Security Operations Analyst

Job not on LinkedIn

šŸ”„ 26 minutes ago

šŸ‡®šŸ‡³ India – Remote

ā° Full Time

🟔 Mid-level

🟠 Senior

šŸ›”ļø Security Operations

šŸ‘» Ghost score 25%

infoinfo
Apply Now
Find Similar Remote Jobs

šŸ“Š Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Workstreet

Workstreet

11 - 50 employees

Founded 2023

šŸ”’ Cybersecurity

šŸ“‹ Compliance

šŸ¤ B2B

Cybersecurity • Compliance • B2B

Workstreet is a managed security and compliance services provider that helps businesses automate and modernize their security programs. With expertise in compliance frameworks including SOC 2, ISO 27001, HIPAA, and GDPR, Workstreet supports companies in achieving their security and compliance outcomes efficiently. Their services include acting as a virtual Chief Information Security Officer (vCISO), full-scale penetration testing, and vendor risk management, aiming to streamline security processes while allowing businesses to focus on growth.

šŸ“‹ Description

• Monitor and triage real-time alerts across EDR, firewall, IPS, WAF, and SIEM platforms • Prioritize alert severity and distinguish true positives under time pressure • Maintain continuous 24x7 threat monitoring through rotating shifts, including nights, weekends, and holidays • Conduct deep incident investigations by correlating EDR, network, and cloud telemetry • Determine incident root cause, scope, and indicators of compromise • Provide incident analysis, containment recommendations, and remediation guidance to client teams • Refine SIEM correlation rules and detection logic to eliminate false positives and close coverage gaps • Document investigation findings and incident timelines in case management systems • Update SOC playbooks and standard operating runbooks • Partner with GRC engineers and vCISOs to align threat detection with client compliance obligations • Execute investigation handoffs across shift rotations • Guide junior analysts on investigative techniques • Partner directly with client stakeholders to maintain strong detection coverage

šŸŽÆ Requirements

• 3+ years of hands-on experience monitoring, triaging, and investigating security alerts within a high-velocity SOC setting • Skilled at correlating data across EDR, firewall, IPS, WAF, and SIEM tools • Ability to own complex investigations end to end and make sound escalation decisions with minimal oversight • Ability to document findings and explain complex technical incidents in plain language to client stakeholders • Willingness and ability to work a 24x7 rotating shift schedule, including nights, weekends, and holidays • Recognized security credential such as CompTIA Security+, CySA+, GCIH, or equivalent credentials • Practical experience with EDR tools such as CrowdStrike, SentinelOne, and Defender • Practical experience with SIEM solutions such as Splunk, Microsoft Sentinel, Sumo Logic, and Wazuh • Experience configuring, maintaining, and tuning security platforms beyond day-to-day alert triage • Proficiency writing Python or PowerShell scripts and developing SOAR playbooks • Prior experience in managed security service provider environments supporting multiple client organizations concurrently • Familiarity with SOC 2, ISO 27001, and HIPAA requirements as they align with threat detection and incident response • Excellent written and verbal English communication skills • Reliable, high-speed internet connection and a professional home office environment supporting confidential conversations and uninterrupted shift coverage • Willingness to travel locally for occasional onsite meetings, team gatherings, or business activities • Participation in live video interviews with camera on and identity verification during recruitment and onboarding • Successful identity verification and background screening, where permitted by law

šŸ–ļø Benefits

• Clear career path with mentorship and training opportunities • Reimbursement for successful completion of approved training and certification courses relevant to the current role • Competitive base salary with regular performance reviews linked to merit-based appraisals and bonus opportunities • Significant room for career advancement • Remote-first flexibility to work from anywhere while collaborating with a global team, within the assigned shift

Apply Now

Similar Jobs

šŸ•’ September 11

Zscaler

5001 - 10000

šŸ”’ Cybersecurity

ā˜ļø SaaS

šŸ¢ Enterprise

Senior SOC Analyst monitoring and investigating threats for Zscaler, whose Zero Trust Exchange secures users, devices, and applications globally. Responding to incidents and analyzing phishing attacks.

šŸ•’ June 30

Protera

201 - 500

šŸ’¼ Consulting

šŸ“¦ Logistics

Senior SOC Analyst role focusing on incident response and threat hunting at Protera Technologies. Leading security operations and providing mentorship to junior analysts in a remote environment.

šŸ•’ May 29

Credit Acceptance

1001 - 5000

šŸ’ø Finance

šŸ’³ Fintech

🚘 Automotive

Security Operations Engineer II at Credit Acceptance engineering security tools and managing SecOps processes. Collaborating with globally distributed teams to enhance customer operations and security services.

šŸ•’ January 6

Cyber Managed Services Inc. (CyberMSI)

51 - 200

šŸ”’ Cybersecurity

šŸ¤ B2B

ā˜ļø SaaS

AI SecOps Manager at CyberMSI leading SOC operations in Bangalore. Overseeing AI-assisted workflows and driving operational excellence in incident detection and response.