Qureos

FIND_THE_RIGHTJOB.

L1 SOC Analyst

JOB_REQUIREMENTS

Hires in

Not specified

Employment Type

Not specified

Company Location

Not specified

Salary

Not specified

    2 - 3 Years
    3 Openings
    Bangalore, Chennai, Hyderabad, Kochi, Trivandrum


Role description

Role Proficiency:

Monitor cyber security s for our global customers in a 24x7x365 operations team under supervision of Team Lead / senior members of the team.

Outcomes:

  • Under supervision of senior team members ensure that cyber security s from the SIEM and multiple sources are dealt with as per SLA. Seek support of senior members of the team in case of new type incident type or higher complexity.
  • Respond independently to low and medium complexity incidents
  • Follow documented playbook to ensure consistent and repeatable response to s.
  • Ensure Documentation including in CDC / SIEM work log as predefined / agreed standards. Learn from review process for continuously improvement.
  • Communicate and escalate as per defined process. Seek advice from senior members of the team when in doubt.
  • Put forward topics for inclusion or upgrade in the playbook to the attention of the senior team members.
  • Assist the lead in the review process for junior team members.
  • Adhere to defined SOC processes including housekeeping tasks. Adhere to the Information Security policies as defined by the company and customer.

Measures of Outcomes:

  • Adhere to SLA as agreed with the customer.
  • Productivity (Number of s addressed)
  • Quality - Percent of tickets that met quality norms
  • Adhere to process – Nil NC during audits
  • Evidence of skill development including training certification etc.

Outputs Expected:

Cyber Security Monitoring:

  • Work in accordance with the Playbook / under supervision of the team lead to monitor s in the CDC Platform / SIEM Tool. etc. Ensure appropriate response in line with the SLA.


Cyber Security Incident Management:

  • Work in accordance with the Playbook
    under supervision of the team lead to process s
    through analysis
    triage and resolution.
  • Communicate and escalate as per defined process
  • In accordance with the Playbook
    under supervision of the team lead
    complete documentation including annotation in CDC / SIEM work log to ensure audit trail as per defined standards and quality requirements.
  • In accordance with the Playbook
    under supervision of the team lead
    ensure that various reports are created and published to stakeholders


Continuous Learning
innovation and optimization:

  • Ensure completion of learning programs as suggested by Managers
  • Suggest ideas that will help innovation and optimization of processes. Help develop the ideas into proposals.
  • Provide suggestions for playbook upgrade


Team Work:

  • Assist junior team members where possible.

Skill Examples:

  • User level skills in use of CDC SIEM and other relevant tools.
  • Ability to identify Use Cases Use Case and Process Improvement suggestions to the Team Lead for consideration
  • Excellent logical problem-solving ability and analytical skills for incident triage and analysis
  • Good oral and written communication skills.
  • Continually learn new technology and stay updated on cyber threats.
  • Ability to work in rotating shifts and also be on-call outside of shift hours on a regular and recurring basis.
  • Possess unimpeachable personal and professional integrity. Individuals will be required to submit to a background check.

Knowledge Examples

  • 1 to 3 years experience in SOC operations with SOC of global organization.
  • University Degree in Cyber Security (no back papers) / Bachelor’s in Science or Engineering with training in cyber security
  • Proficient in Cybersecurity Incident Management process.
  • Up to date in cyber security s and incidents; intermediate understanding of enterprise IT Infrastructure including Networks Firewalls OS Databases Web Applications etc.
  • Understanding of ISMS principles and guidelines; relevant frameworks (e.g. ISO27001)
  • Desirable – Training / Certification in Ethical Hacking SIEM Tool etc.

Additional Comments:

We are seeking a detail-oriented and proactive SOC Analyst – Level 1 to support 24x7 security monitoring and incident triage activities within our Security Operations Center. This role is ideal for individuals with foundational cybersecurity skills who are eager to grow in a fast-paced, threat-driven environment. The analyst will be responsible for executing playbook-driven investigations, managing incident workflows, and collaborating with platform teams to ensure timely and accurate threat response. Key Responsibilities Perform 24x7 continuous security threat monitoring through Sentinel Platform (Mandatory), including s from OT platforms such as Nozomi Networks (Good to have). Execute playbook-driven triage and investigation of security s. Conduct evidence gathering and maintain documentation for investigation activities. Manage incident workflows, including escalation to L2/L3 teams and tracking resolution. Collaborate with the client’s third-party Nozomi platform team to assign and follow up on tickets requiring platform-specific expertise. Support incident handling, including initial containment and escalation. Assist in security issue isolation and provide basic remediation recommendations. Participate in incident response and threat containment efforts under guidance. Contribute to enhancing threat detection logic and false positive tuning through feedback and analysis. Required Skills & Qualifications Basic understanding of cybersecurity principles, threat types, and incident response workflows. Familiarity with SIEM platforms and OT security tools (e.g., Nozomi Networks) is preferred- OT is good to have not mandatory Ability to follow structured investigation playbooks and document findings accurately. Strong attention to detail and ability to work in a shift-based, high- environment. Good communication skills and ability to collaborate with internal and external teams. Willingness to learn and grow within a dynamic SOC environment.

Skills

Security Operations,Siem,Monitoring


About UST

UST is a global digital transformation solutions provider. For more than 20 years, UST has worked side by side with the world’s best companies to make a real impact through transformation. Powered by technology, inspired by people and led by purpose, UST partners with their clients from design to operation. With deep domain expertise and a future-proof philosophy, UST embeds innovation and agility into their clients’ organizations. With over 30,000 employees in 30 countries, UST builds for boundless impact—touching billions of lives in the process.

© 2025 Qureos. All rights reserved.