Job Description
Summary
Kroll is seeking a skilled SOC Analyst to join our dedicated Security Operations Centre (SOC) team in Bangalore, India. This role is vital for monitoring, analyzing, and resolving security incidents for our clients, ensuring compliance with security standards, and enhancing threat detection and response capabilities. The ideal candidate will have experience in SIEM platforms, cybersecurity monitoring, incident management, and SOC playbooks, contributing to a proactive security posture. Join Kroll to advance your career in cybersecurity operations and work with global teams protecting critical financial and enterprise data.
Job Details at a Glance
| Title | SOC Analyst |
|---|---|
| Location | Bangalore, India (and additional locations) |
| Department | Security Operations Centre (SOC) |
| Experience Required | 1–3 years in SOC or cybersecurity operations |
| Education | Bachelor’s in Computer Science, Information Security, or related field |
| Shift | Rotational 16×5 schedule with on-call support |
| Tools & Technologies | Microsoft Sentinel, LogRhythm, ServiceNow, Xurrent, Microsoft Defender, SentinelOne |
| Apply Link | Kroll Careers |
Key Responsibilities
Incident Monitoring & Response
- Monitor and analyze security alerts from SIEM platforms and endpoint protection tools.
- Review, investigate, and resolve security tickets raised through client monitoring systems.
- Execute and refine SOC playbooks for phishing, malware, and account compromise scenarios.
Alert Triage & Prioritization
- Categorize and prioritize alerts based on severity, impact, and relevance to client environments.
- Maintain clear incident documentation and ensure timely resolution within service level agreements (SLAs).
Collaboration & Communication
- Work closely with infrastructure, application, and compliance teams to ensure coordinated incident response.
- Provide detailed incident reporting, including logs, actions taken, and lessons learned.
- Participate in shift handovers to maintain continuity in operations.
Continuous Improvement
- Contribute to process enhancements and automation initiatives within the SOC.
- Stay updated on cybersecurity frameworks such as MITRE ATT&CK and NIST.
- Support ongoing development of detection and response capabilities.
Required Skills & Qualifications
- 1–3 years’ experience in a SOC or cybersecurity operations role.
- Familiarity with SIEM platforms (Microsoft Sentinel, LogRhythm), ticketing systems (ServiceNow, Xurrent), and endpoint security tools (Microsoft Defender, SentinelOne).
- Hands-on experience handling SOC playbook scenarios: phishing, malware, and account compromise.
- Strong analytical skills and attention to detail.
- Excellent written and verbal communication skills.
- Understanding of cybersecurity frameworks: MITRE ATT&CK, NIST.
- Bachelor’s degree in Computer Science, Information Security, or related field.
Preferred Certifications
- CompTIA Security+, CEH, or Microsoft SC-200.
- ITIL Foundation for ticketing and service workflow knowledge.
Working Hours
- Rotational 16×5 schedule (Monday–Friday).
- After-hours and weekend on-call rotation.
- Flexibility to support critical incidents outside standard hours.
Why Join Kroll?
- Be part of a dedicated, client-focused SOC team protecting critical enterprise and financial systems.
- Work in a collaborative, technology-driven environment supporting global clients.
- Advance your cybersecurity career with continuous learning and development opportunities.
- Contribute to cutting-edge threat detection and response initiatives in a dynamic security operations centre.
Apply Now
Interested candidates can apply for the SOC Analyst role via Kroll’s official careers portal: