Security Analyst II
GruvePuneFull TimeEngineering
Remotely
siemsocsplunkchroniclesentinelmsspcortex xsiamexaforce
Job Description
📋 Description
- Triage and investigate Exaforce detections; correlate across log sources and enrich with threat
- Execute approved containment steps (block requests, token disablement) under L2/L3 authority matrix.
- Maintain alert-quality feedback: false-positive tagging and tuning suggestions into the detection
- Meet MTTA/MTTD SLAs; keep Linear tickets audit-grade.
- Author and refresh triage runbooks; coach trainee analysts on shift.
- Coordinate with the NOC shift on cross-domain events (network anomaly vs security incident).
🎯 Requirements
- BE/BTech (CS/IT/E&TC) or equivalent.
- 2–4 years in a SOC/MSSP environment with hands-on triage ownership.
- Working experience on at least one enterprise SIEM (e.g., Cortex XSIAM, Chronicle, Splunk
- MITRE ATT&CK-aligned investigation method; log fluency across firewall, identity, and cloud
- Disciplined ITSM/ticketing practice and written communication.
- Kubernetes/container security exposure; query skills (KQL/SPL/SQL-style) (preferred).
🎁 Benefits
- Culture of innovation, collaboration, and continuous learning
- Diverse and inclusive workplace
Back to all jobs