We're Hiring: SOC Analyst / Threat Hunter (L2)
Hyderabad | Onsite | Full-time
Role Overview
We're looking for a skilled SOC Analyst / Threat Hunter (L2) to strengthen our security operations across both on-prem and AWS environments. You will investigate alerts, hunt for threats, support incident response, and help improve detection capabilities. This role is central to maintaining the security and reliability of our platform.
Key Responsibilities
- Triage and investigate alerts from SIEM, EDR, NDR, and CSPM tools
- Correlate logs from endpoints, networks, and AWS cloud services
- Investigate IAM misuse, unusual API calls, privilege escalation, and exposed storage
- Support containment actions: isolating workloads, revoking keys, suspending IAM users
- Perform root cause analysis for cloud and on-prem incidents
- Validate security tool coverage (CSPM/CIEM) across environments
- Contribute to post-incident reviews and update playbooks
- Conduct proactive threat hunts across cloud + on-prem logs
- Apply MITRE ATT&CK (Cloud) techniques to identify threat behaviours
- Improve and fine-tune detection rules and monitoring logic
- Recommend automation opportunities for incident response workflows
Required Qualifications
- 2-4 years in a SOC, IR, or security monitoring role.
- Hands-on experience with log analysis and investigation in cloud platforms: AWS (CloudWatch, CloudTrail, GuardDuty).
- Solid grasp of attacker TTPs in cloud environments: exposed credentials, over-permissioned roles, container abuse, cloud lateral movement.
- Proficiency with SIEM/EDR platforms and investigation workflows.
- Basic scripting or automation knowledge (Python, PowerShell, Boto3, etc.).
- Familiarity with cloud-native security tools (AWS Config).
- Certifications like CySA+, AWS Security Specialty are desirable.
Interested Send your resume to: [Confidential Information]
Website: www.servcrust.com
#Hiring #SOCAnalyst #ThreatHunter #CyberSecurityJobs #CloudSecurity #AWS #SecurityAnalyst #SIEM #EDR #NDR #InfoSec #HyderabadJobs #OnsiteJobs #TechJobs #ServCrust #Hyderabad #SecurityOperations #JobSearch #NowHiring