Security Operations Analyst

Securonix

Maharashtra

On-site

INR 700,000 - 1,200,000

Full time

43 hours ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Health Insurance
Personal Accident Insurance
Term Life Insurance

Job summary

Securonix is seeking a Security Operations Analyst to monitor, analyze, and respond to security events across the organization. The role collaborates with SOC, IT, and engineering teams to protect assets and investigate incidents.

The ideal candidate is analytical, detail-oriented, and experienced with SIEM technologies and incident response, with a focus on continuous improvement and threat detection.

Qualifications

  • Experience with SIEM technologies (Splunk, Sentinel, Elastic, QRadar, etc.).
  • Knowledge of endpoint protection/EDR tools (CrowdStrike, Defender, SentinelOne).
  • Familiarity with cloud platforms (AWS) and their security controls.
  • Understanding of networking, TCP/IP, DNS, firewalls, and proxy logs.
  • Ability to analyze logs, correlate events, and investigate anomalies.
  • Ability to create policies / Use Cases

Responsibilities

  • Monitor SIEM, EDR, NDR, IAM, and cloud security platforms for suspicious activity.
  • Triage alerts to determine severity, scope, and potential impact.
  • Correlate events across tools to identify indicators of compromise (IOCs).
  • Document findings and escalate incidents as required.
  • Execute initial containment and remediation actions based on runbooks.
  • Gather evidence: logs, network traffic, system data, threat intel.
  • Assist in root cause analysis and post-incident reviews.
  • Coordinate with Security Engineers, IT, and application teams during incidents.
  • Assist in tuning detection rules to reduce false positives.
  • Conduct periodic threat hunts based on emerging threats or MITRE ATT&CK frameworks.
  • Identify gaps in visibility and recommend improvements.
  • Review threat intel feeds and correlate with internal telemetry.
  • Update IOCs, detection signatures, and enrichment sources.
  • Track trends, threat actor tactics, and industry-specific risks.
  • Support maintenance of SIEM, SOAR, EDR, and cloud security tools.
  • Validate log ingestion and data quality across security platforms.
  • Collaborate on automation opportunities to reduce analyst workload.
  • Maintain accurate incident tickets, timelines, and reporting metrics.
  • Update runbooks, playbooks, and knowledge base articles.
  • Prepare summaries for leadership on major incidents and trends.
  • Weekly and Monthly reports

Skills

SIEM technologies
Endpoint protection/EDR
Cloud security
Networking basics
Log analysis
Use Case creation
Incident response
Threat hunting
Documentation

Tools

Splunk
Sentinel
Elastic
QRadar
CrowdStrike
Defender
SentinelOne

Job description

Securonix is leading the transformation of cybersecurity by helping organizations stay ahead of modern threats. Security teams are no longer constrained by data or tools. They are constrained by speed, clarity, and confidence. Securonix was built to close that gap. Our mission is to enable security teams to decide and act faster across the entire threat lifecycle.

The Securonix Unified Defense SIEM is the industry’s first platform powered by agentic AI and designed with a human-in-the-loop philosophy. It unifies detection, investigation, and response in a single system. Advanced UEBA delivers deep behavioral insight across users, entities, and data. Native threat intelligence continuously enriches detections and investigations with real-world context. AI reinforces every layer of the platform while keeping accountability with the security team.

Built cloud-native for scale and performance, the platform enables real-time analytics, deep investigation, and automated response without compromise. Analysts gain faster access to relevant signals. Investigations move from days to minutes. Response becomes consistent and measurable. The result is a CyberOps experience that scales as threats evolve.

Securonix is recognized as a six-time Leader in the Gartner Magic Quadrant for SIEM and a Customers’ Choice on Gartner Peer Insights. The company has been featured by leading publications including WIRED, Dark Reading, and Fortune for its innovation and leadership in security operations. Organizations rely on the platform for always-available data, rapid search and investigation, continuously updated threat content, and a fully integrated Threat Detection, Investigation, and Response experience.

Backed by Vista Equity Partners, one of the world’s leading enterprise software investors, Securonix benefits from deep operational expertise and a long-term commitment to innovation and growth. This partnership strengthens our ability to scale the platform, accelerate product execution, and support customers as their security needs evolve.

With more than 1,000 customers worldwide, including a meaningful portion of the Fortune 100, Securonix operates at global scale. Our ecosystem of partners and managed security service providers extends that reach, helping organizations deploy and operate with confidence wherever they do business. What drives us is how we work.

We win as one team. We operate with trust, respect, and shared accountability. We are customer driven. Innovation is guided by real security challenges and measurable outcomes. We act with agility. Change is constant, and we stay aligned on purpose while adapting fast.

Position Summary

The Security Operations Analyst is responsible for monitoring, analyzing, and responding to security events and incidents across the organization. This role plays a key part in protecting enterprise assets by identifying threats, investigating suspicious activity, and executing response actions in collaboration with SOC, IT, and engineering teams. The ideal candidate is analytical, detail-oriented, and passionate about cybersecurity operations.

Key Responsibilities
Security Monitoring & Alert Triage
  • Monitor SIEM, EDR, NDR, IAM, and cloud security platforms for suspicious activity.
  • Triage alerts to determine severity, scope, and potential impact.
  • Correlate events across tools to identify indicators of compromise (IOCs).
  • Document findings and escalate incidents as required.
Incident Response
  • Execute initial containment and remediation actions based on runbooks.
  • Gather evidence: logs, network traffic, system data, threat intel.
  • Assist in root cause analysis and post-incident reviews.
  • Coordinate with Security Engineers, IT, and application teams during incidents.
Threat Detection & Hunting
  • Assist in tuning detection rules to reduce false positives.
  • Conduct periodic threat hunts based on emerging threats or MITRE ATT&CK frameworks.
  • Identify gaps in visibility and recommend improvements.
Threat Intelligence
  • Review threat intel feeds and correlate with internal telemetry.
  • Update IOCs, detection signatures, and enrichment sources.
  • Track trends, threat actor tactics, and industry-specific risks.
Security Tools & Platform Operations
  • Support maintenance of SIEM, SOAR, EDR, and cloud security tools.
  • Validate log ingestion and data quality across security platforms.
  • Collaborate on automation opportunities to reduce analyst workload.
Documentation & Reporting
  • Maintain accurate incident tickets, timelines, and reporting metrics.
  • Update runbooks, playbooks, and knowledge base articles.
  • Prepare summaries for leadership on major incidents and trends.
  • Weekly and Monthly reports
Required Qualifications
Technical Skills
  • Experience with SIEM technologies (Splunk, Sentinel, Elastic, QRadar, etc.).
  • Knowledge of endpoint protection/EDR tools (CrowdStrike, Defender, SentinelOne).
  • Familiarity with cloud platforms (AWS) and their security controls.
  • Understanding of networking, TCP/IP, DNS, firewalls, and proxy logs.
  • Ability to analyze logs, correlate events, and investigate anomalies.
  • Ability to create policies / Use Cases
Security Knowledge
  • Understanding of common attack techniques (MITRE ATT&CK).
  • Knowledge of malware behavior, phishing, identity-based attacks, and lateral movement.
  • Awareness of security frameworks (NIST CSF, ISO 27001).
Soft Skills
  • Strong communication and documentation abilities.
  • Ability to work in fast-paced, high-pressure environments.
  • Analytical mindset with strong attention to detail.
  • Team-oriented with a willingness to learn and grow.
Preferred Qualifications
  • Security certifications: Security+, CySA+, GSEC, CEH, GCIA, or similar.
  • Experience in a 24×7 SOC.
  • Scripting/automation skills (Python, PowerShell, Bash).
Benefits

As a full-time employee with Securonix, you will be eligible for the following employee benefits:

  • Health Insurance with a total sum insured is INR 7,50,000
  • Coverage: Self, Spouse, 2 kids, Dependent parents, or parents-in-law
  • Personal Accident with total sum insured is INR 10,00,000
  • Term Life Insurance with a sum assured for employees is 5 times fixed base pay is covered.

Securonix provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, gender, sexual orientation, gender identity, national origin, age, disability, genetic information, marital status, amnesty or status as a covered veteran in accordance with applicable federal, state and local laws. Securonix complies with applicable state and local laws governing non-discrimination in employment in every location in which the company has facilities. This policy applies to all terms and conditions of employment, including hiring, placement, promotion, termination, layoff, recall, and transfer, leaves of absence, compensation and training.

Securonix expressly prohibits any form of unlawful employee harassment based on race, color, religion, gender, sexual orientation, national origin, age, genetic information, disability or veteran status. Improper interference with the ability of Securonix employees to perform their expected job duties is absolutely not tolerated.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Operations Analyst
Security Operations Analyst

Securonix • Pune District

On-site
INR 1,200,000 - 2,100,000
Health Insurance
Family coverage
Personal accident insurance
+1
Senior Software Engineer
Senior Software Engineer

Securonix • Pune District

On-site
INR 2,000,000 - 3,000,000
Health Insurance
Term Life Insurance
Personal Accident Insurance
Senior Software Engineer
Senior Software Engineer

Securonix • Maharashtra

On-site
INR 1,500,000 - 2,100,000
Health Insurance
Personal Accident Insurance
Term Life Insurance
SIEM Engineer I
SIEM Engineer I

Securonix • Mumbai

On-site
INR 1,500,000 - 2,100,000
Health Insurance
Personal Accident Insurance
Term Life Insurance
SIEM Engineer II
SIEM Engineer II

Securonix • Mumbai

On-site
INR 900,000 - 1,300,000
Health Insurance with sum insured INR
Personal Accident Insurance
Term Life Insurance
+1
Staff Software Engineer - I
Staff Software Engineer - I

Securonix • Maharashtra

On-site
INR 4,000,000 - 6,000,000
Health Insurance
Personal Accident Insurance
Term Life Insurance
Software Engineer (Java)
Software Engineer (Java)

Securonix • Pune District

On-site
INR 1,200,000 - 1,800,000
Health Insurance
Term Life Insurance
Personal Accident Insurance
+1
Software Engineer
Software Engineer

Securonix • Pune District

On-site
INR 900,000 - 1,300,000
Health Insurance
Gym stipend
Life Insurance
+1
Staff Software Engineer (Java & Agentic AI)
Staff Software Engineer (Java & Agentic AI)

Securonix • Bengaluru

On-site
INR 4,000,000 - 7,000,000
Health Insurance
Family Coverage
Personal Accident Insurance
+1
Senior Software Engineer (Java & Agentic AI)
Senior Software Engineer (Java & Agentic AI)

Securonix • Bengaluru

On-site
INR 2,100,000 - 3,600,000
Health Insurance
Life Insurance
Personal Accident
+1