SOC Analyst L2
Opportunity Information
PPS-8
2
Federal Government Attached Department/ Project
Mid Career
Contract
The Role
The SOC Analyst L2 conducts deep-dive investigations into escalated security incidents, performs advanced incident response and threat hunting, and improves detection in the Security Operations Centre of the National Telecommunication and Information Security Board.
• Conduct deep-dive investigations into escalated security incidents to determine the full scope of an attack • Perform root cause analysis to understand how an adversary gained access and identify security gaps • Execute advanced incident response tasks including the containment, eradication, and recovery of systems • Proactively threat hunt within the network using behavioral analytics to find hidden or persistent threats • Analyze malware behavior in sandbox environments to identify Indicators of Compromise (IoCs) • Correlate data across multiple log sources (Firewalls, EDR, Cloud logs) to reconstruct attacker movement • Fine-tune SIEM correlation rules and alert thresholds to improve detection accuracy and reduce noise for Tier 1 • Coordinate with IT and infrastructure teams to apply specific security patches or configuration changes • Develop and update automated playbooks and standard operating procedures (SOPs) for the SOC team • Integrate external threat intelligence feeds to stay ahead of emerging attack patterns and zero-day exploits
Applicants General Eligibility & Requirements
• Five years' general age relaxation has already been added to the upper age limit; no other age rel
4+ years
26 to 40 years
Education, Experience and Skills Requirements
- Bachelor 16 Years: Cyber Security, Information Security, Computer Science, Software Engineering, Information Technology
- MS / MPhil: Cyber Security, Computer Science
- Masters: Computer Science
• Minimum 4 years of experience, of which 2 years of recent experience as a SOC analyst
Incident Response, Threat Hunting, SIEM Tools, Malware Analysis, Root Cause Analysis, Log Analysis
• Certifications on Incident Handling, SOC operations or offensive certifications (preferable)
National Telecommunication and Information Security Board (NTISB)