Soc Interview Questions

1,152 soc interview questions shared by candidates

1. Difference Virus and Worm - ✅ 2. What is Filesless Virus, How does it operate - ✅ 3. Difference betn SPF and DKIM (As Mentioned in CV) - ✅ - Which one is used sign a mail using digital signature when it's being sent (SPF or DKIM) ✅ 4. Rainbow Tables ✅ 5. ❌How will you identify when was a file was actually written into a disk and what kind of artefacts will you look to identify that - User browsing something, User got infected through drive Y, He was searching something, some file got created or dropped into download folder, with intentionally or unintentionaly, so if you want to confirm so & so file dropped or internal download folder, Which log will you check to confirm at so n so time the file got written on disk on download folder - When you download a file, which folder the file will get written which folder, tell me the list of folder that you can see day to day activities using in our windows ❌ 6. There are list of legitimate DLL files, where will you see, DLL files location, DLL Path ✅ 7. CKC, Stages of CKC ✅
avatar

SOC Analyst I

Interviewed at Dell Technologies

3.7
Oct 5, 2023

1. Difference Virus and Worm - ✅ 2. What is Filesless Virus, How does it operate - ✅ 3. Difference betn SPF and DKIM (As Mentioned in CV) - ✅ - Which one is used sign a mail using digital signature when it's being sent (SPF or DKIM) ✅ 4. Rainbow Tables ✅ 5. ❌How will you identify when was a file was actually written into a disk and what kind of artefacts will you look to identify that - User browsing something, User got infected through drive Y, He was searching something, some file got created or dropped into download folder, with intentionally or unintentionaly, so if you want to confirm so & so file dropped or internal download folder, Which log will you check to confirm at so n so time the file got written on disk on download folder - When you download a file, which folder the file will get written which folder, tell me the list of folder that you can see day to day activities using in our windows ❌ 6. There are list of legitimate DLL files, where will you see, DLL files location, DLL Path ✅ 7. CKC, Stages of CKC ✅

One of the main things they asked me was about how I would handle multiple incidents happening at the same time. They wanted to know my approach to prioritization and communication, and I explained how I use triage frameworks and clear escalation paths to make sure critical threats are addressed first while still keeping stakeholders updated
avatar

SOC Analyst

Interviewed at Intel Corporation

3.9
Aug 27, 2025

One of the main things they asked me was about how I would handle multiple incidents happening at the same time. They wanted to know my approach to prioritization and communication, and I explained how I use triage frameworks and clear escalation paths to make sure critical threats are addressed first while still keeping stakeholders updated

Viewing 891 - 900 interview questions

Glassdoor has 1,152 interview questions and reports from Soc interviews. Prepare for your interview. Get hired. Love your job.