📢 New: get today's jobs on our WhatsApp Channel
Jobiglo

No results.

This job is no longer available

This job expired on 20/09/2026. It no longer accepts applications.

Cyber Security Analyst (SOC Level 2)

DWP Group · Lahore

Mid 🇬🇧 English
IBM QRadar SIEM Windows Linux Active Directory firewalls VPN IDS/IPS endpoint security network logs MITRE ATT&CK Cyber Kill Chain EDR/XDR platforms threat intelligence vulnerability management TCP/IP DNS HTTP/HTTPS Python PowerShell

Job description

About the role

We are seeking a proactive SOC Level 2 Analyst with strong expertise in IBM QRadar to join our Cyber Security team. You will be responsible for investigating, triaging, and responding to security incidents escalated from Level 1, ensuring rapid containment and remediation.

Key responsibilities

  • Monitor, investigate, and respond to security incidents escalated from SOC Level 1.
  • Perform in‑depth analysis of alerts using IBM QRadar SIEM.
  • Conduct incident triage, root‑cause analysis, and recommend containment, remediation, and recovery actions.
  • Develop, optimize, and maintain QRadar use cases, correlation rules, dashboards, reports, and custom searches.
  • Tune detection rules to reduce false positives and improve threat detection.
  • Investigate complex incidents across Windows, Linux, Active Directory, firewalls, VPNs, IDS/IPS, endpoint security, and network logs.
  • Coordinate with internal teams, customers, and third‑party vendors during investigations.
  • Lead technical escalations and ensure resolution within SLA targets.
  • Prepare incident reports, executive summaries, and periodic security reports.
  • Mentor SOC Level 1 analysts and contribute to playbooks, SOPs, and response workflows.

Required profile

  • Bachelor’s degree in Computer Science, IT, Cyber Security or related field.
  • 2–3 years of experience in a Security Operations Center.
  • Hands‑on experience with IBM QRadar SIEM (mandatory).
  • Strong knowledge of Windows, Linux, Active Directory, firewalls, VPNs, IDS/IPS, and endpoint security.
  • Familiarity with incident response frameworks such as MITRE ATT&CK and the Cyber Kill Chain.

Required skills

  • IBM QRadar SIEM (use case development, rule tuning, dashboards).
  • Log analysis and event correlation.
  • Network fundamentals: TCP/IP, DNS, HTTP/HTTPS, VPNs.
  • Security tools: EDR/XDR platforms, threat intelligence, vulnerability management.
  • Scripting basics in Python or PowerShell (advantage).
  • Understanding of firewalls, IDS/IPS, endpoint protection, and network monitoring.

Questions fréquentes

Le salaire n'est pas communiqué publiquement par le recruteur. Vous pouvez postuler et négocier directement avec DWP Group.
Cliquez sur "Postuler maintenant" en haut de la page. Vous pouvez importer votre CV en 1 clic — Jobiglo extrait automatiquement vos informations et postule pour vous.

Why are you reporting this job?

Thank you for your report. We will review this job.

A question about this job?

Ask it here: you will get the full job summary by e-mail, right away.

💬 Chat with us on Telegram

Published 2 months ago

47 views · 0 interested

Boost your chances

Upload your CV — we will match you with relevant openings.

Analyzing your CV...

DWP Group

Lahore