SecOps Analyst

Rubiscape

Pune District

On-site

INR 900,000 - 1,500,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Rubiscape, based in Pune, India, seeks a SecOps Analyst to be the first line of detection and response for threats across Rubiscape’s SaaS infra and internal systems. You will operate the SIEM, investigate alerts, and collaborate with security engineering to automate response playbooks.

Requirements include 2+ years in SOC or security monitoring, hands-on SIEM experience, and knowledge of MITRE ATT&CK. Familiarity with cloud-native tooling and vulnerability management is preferred.

Qualifications

  • 2+ years of experience in a Security Operations Centre (SOC) or security monitoring role.
  • Hands-on experience with SIEM platforms including query authoring and dashboard creation.
  • Solid understanding of MITRE ATT&CK and attacker TTPs relevant to cloud-hosted SaaS platforms.
  • Experience with vulnerability management tools and prioritising CVEs in a cloud-native stack.
  • Ability to analyse network traffic, application logs and endpoint telemetry to reconstruct attack chains.

Responsibilities

  • Monitor SIEM dashboards (Splunk/ ELK) and triage security alerts across cloud infrastructure, application logs, and endpoint telemetry; elevate confirmed incidents per runbook.
  • Conduct first-response investigations and containment for security incidents including account compromise, data exfiltration, malware, and DDoS events.
  • Maintain and improve detection rules, correlation searches, and alert thresholds in the SIEM; reduce false-positive rate while increasing signal fidelity.
  • Operate vulnerability management workflows: ingest scanner output, track remediation status, and report SLA compliance.
  • Document incident timelines, evidence chains, and post-incident reports to audit-ready standard for ISO27001 and SOC 2.

Skills

SOC Experience
SIEM Expertise
Threat Detection
Incident Response
Dashboard Creation

Education

Bachelor's degree in CS/IT

Tools

Splunk
ELK/OpenSearch
Microsoft Sentinel
Qualys/Tenable

Job description

Rubiscape’s platform processes sensitiveenterprise data and powers business-critical decisions for customers inbanking, insurance, manufacturing, and government — making continuous securitymonitoring non-negotiable. As a SecOps Analyst, you will be the first line ofdetection and response for threats across Rubiscape’s SaaS infrastructure,internal systems, and customer-facing platform. You will operate the SIEM,investigate alerts, and work with the security engineering team toprogressively automate response playbooks, raising Rubiscape’s mean time todetect and respond with every quarter.

Key Responsibilities
  • Monitor SIEM dashboards (Splunk/ ELK) and triage security alerts across cloud infrastructure, applicationlogs, and endpoint telemetry; elevate confirmed incidents per runbook.
  • Conduct first-responseinvestigation and containment for security incidents including accountcompromise, data exfiltration attempts, malware, and DDoS events.
  • Maintain and improve detectionrules, correlation searches, and alert thresholds in the SIEM; reducefalse-positive rate while increasing signal fidelity for Rubiscape-specificthreat patterns.
  • Operate vulnerabilitymanagement workflows: ingest scanner output (Qualys, Tenable, or equivalent),track remediation status, and report SLA compliance to security engineering.
  • Contribute to threatintelligence enrichment — mapping IOCs and TTPs from CERT-IN advisories, ISACs,and threat feeds to Rubiscape’s detection coverage.
  • Document incident timelines,evidence chains, and post-incident reports to audit-ready standard for ISO27001 and SOC 2 evidence requirements.
  • Participate in tabletopexercises and red team/blue team drills to validate detection and responsecapabilities.
Nice to Have
  • Certifications: CompTIASecurity+, CySA+, or GIAC GCIH / GCFE.
  • Experience with SOAR platforms(Palo Alto XSOAR, Splunk SOAR) and writing automated response playbooks.
  • Familiarity with CERT-INempanelled auditor processes and incident reporting obligations under Indianregulatory frameworks.
  • Exposure to cloud-nativesecurity tooling (AWS GuardDuty, Azure Defender, GCP Security Command Center)in an operational monitoring context.
About Rubiscape

Rubiscape is India’s leading DecisionIntelligence Platform, unifying data engineering, BI, machine learning, andagentic AI in a single governed platform. Built in Pune and trusted by Fortune500 enterprises across BFSI, manufacturing, healthcare, and government. 8international innovation patents. 10 Industry-Academia Labs & COEs. From BIto AI — One Platform. Every Decision.

Requirements
  • 2+ years of experience in aSecurity Operations Centre (SOC) or security monitoring role.
  • Hands-on experience with SIEMplatforms (Splunk, ELK/OpenSearch, Microsoft Sentinel, or equivalent) includingquery authoring and dashboard creation.
  • Solid understanding of attackframeworks (MITRE ATT&CK) and common attacker TTPs relevant to cloud-hostedSaaS platforms.
  • Experience with vulnerabilitymanagement tools and ability to assess and prioritise CVEs in the context of acloud-native application stack.
  • Ability to analyse networktraffic, application logs, and endpoint telemetry to reconstruct attack chainsand determine blast radius.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Application Security Engineer (AppSec)
Application Security Engineer (AppSec)

Rubiscape • Pune District

On-site
INR 2,500,000 - 3,800,000
Cloud Security Engineer
Cloud Security Engineer

Rubiscape • Pune District

On-site
INR 1,200,000 - 2,000,000
Compliance & GRC Engineer
Compliance & GRC Engineer

Rubiscape • Pune District

On-site
INR 1,800,000 - 2,400,000
Cloud Infrastructure Engineer
Cloud Infrastructure Engineer

Rubiscape • Pune District

On-site
INR 2,000,000 - 4,000,000
Security Operations Engineer
Security Operations Engineer

NextGenEnergyJobs • Bengaluru

On-site
INR 2,500,000 - 5,200,000
Flexible time off
Wellness resources
Team events
Security Operations Center Analyst - L2 || Mumbai || Only Immediate Joiner
Security Operations Center Analyst - L2 || Mumbai || Only Immediate Joiner

Innova ESI • Mumbai

On-site
INR 800,000 - 1,200,000
Senior Information Security Engineer
Senior Information Security Engineer

Rubrik • Bengaluru

On-site
INR 1,500,000 - 2,500,000
SOC / Security Operations Lead
SOC / Security Operations Lead

One97 Communications Limited • Dadri

On-site
INR 3,000,000 - 6,000,000
Security Analyst
Security Analyst

Access Healthcare • Zone 7 Ambattur

On-site
INR 1,200,000 - 2,100,000
SOC Specialist
SOC Specialist

METRO Global Solution Center IN • Maharashtra

On-site
INR 1,500,000 - 2,300,000