Software Finder logoSF
Software Findersoftwarefinder.com

SOC Analyst

Lahore, Punjab, PakistanFull-time4d ago

Job Overview

Software Finder is seeking a highly motivated and detail-oriented SOC Analyst to join our Cybersecurity Operations team. The role is responsible for continuously monitoring, detecting, investigating, and responding to cybersecurity threats and incidents across the organization’s infrastructure.

The ideal candidate will have hands-on experience with SIEM platforms, endpoint security, threat detection, incident response, log analysis, and security monitoring. This position will collaborate with Infrastructure, Cloud, Network, and Application teams to protect company systems and data while supporting compliance with recognized security standards.

Key Responsibilities

  • Continuously monitor and analyze security alerts and events using Microsoft Sentinel, CrowdStrike Falcon, InsightIDR, or similar SIEM and security platforms.

  • Investigate and respond to security incidents across Windows, Linux/Unix, cloud, network, and application environments.

  • Perform initial alert triage, prioritization, escalation, and false-positive and false-negative analysis.

  • Analyze logs from servers, endpoints, firewalls, cloud platforms, email security solutions, and other security appliances to identify suspicious activity.

  • Conduct proactive threat hunting using threat intelligence, indicators of compromise (IOCs), behavioral analytics, and established attack frameworks.

  • Manage, optimize, and maintain endpoint security tools, including policy implementation, configuration, and integration.

  • Collaborate with relevant technical teams to contain, eradicate, and recover from cybersecurity incidents.

  • Support digital forensics and incident response activities by collecting, preserving, and documenting relevant evidence.

  • Assist with vulnerability assessments, penetration-testing activities, remediation tracking, and security-control validation.

  • Recommend corrective actions and security improvements to reduce organizational risk.

  • Maintain accurate incident records, investigation documentation, root-cause analyses, and post-incident reports.

  • Prepare daily, weekly, and monthly SOC metrics, dashboards, and executive-level reports.

  • Contribute to cybersecurity awareness initiatives and continuous security improvement programs.

  • Support compliance with organizational policies and security frameworks, including ISO 27001, NIST CSF, CIS Controls, and SOC 2.

  • Stay informed about emerging threats, attack techniques, vulnerabilities, and cybersecurity technologies.

Requirements

  • Bachelor’s degree in Cybersecurity, Information Security, Computer Science, Information Technology, or a related discipline.

  • 2–3 years of relevant experience as a SOC Analyst, Cybersecurity Analyst, Security Operations Analyst, or in a similar role.

  • Hands-on experience with Microsoft Sentinel, CrowdStrike Falcon, InsightIDR, or an equivalent SIEM or security-monitoring platform.

  • Practical knowledge of endpoint detection and response (EDR), endpoint protection platforms (EPP), IDS/IPS, firewalls, antivirus, and email security solutions.

  • Strong understanding of networking concepts, including TCP/IP, DNS, HTTP/HTTPS, VPNs, and common cyberattack techniques.

  • Familiarity with Windows, Linux/Unix, Active Directory, Microsoft Entra ID (Azure AD), and Microsoft 365 security.

  • Working knowledge of the MITRE ATT&CK Framework, Cyber Kill Chain, indicators of compromise, and threat intelligence.

  • Experience with vulnerability-management processes and scanning tools such as Nessus, Qualys, or Rapid7.

  • Strong analytical, troubleshooting, investigation, and problem-solving skills.

  • Ability to manage multiple security alerts and incidents in a fast-paced environment.

  • Excellent written and verbal communication skills.

Preferred Skills

  • Experience supporting digital forensics, malware analysis, incident response, or threat-hunting activities.

  • Knowledge of cloud security environments, particularly Microsoft Azure.

  • Familiarity with security automation, scripting, or Security Orchestration, Automation and Response (SOAR) tools.

  • Experience preparing SOC dashboards, security metrics, root-cause analyses, and executive reports.

  • Understanding of ISO 27001, NIST CSF, CIS Controls, and SOC 2 requirements.

  • Experience coordinating security investigations across Infrastructure, Cloud, Network, and Application teams.

  • One or more relevant certifications, including:

    • Microsoft Certified: Security Operations Analyst Associate (SC-200)

    • GIAC Certified Incident Handler (GCIH)

    • GIAC Certified Intrusion Analyst (GCIA)

    • Certified Ethical Hacker (CEH)

    • CompTIA Cybersecurity Analyst (CySA+)

    • Certified Information Systems Security Professional (CISSP), particularly for experienced candidates