Security Operations Analyst

SpectraMedix

Gurugram District

Hybrid

INR 600,000 - 1,000,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

A healthcare analytics firm in Gurugram is seeking a Security Operations Analyst to oversee day-to-day security operations and respond to security alerts. The ideal candidate will have 2-4 years of experience in security operations, possess strong analytical and communication skills, and be familiar with monitoring tools like Sophos and Azure Monitor. This role requires working collaboratively and documenting responses to incidents, contributing to a secure healthcare environment.

Qualifications

  • 2–4 years of experience in security operations or incident response roles.
  • Hands-on experience monitoring and responding to security alerts.
  • Familiarity with endpoint detection and response (EDR) and SIEM tools.

Responsibilities

  • Monitor, triage, and investigate security alerts generated by security tools.
  • Act as the first responder for confirmed security events.
  • Maintain accurate incident records and document findings.

Skills

Security Operations
Incident Response
Monitoring Security Alerts
Analytical Skills
Communication Skills

Tools

Sophos
Azure Monitor
Windows Server
Linux

Job description

SpectraMedix named top value-based contract analytics solution provider by Healthcare Tech Outlook >> Learn More

About Us

SpectraMedix is at the forefront of transforming healthcare, empowering health plans and health systems with the tools and insights they need to provide better, more cost-effective care to the communities they serve. Our cutting-edge platform delivers advanced analytics that help organizations excel in the transition to new value-based payment (VBP) models.

By combining advanced technology with a team of seasoned experts, we provide a unique solution tailored to meet the needs of the healthcare industry during this critical phase of value-based care evolution. Our platform is strategically designed to guide health plans, accountable care organizations, and health systems in their journey toward achieving success in value-based payment initiatives.

We are committed to creating an environment where innovation thrives, employees are empowered to drive meaningful change, and every team member plays a key role in reshaping the value and quality equation in healthcare. Our organization’s long-term stability is grounded in this commitment, and we prioritize our employees' growth, well-being, and success as the foundation for a thriving future—both for them and for the communities we serve.

Our Values

Diversity & Inclusivity

At Spectramedix, we believe that diversity drives innovation and inclusivity fosters collaboration. We are committed to creating a workplace where everyone feels valued, respected, and empowered to bring their authentic selves to work. We celebrate diverse perspectives and are dedicated to providing equal opportunities for all, regardless of race, gender, age, disability, or background. Join us in building a culture of belonging and mutual respect.

What we are looking for

The Security Operations Analyst is a member of the IT Infrastructure & Security Department. This role is responsible for day-to-day security operations, security event analysis, and incident response execution across SpectraMedix’ on-premises, co-located datacenter and Microsoft Azure cloud tenant. The Security Operations Analyst works closely with the IT Security Analyst and reports to the CISO/VP, Information Technology & Security. This position serves as the primary responder to security alerts, including endpoint protection alerts, server and system events, and reported intrusion/phishing attempts. The Security Operations Analyst performs alert triage, investigation, containment actions, and escalation in accordance with documented runbooks and the System Security Plan.

Location: Gurugram (Hybrid)

Roles & Responsibilities
Security Monitoring & Incident Response
  • Monitor, triage, and investigate security alerts generated by security tools (e.g., Sophos, Azure Monitor, Log360, server OS and application logs)
  • Act as the first responder for confirmed security events, including malware detections, suspicious logins, anomalous system behavior, and phishing reports
  • Perform containment actions (e.g., isolate endpoints, disable accounts, block indicators) following approved procedures
  • Escalate incidents to the IT Security Analyst or Incident Response team with documented findings and evidence
  • Maintain accurate incident records, timelines, and response actions in incident tracking systems
Operational Security Tasks
  • Execute daily, weekly, monthly, quarterly, and annual security operational tasks as defined in the System Security Plan and security runbooks
  • Review endpoint, server, and system logs for indicators of compromise or policy violations
  • Validate vulnerability scan results and assist with remediation tracking
  • Assist with access reviews, security control verification, and operational evidence collection
Phishing & User-Reported Events
  • Analyze reported phishing emails and user-submitted security issues or concerns
  • Determine legitimacy, remove malicious content, and take corrective action (e.g., user guidance, IOC blocking)
  • Track phishing trends and recurring patterns for reporting to the security team
Collaboration & Escalation
  • Work closely with IT infrastructure, DevOps, data management and application development teams during incident investigations and remediation
  • Support the IT Security Analyst during audits, assessments, and tabletop exercises by providing operational evidence
  • Follow defined escalation paths and incident severity classifications
Continuous Improvement
  • Provide feedback on alert quality, false positives, and detection gaps
  • Contribute to improving SOC procedures and runbooks, incident response procedures, and alert tuning
  • Stay current on common attack techniques, indicators, and defensive best practices relevant to healthcare data environments
Profile
  • 2–4 years of experience in security operations, SOC, or incident response roles
  • Hands-on experience monitoring and responding to security alerts
  • Familiarity with endpoint detection and response (EDR), SIEM, and log monitoring tools
  • Working knowledge of: Networking items (TCP/IP, DNS, HTTPS, SSH, SFTP). Authentication and access control concepts. Intrusion detection, malware, phishing, and common attack techniques
  • Experience working within documented procedures and escalation models
Preferred Certifications
  • CompTIA Security+
  • CompTIA CySA+
  • Certified SOC Analyst (CSA)
  • Equivalent entry-to-mid-level security certifications
Tools & Technologies
  • Endpoint Protection / EDR: Sophos
  • Logging & Monitoring: Azure Monitor, Qualys, ManageEngine Endpoint Central, Log360
  • Infrastructure & OS: Windows Server, Linux
  • Cloud Platforms: Microsoft Azure
  • Ticketing / Incident Tracking Systems
Non-Technical / Behavioral Competencies
  • Must have worked with US based clients in onsite/off shore delivery model
  • Strong verbal and written communication, technical articulation, listening, and presentation skills are essential
  • Should have proven analytical and problem-solving skills
  • Demonstrated expertise in prioritization, time management, and stakeholder management (both internal and external) is necessary
  • Should be a quick learner, self-starter, proactive, and an effective team player
  • Must have experience working under tight deadlines within a matrix organizational structure

Please email your resume to sohail.kapoor@spectramedix.com to apply

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Sr. IT Support Engineer
Sr. IT Support Engineer

SpectraMedix • Hyderabad

Hybrid
INR 800,000 - 1,200,000
Security Analyst (Cyber Defense Analyst)
Security Analyst (Cyber Defense Analyst)

Jobgether • India

On-site
INR 1,700,000 - 2,400,000
Health insurance
Paid time off
Flexible work
+6
Security Operations Engineer
Security Operations Engineer

NextGenEnergyJobs • Bengaluru

On-site
INR 2,500,000 - 5,200,000
Flexible time off
Wellness resources
Team events
Security Architect
Security Architect

Accenture • Mumbai

On-site
INR 3,500,000 - 5,500,000
Data Analyst
Data Analyst

SpectraMedix • Gurugram District

Hybrid
INR 600,000 - 900,000
Managed Services Analyst, MXDR
Managed Services Analyst, MXDR

Check Point Software • Bengaluru

On-site
INR 800,000 - 1,400,000
Managed Services Analyst, MXDR
Managed Services Analyst, MXDR

Check Point Software • Bengaluru Urban

On-site
INR 1,200,000 - 1,500,000
Senior IT Security Analyst
Senior IT Security Analyst

Redient Security • Pune District

On-site
INR 1,200,000 - 1,600,000
Security Analyst
Security Analyst

Persistent Systems • Bengaluru

Hybrid
INR 1,500,000 - 2,300,000
Hybrid work
Flexible work hours
Long Service awards
+3
Security Analyst II, Splunk
Security Analyst II, Splunk

Cyderes • India

On-site
INR 900,000 - 1,500,000
Medical Insurance
Hybrid Work Model
Paid Time Off
+1