Engineer II - L2 SOC

mid
OtherEngineer
0 views0 saves0 applied

Quick Summary

Key Responsibilities

Monitor and analyze security alerts generated by SIEM platforms including Elastic SIEM, Microsoft Sentinel, and other SIEM tools (e.g., Wazuh, Splunk, QRadar).

Requirements Summary

Bachelor’s degree in computer science, Information Security, Information Technology, or a related field (or equivalent practical experience).

Technical Tools
OtherEngineer

 

Responsibilities

~1 min read
  • Monitor and analyze security alerts generated by SIEM platforms including Elastic SIEM, Microsoft Sentinel, and other SIEM tools (e.g., Wazuh, Splunk, QRadar).
  • Perform continuous security monitoring of network traffic, endpoint activity, and system logs to identify suspicious or malicious behavior.
  • Investigate potential security incidents by performing detailed log analysis to detect anomalies and attack patterns.
  • Classify security alerts accurately as True Positive or False Positive based on evidence and analysis.
  • Respond to security incidents promptly by following defined incident response playbooks and SOPs.
  • Escalate confirmed or high‑severity incidents to senior SOC engineers with proper documentation, context, and impact analysis.
  • Track and investigate malware alerts, performing basic static and behavioral analysis using EDR telemetry and sandbox results.
  • Monitor and analyze endpoint activity using EDR tools such as Sentinel One and Microsoft Defender for Endpoint.
  • Conduct phishing email analysis, including:
  • Header and sender analysis
  • URL and attachment inspection
  • Identification of credential-harvesting and malware delivery attempts

 

 

 

  • Support vulnerability assessment activities by reviewing scan results, validating findings, and assisting with remediation tracking.
  • Maintain accurate incident reports, investigation notes, and SOC documentation.
  • Follow daily threat intelligence updates and apply relevant insights to ongoing investigations.
  • Adherent to SOC SLAs, escalation procedures, and operational best practices
  • Support client Baseline Security Reviews by reviewing security tool configurations and documenting gaps against defined security baselines.

 

 

  • Basic to intermediate understanding of networking, security, and system administration concepts.
  • Knowledge of:
  • Network security fundamentals
  • Firewalls, IDS/IPS, and SIEM to
  • Vulnerability assessment concepts and security best practices
  • Familiarity with Windows and/or Linux environments.
  • Hands‑on exposure to:
  • SIEM monitoring and alert investigation
  • Incident response and alert triage
  • Endpoint detection and response (EDR) tools •
  • Understanding of common attack techniques including phishing, malware, brute force, and credential abuse.

 

  • CEH (Certified Ethical Hacker)
  • Microsoft SC‑200 – Security Operations Analyst
  • Microsoft SC‑900 or equivalent security fundamentals certification

 

Requirements

~1 min read
  • Bachelor’s degree in computer science, Information Security, Information Technology, or a related field (or equivalent practical experience).
  • Exposure to SOC operations
  • Exposure to Cybersecurity monitoring
  • Hands‑on experience with SIEM tools and security alert investigation is preferred.

 

No. of positions: 01

 

Work Location: Wipfli India, Bengaluru or Pune 

 

 

Location & Eligibility

Where is the job
—
Location terms not specified

Listing Details

Posted
September 27, 2024
First seen
September 27, 2026
Last seen
September 27, 2026

Posting Health

Days active
0
Repost count
0
Trust Level
11%
Scored at
September 27, 2026

Signal breakdown

freshnesssource trustcontent trustemployer trust
Newsletter

Stay ahead of the market

Get the latest job openings, salary trends, and hiring insights delivered to your inbox every week.

A
B
C
D
Join 12,000+ marketers

No spam. Unsubscribe at any time.

careers-wipfliindiaEngineer II - L2 SOC