Jobs on TAL
All jobsOnsiteEngineeringcybersecurity2-4 yearslinux
OnsiteMid Levelcybersecurity

Security Operations Specialist

DigiFortexBengaluru, IndiaPosted 17 May 2026

DigiFortex is looking for a hands-on SOC L2 Analyst to join their growing security operations center in Bengaluru. The role involves managing the Wazuh-based SIEM, performing incident response, and defining security processes as an early hire. You will work on government and enterprise-level environments, reporting directly to the founder. Success requires strong investigative instincts and the ability to communicate technical incidents clearly to C-suite clients.

Matched by TAL

50k new jobs listed every day. Install TAL to find more jobs like this.

Install TAL

Experience

2-4 years

Function

Engineering

Work mode

Onsite, India

Company

Tier 2

What you will work on

DigiFortex is looking for a hands-on SOC L2 Analyst to join their growing security operations center in Bengaluru. The role involves managing the Wazuh-based SIEM, performing incident response, and defining security processes as an early hire. You will work on government and enterprise-level environments, reporting directly to the founder. Success requires strong investigative instincts and the ability to communicate technical incidents clearly to C-suite clients.

TAL's take

Quality 58/1005/5 clarityTier 2 company

Solid tier-2 cybersecurity firm offering early-hire growth potential and direct exposure to high-stakes government and BFSI clients.

The JD is extremely clear about expectations, required toolstack, interview process, and the specific nature of the role as a foundation-building SOC analyst.

Must haves

  • 2-4 years experience in security operations or SOC
  • Proficiency in Linux CLI
  • Hands-on experience with Wazuh SIEM
  • Deep understanding of Windows Event IDs and AD attack patterns
  • Strong knowledge of TCP/IP, networking, and log analysis
  • Ability to map alerts to MITRE ATT&CK framework
  • Strong incident documentation and report writing skills

Tools and skills

linuxwazuhwindows securitynetworkingmitre att&ckincident documentation

Nice to have: virustotal, abuseipdb, shodan, misp, shuffle, thehive, python, bash, aws cloudtrail, azure activity logs, m365 defender logs, splunk, elk, qradar, ceh, security+, oscp.

About the company

Emerging cybersecurity startup with CERT-In and CREST accreditation and established industry presence.