F

SOC Analyst

Fujitsu Pune/pimpri-chinchwad Area
Relocation
This Job is No Longer Active This position is no longer accepting applications
AI Summary

Monitor and investigate security incidents in a 24×7 SOC environment. Perform alert triage, log analysis, and threat hunting across endpoints, network, identity, and cloud sources. Requires 2-5 years SOC experience with hands-on SIEM, EDR/XDR, and ticketing system expertise.

Key Highlights
24×7 SOC monitoring and incident response
Alert triage and classification using SIEM/EDR tools
MITRE ATT&CK mapping and attack path analysis
Log-based investigations across endpoints, network, identity, and cloud
Key Responsibilities
Perform continuous monitoring and alert triage from SIEM, EDR, and security tools
Classify alerts into true positive / false positive / benign with documented evidence
Conduct log-based investigations across endpoints, network, identity, and cloud sources
Map observed activity to MITRE ATT&CK techniques and identify potential attack paths
Escalate incidents with full context (timeline, impacted assets, severity, recommended actions)
Maintain incident records in ticketing systems (ServiceNow/Jira) with proper documentation
Follow defined SOPs, playbooks, and SLAs for response and escalation
Participate in shift handovers with clear incident status and risks
Support use-case tuning and false positive reduction
Perform deep-dive investigations, threat hunting, and root cause analysis
Technical Skills Required
SIEM EDR/XDR Ticketing systems Networking fundamentals Windows Event Logs Linux logs Authentication flows
Benefits & Perks
Relocation supported
Nice to Have
Microsoft SC-200 certification
CompTIA Security+ / CySA+ certification
Vendor-specific certifications (CrowdStrike / Palo Alto / SentinelOne)

Job Description


Job Location: Pune, Noida, Chennai, Bangalore

Location Flexibility: Multiple Locations in Country

Req Id: 10658

Posting Start Date: 8/3/26

At Fujitsu, our purpose is to make the world more sustainable by building trust in society through innovation. Founded in Japan in 1935, Fujitsu has been a pioneer in technology and innovation for decades. Today, as a world-leading digital transformation partner, we are committed to transforming business and society in the digital age.

With approximately 130,000 employees across over 50 countries, Fujitsu offers a broad range of products, services, and solutions. We collaborate with our customers to co-create solutions that drive enterprise-wide digitalization while actively working to address social issues and contribute to the United Nations Sustainable Development Goals (SDGs).

Role: SOC Analyst

Responsible for real-time monitoring, triage, investigation, and escalation of security incidents in a 24×7 SOC environment.

Key Responsibilities

  • Perform continuous monitoring and alert triage from SIEM, EDR, and security tools
  • Classify alerts into true positive / false positive / benign with documented evidence
  • Conduct log-based investigations across endpoints, network, identity, and cloud sources
  • Map observed activity to MITRE ATT&CK techniques and identify potential attack paths
  • Escalate incidents with full context (timeline, impacted assets, severity, recommended actions)
  • Maintain incident records in ticketing systems (ServiceNow/Jira) with proper documentation
  • Follow defined SOPs, playbooks, and SLAs for response and escalation
  • Participate in shift handovers with clear incident status and risks
  • Support use-case tuning and false positive reduction
  • (L2) Perform deep-dive investigations, threat hunting, and root cause analysis

Core Skills

Detection & Investigation

  • Strong understanding of alert triage lifecycle
  • Ability to analyze:
    • Endpoint telemetry (process, registry, command-line)
    • Network logs (DNS, proxy, firewall)
    • Authentication logs (AD, Azure AD, IAM)
Tools (Hands-on, not exposure)

  • SIEM: Microsoft Sentinel / Splunk / QRadar / XSIAM
  • EDR/XDR: CrowdStrike / Defender / SentinelOne
  • Ticketing: ServiceNow / Jira

Expectation: Ability to query, investigate, and correlate — not just navigate UI

Technical Fundamentals

  • Networking: TCP/IP, DNS, HTTP/S, VPN behavior
  • OS: Windows Event Logs, Linux logs
  • Identity: Authentication flows (Kerberos, NTLM, SSO basics)

Certifications

Preferred (not Mandatory)

  • Microsoft SC-200 (for Sentinel environments)
  • CompTIA Security+ / CySA+
  • Vendor-specific (CrowdStrike / Palo Alto / SentinelOne) — only if hands-on

Experience Expectations

  • 2-5 years SOC / monitoring experience
  • Can independently triage alerts and follow playbook.
  • Can perform independent investigation, correlation, and incident validation
  • Able to guide analysts and improve detection quality

Relocation Supported: Yes

Visa Sponsorship Approved: No

At Fujitsu, we are committed to an inclusive recruitment process that values the diverse backgrounds and experiences of all applicants. We believe that hiring people from a wide variety of backgrounds makes us stronger, not because it's the right thing to do, but because it allows us to draw on a wider range of perspectives and life experiences.

Similar Jobs

Explore other opportunities that match your interests

Visa Sponsorship Relocation Remote
Job Type Full-time
Experience Level Mid-Senior level

Northrop Grumman

United State

Senior Security Engineer

Cyber Security
13h ago
Visa Sponsorship Relocation Remote
Job Type Full-time
Experience Level Entry level

Bending Spoons

Spain
Visa Sponsorship Relocation Remote
Job Type Full-time
Experience Level Not Applicable

MARS Solutions Group

United State

Subscribe our newsletter

New Things Will Always Update Regularly