EPAM Systems logo
EPAM Systems
Posted 69 days agoVerified live 2d ago

Security Operations (SOC) Analyst

Brief overview

Remote
2+ yrsMinimum
526 H-1B approvalsDept. of Labor
520 green cardsCertified filings
Security Operation Center (SOC) operationsSecurity monitoringSIEMSplunkMicrosoft DefenderIncident responseAlert triageUse case development for detection logicMalware detectionIntrusion detection and prevention systems (IDPS)Windows monitoring and loggingLinux monitoring and loggingDatabase monitoring and loggingNetwork device monitoring and loggingHost security hardeningNetwork security hardeningNetworking protocols

About the company

EPAM Systems logo
EPAM Systemsepam.com

EPAM leverages its core engineering expertise as a leading global product development and digital platform engineering services company.

Visa sponsorship history

4 years sponsoring, last filed FY2026

Data powered by U.S. Department of Labor. This does not guarantee sponsorship for this specific role.
526H-1B approved
99%approval rate
140new H-1B hires
520PERM certified
$115,000median wage / yr
H-1B Petition ApprovalsVisas USCIS actually granted: the strongest sign the company sponsors.
2023195
2024183
2025120
202628
LCA Certified ApplicationsAn early filing step, not a visa approval: it signals intent, not confirmed sponsorship.
202374
202445
202523
202611
Green Card (PERM) FilingsCertified green card filings: a long-term commitment to international hires.
2023106
2024179
2025193
202642
Top sponsored roles
Senior Software EngineerSENIOR SOFTWARE ENGINEERLead Software EngineerLEAD SOFTWARE ENGINEERSenior Systems Engineer
Sponsored employees from
IndiaBelarusUkraineRussiaKazakhstan

Job description

Summary

EPAM Systems is seeking a Security Operations (SOC) Analyst to strengthen security monitoring, incident response, and detection engineering across a SOC environment. The role involves triaging alerts, hunting threats, improving SOC/SOAR workflows, and communicating findings through clear reporting.

Responsibilities

  • Respond to security incidents and coordinate appropriate containment and remediation actions
  • Triage, investigate, and prioritize security alerts across the SOC toolset
  • Develop and tune rule sets and use cases to improve detection quality and reduce false positives
  • Hunt for threats and support threat intelligence processes, including mapping to TTPs
  • Use advanced analytic tools to identify emerging threat patterns and vulnerabilities
  • Improve SOC/SOAR tooling, workflows, and automation to raise efficiency and coverage
  • Generate clear reports for various stakeholders and communicate findings effectively
  • Plan and run SOC tabletop exercises to validate readiness and response procedures
  • Participate in the on-call rotation every 8th weekend

Skills

  • 2+ years of experience in Security Operation Center (SOC) operations and security monitoring
  • 2+ years of experience with SIEM and endpoint security tools such as Splunk and Microsoft Defender
  • Strong incident response skills and alert triage capability
  • Solid use case development skills for rule sets and detection logic
  • Good knowledge of malware detection and intrusion detection and prevention systems (IDPS)
  • Strong understanding of Windows, Linux, database, and network device monitoring and logging techniques
  • Good understanding of host and network security hardening, networking protocols, common intrusion techniques, and risk management concepts
  • Strong analytical skills to identify emerging threat patterns and vulnerabilities using advanced analytics
  • High attention to detail and strong logical thinking
  • Curious mindset and confidence to ask questions when needed
  • Upper-Intermediate English proficiency (B2)
  • Availability for on-call duty every 8th weekend
  • Tanium experience or exposure to asset management, patch management, and EDR solutions
  • Qualys experience
  • Azure Sentinel experience
  • AWS security experience
  • ServiceNow SecOps experience

Qualifications

Must Haves

  • 2+ years of experience in Security Operation Center (SOC) operations and security monitoring
  • 2+ years of experience with SIEM and endpoint security tools such as Splunk and Microsoft Defender
  • Strong incident response skills and alert triage capability
  • Solid use case development skills for rule sets and detection logic
  • Good knowledge of malware detection and intrusion detection and prevention systems (IDPS)
  • Strong understanding of Windows, Linux, database, and network device monitoring and logging techniques
  • Good understanding of host and network security hardening, networking protocols, common intrusion techniques, and risk management concepts
  • Strong analytical skills to identify emerging threat patterns and vulnerabilities using advanced analytics
  • High attention to detail and strong logical thinking
  • Curious mindset and confidence to ask questions when needed
  • Upper-Intermediate English proficiency (B2)
  • Availability for on-call duty every 8th weekend

Nice to Haves

  • Tanium experience or exposure to asset management, patch management, and EDR solutions
  • Qualys experience
  • Azure Sentinel experience
  • AWS security experience
  • ServiceNow SecOps experience

Benefits

  • International projects with top brands
  • Work with global teams of highly skilled, diverse peers
  • Healthcare benefits
  • Employee financial programs
  • Paid time off and sick leave
  • Upskilling, reskilling and certification courses
  • Unlimited access to the LinkedIn Learning library and 22,000+ courses
  • Global career opportunities
  • Volunteer and community involvement opportunities
  • EPAM Employee Groups
  • Award-winning culture recognized by Glassdoor, Newsweek and LinkedIn

More jobs like this