Search by job, company or skills

servcrust

SOC Analyst / Threat Hunter (L2)

new job description bg glownew job description bg glownew job description bg svg
  • Posted 19 hours ago
  • Be among the first 20 applicants
Early Applicant

Job Description

We're Hiring: SOC Analyst / Threat Hunter (L2)

 

Hyderabad | Onsite | Full-time

 

Role Overview

We're looking for a skilled SOC Analyst / Threat Hunter (L2) to strengthen our security operations across both on-prem and AWS environments. You will investigate alerts, hunt for threats, support incident response, and help improve detection capabilities. This role is central to maintaining the security and reliability of our platform.

 

Key Responsibilities

  • Triage and investigate alerts from SIEM, EDR, NDR, and CSPM tools
  • Correlate logs from endpoints, networks, and AWS cloud services
  • Investigate IAM misuse, unusual API calls, privilege escalation, and exposed storage
  • Support containment actions: isolating workloads, revoking keys, suspending IAM users
  • Perform root cause analysis for cloud and on-prem incidents
  • Validate security tool coverage (CSPM/CIEM) across environments
  • Contribute to post-incident reviews and update playbooks
  • Conduct proactive threat hunts across cloud + on-prem logs
  • Apply MITRE ATT&CK (Cloud) techniques to identify threat behaviours
  • Improve and fine-tune detection rules and monitoring logic
  • Recommend automation opportunities for incident response workflows

 

Required Qualifications

  • 2-4 years in a SOC, IR, or security monitoring role.
  • Hands-on experience with log analysis and investigation in cloud platforms: AWS (CloudWatch, CloudTrail, GuardDuty).
  • Solid grasp of attacker TTPs in cloud environments: exposed credentials, over-permissioned roles, container abuse, cloud lateral movement.
  • Proficiency with SIEM/EDR platforms and investigation workflows.
  • Basic scripting or automation knowledge (Python, PowerShell, Boto3, etc.).
  • Familiarity with cloud-native security tools (AWS Config).
  • Certifications like CySA+, AWS Security Specialty are desirable.

 

Interested Send your resume to: [Confidential Information]

Website: www.servcrust.com

 

 

#Hiring #SOCAnalyst #ThreatHunter #CyberSecurityJobs #CloudSecurity #AWS #SecurityAnalyst #SIEM #EDR #NDR #InfoSec #HyderabadJobs #OnsiteJobs #TechJobs #ServCrust #Hyderabad #SecurityOperations #JobSearch #NowHiring

More Info

Job Type:
Industry:
Function:
Employment Type:

About Company

Job ID: 145806647

Similar Jobs