SOC Engineer (L2)

Larsen & Toubro· Security
Apply Now ↗
📍 Chennai, Tamil Nadu, IndiaFULL TIME
Incident ManagementThreat & Vulnerability ManagementForensicsSIEM - Security Information Event Management

About this role

Job Purpose 

The SOC L2 Analyst performs advanced investigation and response activities, conducts threat analysis, and supports containment and remediation of cybersecurity incidents. Protect multi?tenant GPU cloud with defense?in?depth, ensuring zero?trust, auditability, and regulatory alignment.


Role Description 

Key Responsibilities

  • Investigate escalated incidents from L1 analysts. 
  • Conduct detailed log analysis and threat hunting activities. 
  • Perform malware analysis and forensic investigations. 
  • Execute containment, eradication, and recovery procedures. 
  • Correlate events across multiple security platforms. 
  • Develop detection use cases and SIEM/SOAR correlation rules. 
  • Investigate Kubernetes, container runtime, and cloud-native security incidents.
  • Fine-tune security controls to reduce false positives. 
  • Lead incident response activities and root cause analysis. 
  • Collaborate with infrastructure, cloud, and application teams during investigations. 
  • Assist Vulnerability Management teams in validating exploitable vulnerabilities and prioritizing remediation.
  • Provide mentoring and guidance to L1 analysts.


  • Implementation 
    • Enforce IAM/RBAC, least privilege, and network micro?segmentation; secrets/KMS integration.
    • Define secure baselines for OS, containers, CUDA drivers, and platform services; supply?chain controls (image signing/SBOM).
    • Implement and maintain cloud network security controls such as security groups, firewalls, WAF, DDoS, micro-segmentation, EDR, DLP, PIM/PAM and secure connectivity etc
  • Operations 
    • Continuous vulnerability management, patch cadence, threat detection (EDR/XDR), and audit log integrity, PAM, DDOS, Firewalls & WAF
    • Periodic access reviews, key rotation, and compliance evidence packs.


  • Reliability & Incident 
    • Incident response (containment/forensics/eradication); purple?team exercises; tabletop drills.
  • Data Protection 
    • Encryption in?transit/at?rest, tenant isolation boundaries, data retention, legal holds, and purge workflows.

 

Experience & Educational Requirements

Qualifications and Experience

EDUCATIONAL QUALIFICATIONS: (degree, training, or certification required)

BE/B-Tech or equivalent with Computer Science or Electronics & Communication

RELEVANT EXPERIENCE: (no. of years of technical, functional, and/or leadership experience or specific exposure required)

  • 4–7 years cybersecurity; strong cloud security, zero?trust, and data privacy in regulated environments.
  • Strong expertise in SIEM technologies (Microsoft Sentinel, Splunk, QRadar). 
  • Hands-on experience with Microsoft Defender XDR, CrowdStrike, Sentinel One, or similar EDR tools. 
  • Knowledge of Azure, AWS, and GCP security monitoring. 
  • Experience in incident response and digital forensics. 
  • Understanding of attack techniques, malware behaviour, and threat actor tactics. 
  • Ability to analyze packet captures and network traffic. 
  • Knowledge of SOAR platforms and automation workflows. 
  • Experience with KQL, Python Scripts, or equivalent query languages.
  • Participate in shift-based 24x7 SOC operations

Tools / Tech
 SIEM (Splunk/ELK), EDR/XDR, image scanners (Trivy/Clair), OPA/Gatekeeper, Vault/KMS/HSM, HashiCorp Boundary (or equivalent), Firewalls, WAF, DDOS, ISO AUDITS, VAM, PAM.

Certifications
 CISSP; CISM/CISA; CCSP; ISO 27001 Lead Implementer/Auditor, SC-200, SC-300, AZ-500, GCIH, GCIA, CEH, CompTIA CySA+

KPIs
 Mean time to detect/respond, vulnerability backlog burn?down, audit non?conformities, policy violation rate,
False Positive Reduction Rate, Automation Coverage (SOAR Playbooks).

Frequently Asked Questions

Is the salary disclosed for the SOC Engineer (L2) position at Larsen & Toubro?
The salary for this SOC Engineer (L2) role at Larsen & Toubro is not publicly listed. Click "Apply Now" to learn more about the compensation package on their official careers page.
Where is the SOC Engineer (L2) position at Larsen & Toubro located?
This SOC Engineer (L2) role at Larsen & Toubro is based in Chennai, Tamil Nadu, India. The position is listed as on-site or hybrid. Check the full job description or apply directly to confirm the work arrangement.
Is the SOC Engineer (L2) role at Larsen & Toubro full-time or part-time?
This is listed as a FULL TIME position. It is posted as a SOC Engineer (L2) role in the Security department at Larsen & Toubro.
Which team or department does the SOC Engineer (L2) at Larsen & Toubro belong to?
This SOC Engineer (L2) position is part of the Security department at Larsen & Toubro. See the full job description for more information about the team structure and responsibilities.
How do I apply for the SOC Engineer (L2) position at Larsen & Toubro?
Click the "Apply Now" button on this page. You will be redirected to Larsen & Toubro's official application portal hosted on peoplestrong where you can submit your application directly.
When was the SOC Engineer (L2) job at Larsen & Toubro posted?
This SOC Engineer (L2) position at Larsen & Toubro was posted on Sep 18, 2026. Apply as soon as possible — early applications are often reviewed first.
SOC Engineer (L2)
Larsen & Toubro
Apply for this role ↗

You'll be redirected to Larsen & Toubro's official application page on peoplestrong.