Cybersecurity Analyst

R1 RCM

Dadri

On-site

INR 600,000 - 900,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

R1 RCM is seeking an experienced Security Operations Analyst in India to monitor security tools, triage incidents, and drive remediation with OSINT support. You will analyze logs, respond to alerts, and participate in threat intelligence research while maintaining SOPs and running investigations end-to-end.

The role emphasizes collaboration with business units and technical teams to secure critical assets. Candidate should have 2–4 years in IT security, strong knowledge of SIEM, firewalls, and

Qualifications

  • Bachelor's degree in a technical discipline (e.g., Computer Science or related).
  • 2–4 years in an IT-related field with security operations exposure.
  • Knowledge of security, monitoring, networking technologies, tools and standards.
  • Understanding of network, firewall, and web security and related controls.
  • Experience with SIEM, PIM, content filtering and firewalls.
  • Experience investigating and reporting InfoSec issues and trends.

Responsibilities

  • Monitor security tools to identify incidents, intrusions, and malware events.
  • Generate trouble tickets and triage using OSINT to classify security events.
  • Review logs and report unusual or suspect activities.
  • Follow incident response workflows for triage, escalation, and remediation.
  • Escalate and resolve security incidents per established procedures.
  • Analyze incident data to determine root causes and remediation strategies.
  • Provide support for new detection capabilities and tool improvement.
  • Research threat intelligence to keep the program up to date.
  • Document SOPs and runbooks for incident investigations.
  • Manage cases through the lifecycle for moderately complex incidents.
  • Assist with compliance and change management policies.
  • Participate in cybersecurity projects and cross-functional security reviews.
  • Maintain metrics/reports for cybersecurity operations.
  • Provide trainings to the team as needed.
  • Handle escalations from Level 1.

Skills

SIEM
Threat Hunting
Incident Response
Network Security
Firewall Security
Web Security
Log Analysis
OSINT
Documentation
Security Policy

Education

Bachelor's degree in a technical discipline

Tools

SIEM
PIM
Content Filtering
Firewalls
DNS
Active Directory

Job description

Responsibilities:
  • Monitor various security tools to identify potential incidents, network intrusions, and malware events, etc., to ensure the confidentiality, integrity, and availability of R1s architecture and information systems are protected.
  • Generate trouble tickets and perform initial validation and triage to determine whether incidents are security events using open-source intelligence (OSINT).
  • Review and analyze log files to report any unusual or suspect activities.
  • Utilize incident response use-case workflows to follow established and repeatable processes for triaging and escalating.
  • Follow established incident response procedures to ensure proper escalation, analysis, and resolution of security incidents.
  • Analyze and correlate incident event data to develop preliminary root cause and corresponding remediation strategy.
  • Provide technical support for new detection capabilities, recommendations to improve upon existing tools/capabilities to protect R1s network, and assessments for High Value Assets.
  • Research Threat Intelligence sources on the latest malware, trends, patches to keep the Security Program up to date.
  • Document and maintain SOPs/Runbooks related to investigating security incidents.
  • Perform case management throughout the incident lifecycle for moderately complex security incidents.
  • Understand and assist with compliance and enterprise change management policies and procedures.
  • Attend and participate in cybersecurity projects and the change management process. This includes interacting with business units and technical teams to understand what is coming and how their projects can be more secure from the beginning.
  • Maintain metrics & reports on the status of the R1 cybersecurity operations program.
  • Provide the necessary trainings to team as and when required.
  • Handling Escalations from Level 1
Required Qualifications:
  • A bachelor’s degree in a technical discipline (e.g., Computer Science, Business Analyst, etc.)
  • A minimum of 2-4 years of professional experience in an IT-related field.
  • Intermediate knowledge of security, monitoring, and networking technologies, tools, protocols, and standards.
  • Intermediate or advanced security, networking, or equivalent professional experience in security operations.
  • Knowledge of security policy, programs, process, and metrics.
  • Understanding/Experience on Network Security, Firewall Security, and Web Security (including web application firewalls and proxies).
  • Experience on SIEM, PIM, Content Filtering, and Firewalls.
  • Experience on Investigating, documenting, and reporting on any information security (InfoSec) issues as well as emerging trends.
  • Experience Threat Hunting and searching for malicious activity.
  • Strong drive and passion to deliver distinctive end-products, a quick learner with a strong attention to detail and quality.
  • Excellent interpersonal and communication skills.
  • Self-driven, with attention to detail and the ability to think outside the box for solutions to issues.
  • Knowledge of IT Industry standards such as ISO 27001, HIPAA, SOX.
  • Good knowledge of security programs, process, and metrics.
  • Good knowledge of IT Security Infrastructure and related applications and toolsets. Examples include firewalls & Network, Active Directory, DNS.
Desired Qualifications:
  • Certification (or ability to obtain certification) in at least one of the following areas: General Security (CISSP), Cloud Security (GCLD, Cloud+, CCSK), and Ethical Hacking (CEH).
  • Experience with advanced cybersecurity tools, network topologies, intrusion detection, and secured networks.
  • In-depth understanding of NIST SP 800-61,SOC 2 AICPA controls, and frameworks.
  • Recent experience with static and/or dynamic code review process.
  • Experience with forensic data analysis.
  • Leadership experience and qualities.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cybersecurity Analyst
Cybersecurity Analyst

Abacus • Chennai District

On-site
INR 900,000 - 1,400,000
Senior Cyber Security Analyst
Senior Cyber Security Analyst

Dun & Bradstreet India • Hyderabad

On-site
INR 2,500,000 - 4,000,000
Cyber security Analyst
Cyber security Analyst

Stefanini North America and APAC • Maharashtra

On-site
INR 900,000 - 1,500,000
Cyber Security Analyst
Cyber Security Analyst

Koundinyasa Technology Services • Marwar Junction

On-site
INR 700,000 - 1,100,000
Senior Security Analyst
Senior Security Analyst

UltraViolet Cyber • Hyderabad

On-site
INR 800,000 - 1,200,000
Cyber Security Engineer
Cyber Security Engineer

Insight Global • India

On-site
INR 2,800,000 - 6,000,000
Senior Cyber Security Analyst
Senior Cyber Security Analyst

Dun & Bradstreet • Hyderabad

Hybrid
INR 2,500,000 - 4,500,000
Cyber Security Analyst
Cyber Security Analyst

Dun & Bradstreet • Hyderabad

On-site
INR 3,000,000 - 5,000,000
Senior Cyber Security Analyst (R-19638)
Senior Cyber Security Analyst (R-19638)

Eyeota • Hyderabad

On-site
INR 1,100,000 - 2,400,000
IT Security Engineer
IT Security Engineer

Dicetek LLC • Chennai District

On-site
INR 1,200,000 - 1,800,000