About Techdefence:
Techdefence is a leading cybersecurity solutions provider specializing in offensive and defensive security, AI-powered threat intelligence, and enterprise security frameworks. Our comprehensive services and product portfolio cater to global enterprises, government agencies, and critical infrastructure, ensuring proactive protection against cyber threats.  
With a strong R&D focus, Techdefence delivers cutting-edge security solutions in the areas of cloud security, network security, application security, penetration testing, SOC solutions, and managed security services. Our expertise in cyber resilience, risk management, and compliance frameworks (ISO 27001, NIST, GDPR, PCI-DSS, etc.) positions us as a trusted partner for organizations worldwide.

Role Overview:
We are seeking a skilled Cyber Security Analyst Level 2 to enhance our security monitoring, incident response, brand protection, and threat intelligence capabilities under 24x7 SOC operations. The Level 2 Security Analyst will play a critical role in identifying and mitigating potential threats through advanced monitoring, data analysis, and collaboration with various stakeholders. This role involves leading complex investigations, mentoring junior analysts, and developing advanced threat detection techniques.

Key Responsibilities:
  • Lead the monitoring, triaging, investigation, and remediation of security alerts within defined SLAs, while providing guidance and support to L1 SOC analysts.
  • Manage and respond to complex and high-severity security incidents, coordinating with relevant internal teams and stakeholders to ensure timely resolution and effective containment.
  • Develop and implement advanced detection and analytical techniques to identify sophisticated threat actors, emerging attack patterns, and evolving tactics, techniques, and procedures (TTPs).
  • Conduct proactive threat hunting activities to identify hidden threats, suspicious behavior, and potential indicators of compromise across the enterprise environment.
  • Analyze and correlate large volumes of security data from SIEM, EDR, network, and other security solutions to identify novel threats and attack techniques.
  • Collaborate with the Cyber Defense Center and other security teams to develop and continuously improve threat-hunting strategies, detection rules, and security analytics.
  • Perform detailed root cause analysis of security incidents and communicate findings, impact, and recommendations to both technical teams and leadership.
  • Develop and maintain Standard Operating Procedures (SOPs), incident documentation, knowledge articles, and comprehensive end-of-shift reports.
  • Prepare, review, and validate daily, weekly, and monthly SOC reports, ensuring accuracy, completeness, and timely submission.
  • Oversee daily health checks of security tools and components to ensure optimal availability and performance.
  • Mentor and train junior analysts, promoting knowledge sharing and continuous improvement within the SOC team.
  • Work effectively in a 24x7 SOC environment, including rotational and night shifts, and provide leadership and technical support during critical security incidents.

Qualifications:

Education:
  • Bachelor's degree in information technology, Computer Science/Engineering, or equivalent.
  • Desirable certifications: Security+, CEH, GCIH, GCIA, GSEC, CISSP, CISM.
Experience:
  • Minimum 3+ years in SOC monitoring and incident management.  
  • Extensive experience in Security Operations, Incident Response, Detection Engineering, Offensive  
  • Security/Red Team, or Cyber Threat Intelligence.  
  • Proficiency with SIEM processes and products (e.g., Microsoft Sentinel SIEM, EDR, CSPM).  
  • Experience analyzing systems, network, and application logs for advanced attack techniques.  
  • Experience consuming and analyzing Cyber Threat Intelligence for actionable insights.
Technical Skills:
  • Advanced deep packet and log analytics.  
  • Proficiency in forensic and malware analysis.  
  • Expertise in cyber threat and intelligence gathering and analysis.
Analytical Skills: Ability to analyze large and complex data sets to identify sophisticated threats.  
Communication Skills: Effectively communicate complex findings to technical staff and leadership.  
Collaboration Skills: Work effectively across a complex, geographically dispersed organization, leading cross-functional teams.  
Problem-Solving Skills: Develop innovative threat detection methods and remediation plans, addressing complex security challenges.  
Leadership Skills: Provide mentorship and guidance to junior analysts, fostering a collaborative and high performing team environment.