This role involves active security monitoring and analysis of alerts, incident triage, investigation, and escalation per CSOC playbooks. The SOC Analyst 2 will also be responsible for SIEM rule tuning, alert optimization, and supporting detection engineering activities. A key aspect of the role is documenting actions taken and maintaining shift logs for handoff, including a mandatory handoff procedure at each shift change. Following each shift, the on-duty team will submit a detailed report summarizing all activities, including a chronological summary for each ticket handled. SOC Tier 2 Analysts act as intermediate incident responders, focusing on in-depth investigation, containment, and remediation of security threats escalated by Tier 1. They validate alerts, analyze the scope and impact of incidents using threat intelligence, and guide recovery efforts, bridging the gap between initial triage and expert-level threat hunting. Additional responsibilities include proactive security and threat management, and vulnerability management and tracking, which may involve reviewing and tracking vulnerabilities identified by scanning tools during non-business hours. This includes assessing and prioritizing vulnerabilities, updating tickets, coordinating with system owners for patching, and verifying remediation measures.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Mid Level
Education Level
No Education Listed