Apply on IndeedIndeedOpens the original posting. AI Jobs Map never asks for your details.

Stack mentioned

cybersecuritycehsiemsplunkcrowdstrikelinuxnessuspowershellpythonbashnetwork-securityidentity-and-access-managementvulnerability-managementthreat-intelligence

SOC Analyst

Location: Calicut

Employment Type: Full-Time (Remote work for international clients | 24/7 Shift Rotation)

Experience Level: Mid-Level (4–5 Years)

Salary: Negotiable based on experience

About the Role

We are expanding our operations in Kerala. We are seeking an experienced SOC Analyst to join our team. In this role, you will deliver security monitoring, threat detection, incident investigation, and response services for international clients.

Qualifications & Requirements

- Education: Bachelor’s degree in Cybersecurity, Computer Science, IT, or a related field.

- Experience: 4–5 years of relevant SOC/Cybersecurity experience.

- Mandatory Certifications: CEH or CompTIA Security+.

- Preferred Certifications: CySA+, SC-200, GCIH, CHFI, or equivalent.

- Languages & Soft Skills: Excellent English communication, documentation, and client-handling skills. Basic Arabic reading/writing ability is required.

- Flexibility: Willingness to work in rotating shifts to support global clients.

Technical Skills

- SIEM & EDR/XDR: Hands-on experience with Microsoft Sentinel, Splunk, IBM QRadar, Elastic, or LogRhythm; experience with Microsoft Defender, CrowdStrike, SentinelOne, or Sophos.

- Networking & Systems: Strong understanding of TCP/IP, DNS, HTTP/HTTPS, VPNs, firewalls, IDS/IPS, email security, Windows, Linux, Active Directory, M365, and cloud environments.

- Frameworks & Threats: Familiarity with MITRE ATT&CK, Cyber Kill Chain, IOC analysis, and threat-intelligence platforms; solid grasp of malware, phishing, ransomware, brute-force, privilege escalation, and exfiltration vectors.

- Vulnerability Assessment: Experience with tools like Nessus, Qualys, OpenVAS, or Rapid7.

- Scripting: Basic automation or scripting skills in PowerShell, Python, Bash, or KQL.

Key Responsibilities

- Security Monitoring & Triage: Monitor and investigate security events using SIEM platforms; perform incident triage, threat analysis, containment, and root-cause analysis.

- Detection Engineering: Develop and fine-tune SIEM correlation rules, alerts, dashboards, and detection use cases.

- Threat Hunting & Investigation: Conduct threat hunting using IOCs and attacker behavior; investigate endpoint, network, email, identity, and cloud security incidents.

- Log Analysis: Analyze Windows, Linux, firewall, VPN, Active Directory, DNS, proxy, and application logs.

- Vulnerability & Remediation: Support vulnerability assessments, risk prioritization, and remediation tracking.

- Reporting & Client Communication: Prepare incident reports, executive summaries, and security recommendations; communicate findings directly to international clients.

- Process Enhancement: Maintain SOC playbooks, escalation procedures, and knowledge-base documentation.

Ability to commute/relocate:

- Kozhikode, Kerala: Reliably commute or planning to relocate before starting work (Required)

Education:

- Bachelor's (Required)

Experience:

- Microsoft Sentinel, Splunk, IBM QRadar, Elastic,: 3 years (Required)

- TCP/IP, DNS, HTTP/HTTPS, VPNs, firewalls, IDS/IPS: 3 years (Required)

- Nessus, Qualys, OpenVAS, or Rapid7.: 3 years (Required)

Language:

- basic Aarbic (Required)

- English (Required)

License/Certification:

- CEH or CompTIA Security+ (Required)

Location:

- Kozhikode, Kerala (Preferred)

Shift availability:

- Day Shift (Required)

- Night Shift (Required)

- Overnight Shift (Required)

Work Location: In person