SOC Analyst L2
Job Description:
As a SOC Analyst L2 at Alykas, you will play a critical role in safeguarding our clients against evolving cyber threats through advanced security monitoring, analysis, and incident response. Working within a multi-tenant Security Operations Center (SOC), you will support multiple US-based clients using a range of cutting-edge cybersecurity technologies.
Your responsibilities will span threat detection, incident response and triage, and proactive threat hunting, as well as utilizing tools such as SIEM, XDR, EDR, and Email Security solutions to enhance client security postures. Strong communication and collaboration skills are essential, as you will regularly engage with clients and internal teams to ensure swift and effective responses to security challenges.
Key Responsibilities
- Monitor and analyze security alerts, investigate IOCs and document findings comprehensively
- Conduct initial triage, assess incident severity, and take appropriate response actions.
- Respond to incidents following established playbooks and escalation procedures.
- Collaborate with cross-functional teams to resolve security incidents efficiently.
- Maintain accurate documentation of investigations, incidents, and remediation activities.
- Perform proactive threat hunting to detect hidden or emerging threats.
- Develop hypotheses based on threat intelligence and validate them.
- Demonstrate a passion for SOC automation, focusing on reducing manual workload and repetitive tasks.
- Correlate alerts with threat intelligence and frameworks such as MITRE ATT&CK.
- Tune and optimize security tool rules, policies, and detection use cases to improve accuracy.
- Develop and enhance incident response playbooks and automation workflows.
- Stay current with emerging cyber threats, technologies, and defensive strategies.
- Conduct initial triage, assess incident severity, and take appropriate response actions.
Must-Haves
- 2–5 years of experience in a Security Operations Center (SOC)
- Proficiency with SOC tools (SIEM, EDR, XDR, Email Security solutions)
- Hands-on experience with Incident Response (IR)
- Relevant certifications such as Security+, CySA+, BTL1, eCIR, GSEC, GCIH, etc.
- Strong client-facing communication and reporting skills
- Fluent English communication skills (both written and verbal), essential for working with Alykas's international clients.
Nice-to-Haves (Plusses)
- Experience with automation platforms (SOAR) and scripting (e.g., Python)
- Exposure to vulnerability management and SCCM
- Background in Cyber Threat Hunting (CTH) or Cyber Threat Intelligence (CTI)
- Knowledge of IAM and PAM
- Experience with Microsoft 365 and Azure environments
Benefits
- Hands-on exposure to US-based clients and international cybersecurity operations.
- Opportunity to learn and adapt to advanced US cybersecurity practices, frameworks, and threat landscape.
- Collaboration with experienced cybersecurity professionals and global teams.
- Opportunity to work on SOC automation and improve operational efficiency.
Company-sponsored certifications and ongoing professional development opportunities - Unlimited lab access for hands-on learning and technical skill enhancement.