CrawlJobs Logo

SOC Analyst L3

nttdata.com Logo

NTT DATA

Location Icon

Location:
Belgium , Diegem

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided

Job Description:

The primary function of the Tier 3 Analyst is to enhance our security operations capabilities. This role requires deep expertise in SIEM platforms including Splunk, IBM QRadar, Microsoft Defender, Microsoft Sentinel, and Google Chronicle, with a strong focus on playbook development, analytical rule creation, and threat modelling. You will be instrumental in building and optimizing our detection and response strategies.

Job Responsibility:

  • Deploy, configure, and maintain SIEM platforms (Splunk, QRadar, Sentinel, Defender, Chronicle)
  • Onboard and normalize log sources across cloud and on-prem environments
  • Develop and optimize analytical rules for threat detection, anomaly detection, and behavioural analysis
  • Design and implement incident response playbooks for various threat scenarios (e.g., phishing, lateral movement, data exfiltration)
  • Integrate playbooks with SOAR platforms (e.g., Microsoft Logic Apps, XSOAR) to automate triage and response
  • Continuously refine playbooks based on threat intelligence and incident feedback
  • Monitor and analyse security alerts and events to identify potential threats
  • Perform in-depth investigations and coordinate incident response activities
  • Collaborate with threat intelligence teams to enrich detection logic
  • Conduct threat modelling exercises using frameworks like MITRE ATT&CK, STRIDE, or Kill Chain
  • Translate threat models into actionable detection use cases and SIEM rules
  • Prioritize detection engineering efforts based on risk and business impact
  • Generate reports and dashboards for stakeholders on security posture and incident trends
  • Work closely with IT, DevOps, and compliance teams to ensure secure system configurations
  • Provide mentorship and guidance to junior analysts and engineers
  • Maintain accurate and up-to-date documentation of security procedures, incident response plans, and analysis reports
  • Support the creation of monthly reporting packs as per contractual requirements
  • Create and document robust event and incident management processes, Runbooks & Playbooks
  • Involvement in scoping and standing up new solutions for new opportunities
  • Assisting Pre-Sales team with requirements on new opportunities
  • Demonstrations of SOC tools to clients
  • Continual Service Improvement - Recommendations for change to address incidents or persistent events

Requirements:

  • Minimum of 3 to 5 years of experience in the IT security industry, preferably working in a SOC/NOC environment
  • Hands-on experience with at least two of the following: Splunk, IBM QRadar, Microsoft Defender for Endpoint, Microsoft Sentinel, Google Chronicle
  • Strong knowledge of log formats, parsing, and normalization
  • Experience with KQL, SPL, AQL, or other SIEM query languages
  • Familiarity with scripting (Python, PowerShell) for automation and enrichment
  • Deep understanding of threat detection, incident response, and cyber kill chain
  • Familiarity with MITRE ATT&CK, NIST, and CIS frameworks
  • Strong verbal and written English communication
  • Strong interpersonal and presentation skills
  • Strong analytical skills
  • Must have good understanding on network traffic flows and able to understand normal and suspicious activities
  • Must have good understanding of Vulnerability Scanning and management as well as Ethical Hacking (Penetration Testing)
  • Knowledge of ITIL disciplines such as Incident, Problem and Change Management
  • Ability to work with minimal levels of supervision
  • Willingness to work in a job that involves 24/7 on call
  • Preferably holds Cyber Security Certification e.g. ISC2 CISSP, GIAC, SC-200, Splunk Certified Admin/Power User, IBM QRadar Certified Specialist, Google Chronicle Security Engineer etc
  • Experience with Service Now Security suite
  • Experience with Cloud platforms (AWS and/or Microsoft Azure)
  • Excellent knowledge of Microsoft Office products, especially Excel and Word

Additional Information:

Job Posted:
April 05, 2026

Employment Type:
Fulltime
Work Type:
Hybrid work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for SOC Analyst L3

L3 Security Analyst

Join Vodafone’s Cyber Defence Operations Center of Excellence (CDO) and play a p...
Location
Location
United Kingdom , Newbury
Salary
Salary:
Not provided
vodafone.com Logo
Vodafone
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Experienced SOC analyst (Level 2 or above) with at least 4 years in security event analysis and incident response
  • Strong technical knowledge of networking protocols, operating systems (Windows/Linux), and security technologies (SIEM, EDR, IDS/IPS, firewalls, proxies)
  • Hands-on experience with SIEM tuning and SOAR automation
  • Familiarity with frameworks like MITRE ATT&CK and cyber kill chain
  • Knowledge of cloud platforms (Azure, AWS, Google Cloud) and scripting/programming skills
  • Excellent analytical, communication, and collaboration skills, with the ability to explain technical concepts to non-technical audiences
  • Passion for continuous learning and professional development, ideally working toward certifications such as GCIA, GCIH, GCFA, GNFA, CEH, or ECSA
  • A proactive, disciplined approach and the ability to work independently or as part of a team in a fast-paced environment
Job Responsibility
Job Responsibility
  • Investigate and validate threats using cutting-edge tools
  • Collaborate with global teams on incident investigations
  • Mentor colleagues to uplift skills across the CSOC
  • Fine-tuning SIEM systems and automating response actions
  • Delivering insightful security reports and advisories
What we offer
What we offer
  • Yearly bonus: 10%
  • Annual leave: 28 days + bank holidays + the opportunity to buy/sell/carry over 5 days/year
  • Charity days: 5 days/year
  • Maternity leave: 52 weeks: the first 13 weeks are fully paid, followed by 26 weeks of half pay
  • Private pension: You can contribute up to 5% of your basic pay with 2:1 matching from Vodafone up to 10%
  • Access to: private medical, private dental, free health assessments, share save scheme
  • Additional discounts: Vodafone retail, gym, cinema, cycle to work, season ticket loan
Read More
Arrow Right

Security Consultant L3

We are looking for an experienced security professional for our 24×7 managed sec...
Location
Location
India , Mumbai / New Delhi
Salary
Salary:
Not provided
Binary Global
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • BE/MCA or University degree
  • At least 6-10 years of experience working in a SOC environment
  • Certifications required – CEH, ECIH/CHFI
  • Knowledge & hands-on experience in the management of IDS/IPS
  • Firewalls, VPN, and other network & security products
  • Experience in security Information event management (SIEM) tools such as Qradar, Arcsight, Logrhythm or any other tools
  • Creating basic & advanced co-relation rules
  • Should have expertise in TCP/IP network traffic and event log analysis
  • Knowledge of ITIL disciplines such as Incident, Problem and Change Management
  • In-depth knowledge of OSI Layers, Internet Protocol, TCP/IP
Job Responsibility
Job Responsibility
  • Review & Analyse security events for quality and possible escalations to raise the alarm
  • Follow-up with customers & vendors to resolve open issues
  • Security device administration with respect to tuning and enhancing detection capabilities
  • Handling SOC MDR Operational requirements
  • Review and present security reports and ensure compliance to security policies and SLAs as applicable
  • Perform in-depth analysis of events and logs for detecting malicious applications and network activity, common attack techniques that compromise hosts, detecting and analysing system and network vulnerabilities and continuous process improvement by discovering the root causes of incidents
  • Work to resolve major security incidents in conjunction with respective resolver groups
  • Experience configuring security incident and event management tools including creating event filtering and correlation rules and reports
  • Ability to work with customer and product specialists to weed out false positives and improve the efficiency of the security operations
  • Creation of knowledge base which will be used by SOC analysts for performing their roles
  • Fulltime
Read More
Arrow Right

Security Specialist Engineer

At Mobile Financial Services we enable financial inclusion - truly using Technol...
Location
Location
India , Noida
Salary
Salary:
Not provided
ericsson.com Logo
Ericsson
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Degree in Software Engineering or similar
  • Solid Linux handling knowledge in Kubernetes environment
  • Experience in Cloud/SAAS Operational Security Management, AWS will be preferred
  • Experience in container technologies e.g. Docker/Kubernetes
  • Minimum of 5 years of experience in the IT security industry, preferably working in a SOC/NOC environment
  • Better understanding of SSL/TLS
  • Better understanding of Vulnerability assessment and Management
  • Better understanding of Public Key Infrastructure
  • Working knowledge of TCP/IP and networking concepts
  • Better understanding of Certificate Management
Job Responsibility
Job Responsibility
  • Perform advanced triage and investigation of escalated security incidents from L2 and L3 analysts
  • Conduct threat hunting activities using SIEM, EDR, and network security tools
  • Correlate logs from multiple sources (firewalls, IDS/IPS, endpoints, cloud, email gateways)
  • Develop fine-tune detection rules and use cases in SIEM platforms
  • Analyze malware behavior and suspicious artifacts
  • Coordinate containment, eradication, and recovery actions during incidents
  • Review risky user behavior (impossible travel, abnormal downloads, privilege escalation)
  • Manage access controls, conditional access policies, and MFA enforcement
  • Security configuration reviews and hardening of cloud resources (VMs, storage, databases, Kubernetes, serverless)
  • Support Cloud Security Posture Management (CSPM) tools by investigating misconfigurations and policy violations
  • Fulltime
Read More
Arrow Right

Senior Incident Response Analyst

Wrike is seeking an experienced Senior Incident Response Analyst to help safegua...
Location
Location
India , Bangalore
Salary
Salary:
Not provided
klaxoon.com Logo
Klaxoon
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Over 5 years of experience in a Senior Incident Response Analyst/SOC/Cybersecurity or similar security-focused role in a software product company
  • Deep understanding of network fundamentals and a wide range of security threats
  • Exceptional analytical and problem-solving skills, with the ability to think critically under pressure
  • Outstanding communication skills, both written and verbal, with the ability to convey complex concepts to technical and non-technical audiences
  • Hands-on experience with leading security information event management (SIEM) and extended detection and response (XDR) platforms (e.g., Rapid7, Splunk, Wazuh, Microsoft Defender for Endpoint, Crowdstrike)
  • Strong experience in log analysis, event correlation, and incident response
Job Responsibility
Job Responsibility
  • Lead the monitoring, analysis, and triage of complex security alerts and events, providing expert guidance to junior team members
  • Assess risk and impact of potential incidents, recommending and overseeing appropriate remediation actions
  • Employ a broad range of advanced security tools and technologies to proactively detect and investigate sophisticated cyber threats
  • Collaborate with and mentor other teams, including incident responders, to ensure timely and accurate escalation and resolution of high-priority cases
  • Oversee documentation and reporting of security incidents, ensuring accuracy, clarity, and timely delivery to relevant stakeholders
  • Drive the ongoing development and enhancement of security monitoring and detection capabilities, introducing best practices and automation where appropriate
  • Stay ahead of the latest security trends, emerging vulnerabilities, and best practices, sharing knowledge and recommendations within the team and across the organization
  • Demonstrated experience functioning at an L3 level, serving as the final escalation point for resolving complex security incidents and issues
  • Mentorship of junior/mid senior analysts, ability to share knowledge
What we offer
What we offer
  • 18 calendar days of paid vacation (12 days of National & Festival holidays (10 fixed, 2 flexible))
  • Sick Leave Compensation (5 Paid Uncertified Sick Days)
  • Menstrual Leave: Twelve (12) days per calendar year. Women employees are eligible for up to 1 day of menstrual leave per month.
  • Parental Leave: 26 Weeks Maternity / 4 Week Paternity
  • 2 Volunteer Days
  • Group Medical Insurance (Employees + Dependents)
  • Term Life Insurance (Rs 50,00,000)
  • Personal Accident Insurance (Rs 50,00,000)
  • Monthly Broadband / Internet Reimbursement (INR 1500)
  • Hybrid Working Model + Complimentary Lunch & Snacks
  • Fulltime
Read More
Arrow Right
New

Lawn operative

Due to growth and expansion, we have exciting opportunities for Lawn Care Operat...
Location
Location
United Kingdom , Loughton
Salary
Salary:
26781.00 - 27347.00 GBP / Year
jobs.360resourcing.co.uk Logo
360 Resourcing Solutions
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Full UK driving licence for manual vehicles
  • Excellent communication and customer-facing skills
  • Passion for lawn care
  • Ability to deliver top quality customer service
  • Excellent organisation and timekeeping skills
  • Right to work in the UK
  • PA1/PA6 preferred (training provided)
  • Good general fitness
Job Responsibility
Job Responsibility
  • Maintaining contact with the customer before a treatment is carried out
  • Visit designated customers daily to apply fertiliser and herbicide
  • Inform customer before work commences
  • Notify customer upon completion and supply invoice
  • Inform customer of next treatment date
  • Identify lawn issues and offer advice
  • Carry out essential Spring/Autumn machine work (Aerators, Scarifiers, lawn top-dressers)
  • Use garden tools to clear scarification waste
  • Maintain health and safety practices
  • Maintain cleanliness of company vehicle
What we offer
What we offer
  • Company van and mobile phone
  • New uniform annually
  • Paid training and qualification in pesticide application
  • Ongoing training and development
  • Medical cash plan
  • Christmas Shutdown
  • Free Lawn Treatments
  • Enhanced Paternity & Maternity pay
  • Company Sick pay
  • 24 hour Employee Assistance Helpline
  • Fulltime
Read More
Arrow Right
New

Sales Advisor

We’re looking for a Sales Advisor to join our team at Vertu Honda Nottingham. Th...
Location
Location
United Kingdom , Nottingham
Salary
Salary:
28000.00 - 34000.00 GBP / Year
jobs.360resourcing.co.uk Logo
360 Resourcing Solutions
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Full driving licence (manual and automatic)
  • Ability to demonstrate great customer service
  • Strong communication skills
  • Confidence using technology
Job Responsibility
Job Responsibility
  • Support customers through their entire car-buying journey
  • Arrange test drives
  • Help customers select the right finance
  • Guide customers through accessories
  • Ensure every customer has a fantastic experience
  • Engage with customers online, in-store, on the phone or by video, nationally as well as locally
What we offer
What we offer
  • Full training and comprehensive onboarding program
  • Opportunity to transfer to Sales Executive after 6-months
  • True work-life balance
  • 25 days holiday rising with length of service plus bank holidays
  • Access to online rewards platform giving cash back and discounts for multiple retailers
  • Preferential Service Rates
  • Colleague Purchase Scheme
  • Share Incentive Scheme
  • Pension
  • Enhanced Maternity and Paternity
  • Fulltime
Read More
Arrow Right
New

Support Worker

Due to growth and development within our services we have several opportunities ...
Location
Location
United Kingdom , Macclesfield
Salary
Salary:
13.50 GBP / Hour
jobs.360resourcing.co.uk Logo
360 Resourcing Solutions
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Have the confidence to facilitate and implement individualised PBS strategies
  • Follow and understand person-centred care plans and risk assessments
  • Have the resilience to provide ongoing support when an individual struggles with daily life and to regulate their emotions
  • Promote active support approaches
  • Understand Mental health and how to support people with a mental health diagnosis
  • Have experience supporting individuals with complex needs: severe autism, learning disabilities and mental health conditions
  • Be able to develop positive relationships, set boundaries and standards
  • Have a kind, caring and patient attitude
  • Care Certificate
  • Full UK Driving Licence (preferred)
Job Responsibility
Job Responsibility
  • Enabling individuals to meet their personal goals, develop life and coping skills, form and maintain relationships and manage all aspects of daily life including personal care and medication, following PBS plans, care plans and risk assessments
  • Working as part of a dedicated team which includes the service manager, team leaders and PBS practitioner
  • Mitigate risk and readmission to hospital, enabling individuals to take positive risks, promote community inclusion and take an active role in their life
What we offer
What we offer
  • Refer a Friend Scheme - £250 awarded
  • Pension Enrolment
  • Standard Sick Pay
  • Free training
  • Weekly pay
  • Paid holiday
  • Ongoing Training / Coaching throughout your role
  • Opportunities to progress & develop
  • Fulltime
Read More
Arrow Right
New

Teacher - ELA

MERS/Missouri Goodwill Industries is looking for an energetic, self-motivated, a...
Location
Location
United States , Kansas City
Salary
Salary:
47000.00 - 70000.00 USD / Year
mersgoodwill.org Logo
MERS Goodwill
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's Degree from an accredited Educational Institution
  • Must be able to work with a diverse group of students, staff, and co-workers
  • Current Missouri Teacher's Certificate in English/Language Arts is required
Job Responsibility
Job Responsibility
  • Provide a positive learning environment for adult learners
  • Develop and implement strategies, activities, and objectives for learners
  • Effectively facilitate a variety of differentiated learning opportunities including direct instruction, small group instruction, and cooperative learning
  • Provide visual, auditory, and hands-on learning activities that lead to required competencies (as outlined by the State of Missouri.)
  • Track each student's progress
  • Work as part of a team to support barrier removal for adult learners
  • Other duties as assigned
What we offer
What we offer
  • Individual and family medical benefits for full-time employees working 30 or more hours per week
  • Individual and family dental and vision benefits on the first of the month following the hire date for employees working 20 or more hours week
  • Voluntary Life and AD&D Insurance on the first of the month following the hire date for employees working 20 or more hours per week
  • 403(B) Retirement on date of hire for employees working 20 or more hours per week
  • 403(B) Retirement + Employer Match after one year of employment for employees working 20 or more hours per week
  • 401(A) Retirement on date of hire for employees working 20 or more hours per week
  • PTO Accrual up to 12 days based on hours worked
  • Employee store discount
  • Paid holidays
  • Flexible Schedules
  • Fulltime
Read More
Arrow Right