{bc}
indeed

CYBER SECURITY ANALYST L4

Wipro
Maharashtra, IND
Onsite
Discovered 1 weeks ago
Microsoft SentinelMicrosoft Defender XDRMicrosoft Defender for EndpointMicrosoft Defender for Office 365Microsoft Entra IDMimecast
Free

Job Fit Check

Base Career helps you apply smarter for this job.

?%
Ready to Scan

Key skills for this role

Microsoft SentinelMicrosoft Defender XDRMicrosoft Defender for Endpoint
Smart Apply

Full Job Posting

Role Purpose

The role analyzes attack patterns, develops incident response plans, supports disaster recovery, and promotes compliance with cybersecurity regulatory frameworks.

The posting identifies the position as Cyber Security Analyst L4 and also describes a Cyber Defense / SOC Lead role.

Experience and Domain

The primary role summary specifies 8–10 years of Security Operations experience across SOC, SIEM, threat detection, incident response, and security engineering.

The domain includes Cyber Defense, SOC, SIEM, threat detection, and incident response.

Security Operations and Incident Response

  • Monitor and manage incidents and alerts in Microsoft Sentinel and Microsoft Defender XDR.
  • Perform triage, investigation, containment, remediation, and closure of security incidents.
  • Investigate compromised accounts, malware, ransomware, PowerShell, brute-force attacks, anomalous sign-ins, and endpoint threats.
  • Support 24x7 SOC operations, shift handovers, escalations, and incident response processes.

Phishing and Email Security

  • Investigate phishing, malicious email, spoofing, business email compromise, and credential-harvesting incidents.
  • Analyze email headers, sender reputation, URLs, attachments, domains, IP addresses, and indicators of compromise.
  • Perform email remediation and deletion using Mimecast and Microsoft Defender for Office 365.
  • Develop phishing investigation procedures and coordinate mailbox and credential remediation.

SIEM and Threat Hunting

  • Develop and tune Microsoft Sentinel analytics rules, KQL queries, workbooks, dashboards, watchlists, and custom detections.
  • Troubleshoot data connectors and log ingestion across Entra ID, Azure, Defender, Mimecast, and network platforms.
  • Conduct proactive threat hunting for malicious indicators, credential attacks, lateral movement, ransomware, and other techniques.
  • Map detections and hunting activities to the MITRE ATT&CK framework.

Endpoint, Identity, and Cloud Security

  • Investigate endpoint alerts, process trees, command lines, network connections, file activity, and user behavior with Microsoft Defender.
  • Use endpoint containment, remediation, Live Response, and sensor health investigations.
  • Investigate Entra ID authentication events, compromised identities, MFA activity, Azure resources, and cloud applications.
  • Support security monitoring across Microsoft 365 and Azure environments.

Detection Engineering and SOC Leadership

  • Design detections from threat intelligence, incidents, and MITRE ATT&CK techniques.
  • Automate enrichment, notifications, incident handling, and other repetitive SOC activities with Logic Apps and Sentinel automation.
  • Guide junior analysts, review investigations, maintain SOPs and playbooks, and track operational metrics.
  • Support SOC transition, onboarding, operational readiness, knowledge transfer, and process improvement.

Core Technical Skills

  • Microsoft Sentinel, Microsoft Defender XDR, Defender for Endpoint, Defender for Office 365, and Mimecast.
  • Microsoft Entra ID, Defender for Cloud Apps, Azure security, KQL, Defender Advanced Hunting, and Logic Apps.
  • Threat intelligence, IOC analysis, MITRE ATT&CK, incident response, alert triage, detection engineering, and SOC monitoring.
  • Azure Activity Logs, Log Analytics, Azure Diagnostics, network telemetry, Zscaler, Cloudflare, and endpoint security tools.

Certifications and Mandatory Skill

  • Preferred certifications include Microsoft SC-200, SC-100, AZ-500, CEH, and other relevant SOC, SIEM, cloud security, or incident response certifications.
  • The source lists Vulnerability Management as a mandatory skill.
  • The source also lists 5–8 years of experience in a separate mandatory-skills section.

Company Description

Wipro is a technology services and consulting company focused on digital transformation, engineering, operations, and security solutions.

Apply for this job in 1 click

Skip the repetitive application forms

Install the Base Career Chrome Extension and autofill job applications across major job boards with your profile.

Sarah M.James T.Maya R.

Trusted by over 500,000 job seekers on Base Career

Start Free Today

More from this employer

More jobs at Wipro