Job Opportunities

Career Opportunities

WORKSENT TECHNOLOGIES PVT LTD

79941677773
careers@worksent.com

SOC Analyst – L1

SOC Analyst – L1
Location: Kochi, Work From Office
Employment Type: Full-Time
Experience: 6 months–2 Years
Shift: 24×7 / Rotational Shift
Department: Security Operations Center (SOC)

Role Overview
As an L1 SOC Analyst, you will be responsible for monitoring security alerts, performing initial triage and investigation, identifying potential security incidents, and escalating confirmed or suspicious activities to the appropriate teams.
You will work with technologies including SIEM, SOAR, EDR, Cloud, Network, Datacenter, Application and Database.
Key Responsibilities
Monitor security alerts across SIEM, EDR, and other integrated security platforms.
Perform initial alert triage and validation.
Investigate suspicious activities using available logs and security telemetry.
Identify false positives and document investigation findings.
Classify alerts and incidents based on severity and potential business impact.
Escalate confirmed security incidents to L2/L3 analysts and customer teams according to defined procedures.
Support investigation of endpoint, identity, email, cloud, network, and application-related security events.
Maintain accurate incident and investigation documentation.
Follow SOC SOPs, playbooks, and runbooks during investigations.
Participate in shift handovers and ensure proper communication of ongoing incidents.
Monitor assigned security platforms for operational issues and escalate platform-related problems.
Support preparation of daily, weekly, and monthly SOC reports.
Contribute to knowledge-base updates and continuous improvement of SOC processes.
Maintain awareness of current cybersecurity threats, attack techniques, and vulnerabilities.
Technical Areas
The candidate will work with or gain exposure to:
Microsoft Sentinel
Stellar Cyber
Wazuh
Crowdstrike
SentinelOne
Huntress EDR
Microsoft Entra ID
Microsoft 365 Security
Microsoft Azure
Amazon Web Services (AWS)
Firewalls and VPN
Web Application Firewall (WAF)
Endpoint Security
Application and Database Logs
Threat Intelligence
MITRE ATT&CK
Required Skills
Understanding of cybersecurity concepts.
Understanding of networking fundamentals such as TCP/IP, DNS, HTTP/HTTPS, VPN, and firewalls.
Basic understanding of Windows and Linux environments.
Understanding of authentication, authorization, and MFA.
Ability to analyze logs and identify suspicious activity.
Good analytical and problem-solving skills.
Strong documentation and communication skills.
Willingness to work in rotational shifts.
Good to Have
Experience with Microsoft Sentinel or another SIEM.
Experience with EDR/XDR platforms.
Microsoft security certifications such as SC-200 or AZ-500.
Security+ or equivalent cybersecurity certification.
Knowledge of KQL.
Understanding of MITRE ATT&CK.
Basic knowledge of incident response and threat intelligence.

If this opportunity aligns with your career goals, kindly share your updated resume with us at careers@worksent.com

© Copyright 2026 Infopark Kochi. All rights reserved. Website design powered by logo