Role description
SOC Analyst
Berlin, CT( Onsite)
This is designed for a highpriority P1 role in a Security Operations Centre SOC focusing on realtime threat detection incident response and proactive defence.
As a P1 SOC Monitoring Analyst you will be responsible for realtime monitoring triage and escalation of security incidents using a suite of advanced cybersecurity tools.
You will act as the first line of defence against cyber threats ensuring rapid detection and response to potential security breaches across endpoints networks cloud environments and email systems.
Key Responsibilities
RealTime Monitoring Triage.
oMonitor security s and logs from CrowdStrike EDR IDP NextGenXOR Logscale Microsoft Defender SIEM and ORCA.
Analyse and triage s based on severity impact and relevance to business operations.
Threat Detection Response.
Investigate suspicious activities using Threat Intel Advisories DHS CRISPEISAC feeds and internal threat intelligence.
Escalate confirmed incidents to L2 L3 teams with detailed analysis and recommendations.
Email Endpoint Security.
Monitor and respond to emailbased threats using Proofpoint.
Ensure endpoint protection and behavioural analysis through CrowdStrike and Microsoft Defender.
Cloud Network Security.
Monitor cloud workloads and configurations using ORCA.
Analyse traffic and application behaviour via F5 WAF and Zscaler for anomalies and policy violations.
Azure Entra ID Management.
Manage Microsoft Entra ID Azure AD including user and group management multifactor authentication MFA Conditional Access policies Privileged Identity Management PIM and Identity Protection.
Integrate Entra ID with thirdparty and onpremises applications for seamless and secure single signon SSO and federation.
Enforce the principle of least privilege through a robust RoleBased Access Control RBAC model at the tenant subscription and resource levels.
Deploy configure and manage security tools including Microsoft Defender for Cloud Microsoft Sentinel and Azure Policy to monitor security posture and detect threats across the tenant.
Conduct security assessments and audits to identify potential threats vulnerabilities and gaps in existing and proposed architectures.
Create and manage custom Entra ID roles and integrate with identity governance policies and access reviews.
Documentation Reporting.
Maintain accurate incident logs timelines and evidence for each.
Generate daily and weekly reports on SOC activities threat trends and tool performance.
Required Skills Experience
2 years of experience in SOC or cybersecurity operations.
Handson experience with
CrowdStrike EDR IDP Logscale.
SIEM platforms Splunk QRadar Logscale etc.
Microsoft Defender.
Proofpoint.
F5 WAF Zscaler.
ORCA Cloud Monitoring Agent.
Threat Intelligence platforms CRISPEISAC commercial feeds.
Microsoft Azure Entra ID.
Strong understanding of MITRE ATTCK framework incident response lifecycle and threat hunting.
Ability to work under pressure and manage multiple highpriority s simultaneously.
Excellent communication and documentation skills.
Preferred Certifications.
CompTIA Security.
Certified SOC Analyst CSA.
CrowdStrike Certified Falcon Administrator.
Microsoft SC200 Security Operations Analyst Associate.
Skills
Mandatory Skills : AI/Generative AI, Arcsight SIEM, Autonomous SOC Engineering, Cloud_SIEM - Google Chronicle, Microsoft Copilot for Security, Python-Cybersecurity, Sentinel, SIEM - Blusapphire, SIEM - Devo, SIEM - IBM QRadar, SIEM - Securonix, SIEM - Splunk, SIEM Administration, SOC - SIEM Integration, SOC L1\L2- Monitoring, SOC Operations
Other details
Actual compensation within the range will be dependent upon the individual's skills, experience, performance and internal equity.
Benefits/perks listed below may vary depending on the nature of your employment with LTIMindtree (“LTIM”):
Benefits and Perks:
- Comprehensive Medical Plan Covering Medical, Dental, Vision
- Short Term and Long-Term Disability Coverage
- 401(k) Plan with Company match
- Life Insurance
- Vacation Time, Sick Leave, Paid Holidays
- Paid Paternity and Maternity Leave
The range displayed on each job posting reflects the minimum and maximum salary target for the position across all US locations. Within the range, individual pay is determined by work location and job level and additional factors including job-related skills, experience, and relevant education or training. Depending on the position offered, other forms of compensation may be provided as part of overall compensation like an annual performance-based bonus, sales incentive pay and other forms of bonus or variable compensation.
Disclaimer: The compensation and benefits information provided herein is accurate as of the date of this posting.
LTIMindtree is an equal opportunity employer that is committed to diversity in the workplace. Our employment decisions are made without regard to race, color, creed, religion, sex (including pregnancy, childbirth or related medical conditions), gender identity or expression, national origin, ancestry, age, family-care status, veteran status, marital status, civil union status, domestic partnership status, military service, handicap or disability or history of handicap or disability, genetic information, atypical hereditary cellular or blood trait, union affiliation, affectional or sexual orientation or preference, or any other characteristic protected by applicable federal, state, or local law, except where such considerations are bona fide occupational qualifications permitted by law.
Benefits
Compensation range: $60,000.00 to $80,000.00 per year
About LTM
LTM is an AI-centric global technology services company and the Business Creativity partner to the world’s largest and most disruptive enterprises. We bring human insights and intelligent systems together to help clients create greater value at the intersection of technology and domain expertise. Our capabilities span integrated operations, transformation, and business AI — enabling new ways of working, new productivity paradigms, and new roads to value. Together with over 87,000 employees across 40 countries and our global network of partners, LTM — a Larsen & Toubro company — owns business outcomes for our clients, helping them not just outperform the market, but to Outcreate it. Please also note that neither LTM nor any of its authorized recruitment agencies/partners charge any candidate registration fee or any other fees from talent (candidates) towards appearing for an interview or securing employment/internship. Candidates shall be solely responsible for verifying the credentials of any agency/consultant that claims to be working with LTM for recruitment. Please note that anyone who relies on the representations made by fraudulent employment agencies does so at their own risk, and LTM disclaims any liability in case of loss or damage suffered as a consequence of the same. Recruitment Fraud Alert - https://www.ltimindtree.com/recruitment-fraud-alert/