×
Register Here to Apply for Jobs or Post Jobs. X

Technical Specialist - Cyber Security L3

Job in Bengaluru, 560001, Bangalore, Karnataka, India
Listing for: Lenovo
Full Time position
Listed on 2026-09-24
Job specializations:
  • IT/Tech
    Cybersecurity, Network Security, Security Management & Operations
Job Description & How to Apply Below
Location: Bengaluru

Security Operations Centre (SOC) Analyst  plays a vital role in Security delivery. As a SOC Analyst Level 3, you will be on the front line of Cyber Defense, detecting & responding to Cyber Incidents as they happen. You will work with other team members to provide situational awareness through detection, containment, and remediation of IT threats. This job requires great attention to detail and general awareness of Cyber Security tools like SIEM, XDR, EDR, IDS/ IPS, ability understand various logs - network logs, sys logs, Firewall logs.

As a SOC Analyst you are expected to have working knowledge in areas of networking, malware analysis, incident response, vulnerability management.

* Threat & vulnerability analysis

* Investigate, document & report Information security issues & emerging trends

* Analysis & response to unknown vulnerabilities

Responsibilities:
As a SOC Analyst - Level 3, you will:

* Operate as detection and security incident response subject-matter expert

* Technical subject-matter expert in SOC/ SIEM and supporting technologies (EDR, UEBA, etc.) to develop custom queries (e.g., KQL) and playbooks for the SOC analysts to utilize in their investigations.

* Align and maintain detection capability to the Mitre attack framework.

* Perform root cause analysis of detection failures, identify areas for improvement.

* Drive the continuous development of detection capability for SOC

* Manage, investigate, and resolve complex issues with the Security tooling.

* Securely configure the SIEM, and other SOC solutions in accordance with relevant policy and regulation

* Support the Threat hunters in executing complex data analysis.

* Provide a point of escalation for SOC/ security detection technical service issues.

* Ensure the relevant security tools are compliant with company standards and governance.

* Contribute to existing Policy, procedures and process documentation enhancements

* Define and implement technical governance processes for security tooling of SOC, SIEM and other security tools including AV, EDR, Defender Cloud.

* Create and review detection technology high and low level designs.

* Propose and identify automation opportunities resulting from incidents;

* Provide recommendations to the Client team, on how to mitigate or avert the occurrence of any suspicious activity within their environment.

* Provide In depth analysis to the user/customer about the security incidents (eg. Phishing attack)

* Troubleshoot connector/ logger/ Manager for log retrievals

* Prepare SOC Management Reports.

* Analyzing & preparing daily and monthly reports based on the devices which are being monitored

* Creating Reports and Dashboards based on the customer requirement.

* Creating Queries for the Rules requested by client for real time alerts.

* Creating Reports which helps in providing the logs for the alerts, for finding any possible threats.

* Analyze a variety of network and host-based security appliance logs (Firewalls, NIDS, HIDS, Sys Logs, etc.) to determine the correct remediation actions and escalation paths.

* Independently follow procedures to contain, analyze, and eradicate malicious activity.

* Change Management/ Implementation:
Independently implement changes to meet customer infrastructure needs within area of technical responsibility

* Patch and Security Management:
Apply patch and security changes per policy.

* Configuration Management:
Review Configuration Management Database (CMDB) entries to ensure they are complete and accurate.

* Quality:
Provide continual improvement recommendations for direct responsibility area (process improvement, technical standard updates, etc).

* Project Management:
Lead & participate in customer and internal projects, including transformation.

* Customer Relationship Management:
Set expectations with customers and/or internal businesses/end users within defined parameters.

* Teamwork:
Work as part of a team, which may be virtual and/or global. Participate as part of a team and maintains good relationships with team members and customers

Skill:
8 - 12 years of relevant experience

Typical skills include:

* Fine-tune SIEM and other SOC tooling to exclude noise and false positives

* Create and fine-tune content in SIEM - correlation rules, Dashboard and Reports etc

* Interact with SIEM, EDR and NDR vendors (TAC Support) to remediate any issues with tooling

* Evaluate new solutions for SOC

* Identify opportunities to improve overall capacity, playbook and runbook

* Understanding of threat landscapes and threat modelling,…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary