Senior Security Analyst-GSOC

Arete Advisors

Hyderabad

On-site

INR 1,800,000 - 2,400,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Medical/Dental benefits
Life/Disability Insurance
401(k) and retirement benefits

Job summary

Arete Incident Response in Hyderabad, India, is seeking a Senior Security Analyst to monitor and respond to security incidents within client environments. You will review alerts, perform containment, and collaborate with Forensics and Tiger Team for threat hunting and remediation.

The role requires strong EDR experience, malware analysis, and scripting skills; you will interact with clients and support incident response lifecycle stages in a fast-paced SOC.

Qualifications

  • Bachelor's degree in IT security or related field; 6+ years of experience.
  • Strong understanding of EDR tools and investigations.
  • Experience with threat intelligence and malware analysis.
  • Proficient in PowerShell and Python scripting.

Responsibilities

  • Review alerts and implement containment measures.
  • Analyze payloads and escalate to appropriate teams.
  • Collaborate on threat hunting using IoCs/TTPS.
  • Manage client tasks in ConnectWise Manage.

Skills

EDR expertise
Threat hunting
PowerShell
Python scripting
Malware analysis
Forensics
Incident response
SentinelOne
JoeSandbox

Education

Bachelor's or higher in IT security

Tools

SentinelOne
JoeSandbox
Carbon Black
CrowdStrike
ConnectWise Manage

Job description

## Senior Security Analyst-GSOCApplylocations: Hyderabad, Indiatime type: Full timeposted on: Posted 3 Days Agojob requisition id: REQ-2026-1310**ROLES & RESPONSIBILITIES*** Reviews alerts generated by SentinelOne and implement appropriate containment and mitigation measures* Analyzes payloads using JoeSandbox and escalates to the appropriate team as necessary* Collaborates with the Forensics team to conduct threat hunting using identified Indicators of Compromise (IoCs) and Tactics, Techniques, and Procedures (TTPs)* Assists the Tiger Team in targeted collections of systems based on identified malicious activities in the client's environment* Conducts historical log reviews to support threat hunting efforts and ensures all malicious artifacts are mitigated in the SentinelOne console* Examines client-provided documents and files to supplement the SOC investigation and mitigation strategy* Stays up to date on the latest Threat Actor Tactics, Techniques and Procedures (TTPs)* Conducts perimeter scans of client infrastructure and reports any identified vulnerabilities to the Tiger Team for appropriate escalation* Manages client-related tasks within the ConnectWise Manage ticketing system as part of the Client Handling Lifecycle* Creates user accounts in SentinelOne console for the client* Generates Threat Reports showcasing activity observed within the SentinelOne product* Execute passphrase exports as needed for client offboarding* Submit legacy installer requests to ensure the team is properly equipped for deployment* Provides timely alert notifications to the IR team of any malicious activity impacting our clients* Assists with uninstalling/migrating SentinelOne* Generates Ranger reports to provide needed visibility into client environments* Manages and organizes client assets (multi-site and multi-group accounts)* Applies appropriate interoperability exclusions relating to SentinelOne and client applications* Performs SentinelOne installation / interoperability troubleshooting as needed* Contributes to the overall documentation of SOC processes and procedures* Investigates alerts escalated by Analysts (Tier I – Tier II)* Escalates alerts to Tier IV as necessary* Investigates alerts generated via custom rulesets* Attends client calls to provide updates related to alerts seen on a client network, as needed* Develops custom SentinelOne interoperability exclusion(s) on client request* Contributes to the tuning and recommendation as it relates to the custom rulesets* Participates in “Handler on Duty (HOD) shifts” as assigned to support the Tiger Team(s) client matters* Develops internal Training/Process Documentation* Contributes ideas or helps build innovations to increase SOC efficiencies* Performs client external EDR/EPP threat hunts (Carbon Black, CrowdStrike, etc.)* May perform other duties as assigned by management**SKILLS AND KNOWLEDGE*** Advanced understanding of Windows and Unix operating systems* Thorough knowledge of EDR capabilities and investigations* Advanced understanding of Digital Forensics and Incident Response practices* Comprehensive analysis techniques for reviewing large datasets in various formats* Strong analytical and problem-solving skills* Demonstrated experience in threat intelligence and research* Demonstrated experience in malware analysis and reverse engineering* Expertise in PowerShell and Python scripting languages* Thorough understanding of TCP/IP and OSI Model concepts* Thorough understanding of the Incident Response Life Cycle stages (Preparation, Identification, Containment, Eradication, Recovery, and Lessons Learned)* Thorough understanding of the MITRE ATT&CK framework* Proven ability to work independently and solve complex problems with little direction from management.* Highly detail-oriented and committed to producing quality work**JOB REQUIREMENTS*** Bachelor's Degree and 6+ years of IT security related experience or Master's or Advanced Degree and 5+ years related experience* Expert experience with Endpoint Detection and Response (EDR) toolsets* Advanced experience working on a SOC/CIRT team* Ability to communicate in both technical and non-technical terms both oral and written* 2+ Information Security Certifications (GIAC, Offensive Security, EC-Council, ISC2) preferred**DISCLAIMER**The above statements are intended to describe the general nature and level of work being performed. They are not intended to be an exhaustive list of all responsibilities, duties and skills required personnel so classified.**WORK ENVIRONMENT**While performing the responsibilities of this position, the work environment characteristics listed below are representative of the environment the employee will encounter: Usual office working conditions. Reasonable accommodation may be made to enable people with disabilities to perform the essential functions of this job.**PHYSICAL DEMANDS*** No physical exertion required* Travel within or outside of the state* Light work: Exerting up to 20 pounds of force occasionally, and/or up to 10 pounds of force as frequently as needed to move objects**TERMS OF EMPLOYMENT**Salary and benefits shall be paid consistent with Arete salary and benefit policy.**FLSA OVERTIME CATEGORY**Job is exempt from the overtime provisions of the Fair Labor Standards Act.**DECLARATION**The Arete Incident Response Human Resources Department retains the sole right and discretion to make changes to this job description.**EQUAL EMPLOYMENT OPPORTUNITY**We’re proud to be an equal opportunity employer- and celebrate our employees’ differences, regardless of race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, or Veteran status. Different makes us better.Arete Incident Response is an outstanding (and growing) company with a very dedicated, fun team. We offer competitive salaries, fully paid benefits including Medical/Dental, Life/Disability Insurance, 401(k) and the opportunity to work with some of the latest and greatest in the fast-growing cyber security industry. When you join Arete... You’ll be doing work that matters alongside other talented people, transforming the way people, businesses, and things connect with each other. Of course, we will offer you great pay and benefits, but we’re about more than that. Arete is a place where you can craft your own path to greatness. Whether you think in code, words, pictures or numbers, find your future at Arete, where experience matters. Equal Employment Opportunity We’re proud to be an equal opportunity employer- and celebrate our employees’ differences, regardless of race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, or Veteran status. Different makes us better.### About UsArete Incident Response is an elite team of the world’s leading cybersecurity and digital forensics experts who combat today’s sophisticated cyberattacks. We work tirelessly to provide unparalleled capabilities and solutions throughout the entire cyber incident life cycle. These include incident response readiness assessments and penetration tests as well as post-incident response, remediation, containment, and eradication services.We work in close collaboration with industry leaders and government agencies along with leading cybersecurity technology platforms to deliver an innovative, intelligence-based approach to solving our client’s toughest challenges.If you want to work with the most talented and experienced people in the industry with the desire to be a cyber hunter and industry expert, we want you to be a part of our team.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

MSS Tech Support Engineer - Intern
MSS Tech Support Engineer - Intern

Arete Advisors, LLC • Hyderabad

On-site
INR 450,000 - 750,000
Medical/Dental benefits
Life/Disability Insurance
401(k)
Regional Sales Manager III - Remote
Regional Sales Manager III - Remote

Arete • Chennai District

On-site
INR 2,000,000 - 4,000,000
Medical/Dental benefits
Life/Disability Insurance
401(k) plan
MSS Tech Support Engineer - Intern
MSS Tech Support Engineer - Intern

Arete • Hyderabad

On-site
INR 400,000 - 640,000
MSS Tech Support Engineer - Intern
MSS Tech Support Engineer - Intern

Arete Technology • Hyderabad

On-site
INR 600,000 - 900,000
Medical/Dental benefits
Life/Disability Insurance
401(k)
MSS Tech Support Engineer - Intern
MSS Tech Support Engineer - Intern

Areteir • Hyderabad

On-site
INR 550,000 - 750,000
Junior Engineer
Junior Engineer

lyric.ai • Hyderabad

Hybrid
INR 1,000,000 - 1,600,000
AVP Cybersecurity
AVP Cybersecurity

Ares Management • Mumbai

On-site
INR 4,500,000 - 7,500,000
Sr. SOC Analyst
Sr. SOC Analyst

Ferfier Technologies • Dadri

Hybrid
INR 1,500,000 - 2,100,000
Flexible/Remote work
Senior Incident Response Analyst
Senior Incident Response Analyst

Nopal Cyber, LLC. • Hyderabad

On-site
INR 1,500,000 - 2,800,000
Sr. Security Operations Analyst
Sr. Security Operations Analyst

Simfluent • Dadri

On-site
INR 1,200,000 - 1,800,000