Responsibilities:
Investigate and respond to escalated security incidents.
Perform log analysis and event correlation across multiple security tools.
Analyze malware, phishing, endpoint, and authentication-related incidents.
Recommend containment and remediation actions.
Tune detection rules and reduce false positives.
Prepare incident reports and root cause analysis.
Mentor L1 analysts and support continuous improvement.
Requirements:
2–5 years of SOC or cybersecurity experience.
Experience with SIEM, EDR/XDR, and security monitoring tools.
Strong knowledge of Windows, Linux, networking, and Active Directory.
Understanding of MITRE ATT&CK and incident response processes.
Scripting or automation experience (PowerShell, Python, etc.) is an advantage.
Relevant certifications (e.g., Security+, CySA+, GCIH, SC-200) are a plus.
Vector InfoTech - An ISO 9001:2008 Certified Company