Remote (India) · Mid Level · Remote
Applicants who checked fit first are 3.1× more likely to hear back
Your score for this role already exists
ASAI compared this JD against 41 signals - skills, seniority, domain, stack overlap etc. Add a resume and it unlocks in about 30 seconds.
No credit card · 1 tap with Google
HIGH
Jobgether is actively reviewing profiles and moving candidates through the pipeline right now.
First 72 hours
Still inside it - posted just nowEarly applicants get seen before the pile builds.
Not a repost
The first time we've seen this listing - it hasn't been closed and reopened.
You almost certainly match several of these already. Unlock your skill map to see the matches, the gaps, and what to fix first.
This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Security Analyst, CSOC based in India.
This role is part of a 24/7 Cyber Security Operations Center, focused on protecting systems, networks, and data from evolving threats.
You will analyze security events, investigate potential intrusions, and support rapid containment and remediation.
The position combines hands-on security monitoring with incident response, threat analysis, and forensic investigation.
You will work across logs and telemetry from SIEM, EDR, firewalls, IDS/IPS, and other security technologies to connect events and identify threats.
The role offers close collaboration with security, engineering, network, and application teams in a fast-paced environment.
You will also have opportunities to use AI and automation to reduce manual work and improve security decision-making.
This is an opportunity to strengthen enterprise defenses while developing your expertise across modern cybersecurity operations.
Monitor and analyze network traffic, security events, alerts, and threat indicators, recommending appropriate remediation and escalation actions.
Investigate security incidents and intrusion attempts by correlating information from multiple sources to determine affected systems, applications, or data.
Analyze logs from SIEM, EDR, firewalls, proxies, NIDS, HIDS, and host systems to identify malicious activity and establish appropriate response paths.
Independently identify, classify, contain, investigate, document, and eradicate security threats in accordance with established procedures.
Perform L1 security event and incident analysis, identify false positives, correlate related events, and escalate confirmed or high-risk incidents appropriately.
Assess the potential impact of incidents and determine the remediation actions required to reduce risk and restore secure operations.
Follow established procedures for detecting, documenting, reporting, and escalating security incidents and threat intelligence.
Collaborate with engineering, network, application, and security teams to support effective incident resolution and strengthen defensive capabilities.
Apply practical AI tools and automation where appropriate to streamline analysis, reduce repetitive work, and improve response efficiency.
Bachelor's degree in Computer Science, Information Systems, Cybersecurity, or a related discipline, or 2–5 years of relevant experience in SOC operations, incident response, or cyber forensics.
At least 2 years of SOC experience, including relevant internship experience.
Hands-on experience with Splunk SIEM and security log analysis across technologies such as firewalls, proxies, and EDR platforms.
Practical experience handling cyber incidents, performing L1 analysis, identifying false positives, and correlating security events.
Solid understanding of network architecture, TCP/IP, OSI layers, network and systems architecture, and intrusion detection technologies.
Knowledge of web application architecture, Active Directory, and application-layer protocols including HTTP, SMTP, and DNS.
Understanding of common malware types and attack techniques, including rootkits, trojans, adware, exploits, and fileless malware.
Strong analytical, organizational, documentation, prioritization, and time-management skills.
Clear written and verbal communication skills, with the ability to collaborate effectively across technical and organizational teams.
Ability to work in a fast-paced environment, manage competing priorities, navigate ambiguity, and make sound decisions with incomplete information.
Experience partnering with network, engineering, or application teams is an advantage.
Security certifications such as CompTIA Security+ or equivalent are preferred.
Familiarity with AI productivity tools such as ChatGPT, Copilot, or similar technologies is a plus.
Competitive compensation and benefits package.
Medical, dental, and vision insurance.
Provident Fund.
Life and accident insurance.
Internet, fuel, meal, and telephone allowances.
Remote work arrangement within India.
Opportunities to work with modern cybersecurity, AI, and automation technologies.
A collaborative environment with opportunities to work across security, engineering, network, and application functions.
Benefits and eligibility may vary according to location and employment status.
Free · no signup
Daily job drops, skill trends and free resources - posted straight to the group. Leave any time.
No spam. Just jobs and resources.
Why people use ASAI
Scored, not searched. Every role ranked against your actual profile.
Alerts as often as hourly. Reach new roles while the pile is still small.
Skill gaps, spelled out. See exactly which requirements you don't meet yet.
Verified jobs, only. Say no to ghost jobs. Your time deserves respect.
Keep browsing