SOC Analyst
Review and triage security alerts across endpoints, applications, SaaS, and cloud infrastructure. Write and tune detection rules, escalate potential incidents, assist with incident response, and improve monitoring in collaboration with Engineering and IT. The role requires regular business hours, occasional evening and weekend coverage, and onsite work in the Bangalore office.
Responsibilities
- Review and triage security alerts
- Tune rules to reduce false positives
- Write new detection rules to cover MITRE ATT&CK techniques
- Escalate potential incidents
- Assist in incident response activities
- Run projects end to end to improve security monitoring
- Work with Engineering and IT on visibility coverage and detection
Requirements
- 4+ years responding to alerts or in a similar role
- Familiarity with the MITRE ATT&CK framework
- Comfort writing and tuning detection rules
- Experience triaging alerts and determining whether an event is an incident
- Exposure to application, SaaS, cloud, and endpoint logs
- Strong communication skills with technical and non-technical audiences
- Preference for candidates who have detected a real-life security incident
Benefits
- Competitive salary
- IT equipment support
- Meal and commute allowance
- Medical insurance
- Well-being allowance
- On-site snacks in the Bangalore office
- Opportunity to learn and grow with a talented workforce