Jobs in India
Job Details

| Job Title | Security Operations Center (SOC) L2 for Noida |
| Posted On | 03-09-2026 |
| Experience | 3 |
| Job Location | Noida |
| No. of Positions | 1 |
Details :-
Hi Candidates,
DCM Infotech Ltd. is currently hiring one Security Operations Center (SOC) L2 for Noida location.
JOB DESCRIPTION :-
Job Title: SOC Analyst (QRadar Specialist)
Location: Noida
Employment Type: Full-time (24x7 Shift Model / Rotational)
Experience Level: Minimum 3+ years in Cybersecurity / SOC Operations
Job Overview
We are seeking an experienced SOC Analyst to join our Security Operations Center in Noida. As an Analyst, you will serve as the primary escalation point for complex security incidents triaged by Tier 1 analysts. You will perform deep-dive investigations using IBM QRadar SIEM, execute containment strategies, fine-tune custom detection rules, and lead threat mitigation efforts across enterprise networks and endpoint telemetry.
Key Responsibilities
-
Incident Investigation & Response:
-
Analyze escalated security offenses and high-severity alerts from Tier 1 analysts using IBM QRadar SIEM.
-
Perform root cause analysis (RCA), log correlation, and timeline reconstruction across multiple data sources (Firewalls, EDR, Active Directory, WAF, Cloud logs).
-
Lead containment, isolation, and eradication actions during confirmed security incidents following NIST/SANS incident response frameworks.
-
SIEM Operations & Tuning (IBM QRadar):
-
Develop, test, and fine-tune IBM QRadar correlation rules, Building Blocks, and use cases to minimize false positives and enhance detection capability.
-
Utilize Advanced Query Language (AQL) to write custom queries for complex threat searches, event analysis, and historical investigation.
-
Assist in parsing custom log sources (DSM configuration) and dashboard optimization within QRadar.
-
Threat Hunting & Intelligence Integration:
-
Proactively hunt for advanced threats and Indicators of Compromise (IOCs) across the environment using MITRE ATT&CK mappings.
-
Integrate and validate STIX/TAXII threat intelligence feeds into QRadar to enhance real-time correlation.
-
Leadership & Reporting:
-
Provide mentorship, technical guidance, and quality review for Level 1 SOC analysts.
-
Prepare detailed post-incident reports, executive summary documentation, and remediation advisories.
-
Update and optimize SOC Incident Response Playbooks and standard operating procedures (SOPs).
Required Technical Skills & Qualifications
-
Experience: Minimum 3 to 5 years of dedicated cybersecurity experience, with at least 2+ years strictly in a SOC environment.
-
SIEM Expertise: Deep hands-on experience operating, investigating, and rule creation in IBM QRadar SIEM (AQL, Offense Management, Custom Rules Engine).
-
Technical Knowledge: Strong understanding of TCP/IP protocols, OSI model, OS internals (Windows/Linux), network security architecture, and malware analysis concepts.
-
Scripting (Preferred): Basic knowledge of Python, PowerShell, or Bash for security automation or log parsing tasks.
-
Education: Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or related discipline.
Preferred Certifications (Any 1 or 2)
-
IBM Certified Associate / Administrator / Analyst - QRadar SIEM
-
EC-Council CEH (Certified Ethical Hacker) or ECIH
-
CompTIA CySA+ (Cybersecurity Analyst)
-
GIAC Certifications (GCIH, GCIA)
ABOUT DCM INFOTECH LTD :-
Please visit our website www.dcminfotech.com
Please feel free to contact me :-
You can call me or whatsapp me on 7827825106
My e-mail id is shivam.dwivedi@dcminfotech.com
Office land line number is 0124 4122 885
Thanks & Regards,
Shivam Dwivedi
Assistant Manager - RMG
DCM Infotech Limited
316, Udyog Vihar, Phase-II, Gurgaon, Haryana - 122016
Tel - +91 0124-4122885 (D)| +91 7827825106 (M)
shivam.dwivedi@dcminfotech.com | www.dcminfotech.com
Automation | AI & ML | Cloud | Managed Services
