Sr. Analyst - MDR | On-site, Bangalore

Optiv Security India Private Limited

Bengaluru

On-site

INR 1,800,000 - 2,800,000

Full time

9 days ago
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Optiv Security India Private Limited in Bengaluru is seeking a Senior SOC-MDR Analyst to provide deep-level security investigations across client environments. The role requires rotating day, mid, and night shifts in a 24/7 operation and collaboration with managers, engineers, and threat analysts.

The ideal candidate has 6+ years in cybersecurity, strong SIEM/EDR/SOAR experience, and expertise in MITRE ATT&CK, with excellent communication skills and the ability to work across local and

Qualifications

  • 6+ years of operational experience assessing, reviewing, and remediating cybersecurity vulnerabilities and risks.
  • Knowledge of threats and risks from third-party software, vendor environments, and networks.
  • Familiarity with CVEs, CVSS scores, and compensating controls.
  • Strong understanding of information security frameworks and best practices.
  • Proficient in Windows and/or Linux operating systems.
  • Experience with SIEM, EDR, and SOAR technologies; cloud familiarity (AWS/Azure).
  • Excellent written and spoken English; professional client communication.

Responsibilities

  • Perform security monitoring and incident response across client networks using diverse tools.
  • Conduct proactive threat hunting and incident investigations; document activities clearly.
  • Review junior analysts' investigations to ensure quality and consistency.
  • Develop repeatable methods for detecting malicious activity across environments.
  • Recommend improvements to detection, protection, and SOPs; present to technical and non-technical audiences.
  • Support 24/7 operations; rotate through day, mid, and night shifts as needed.
  • Mentor teammates and expand the team’s capabilities through continuous learning.

Skills

Operational cybersecurity experience
SIEM knowledge (Splunk, QRadar)
EDR expertise (CrowdStrike)
SOAR platforms (Palo Alto Cortex)
MITRE ATT&CK familiarity
Cloud technologies (AWS, Azure)
English communication
24/7 shift support

Tools

Splunk
QRadar
CrowdStrike
Palo Alto Cortex

Job description

This position will be on-site reporting to our Bangalore office, M-F. This team provides 24/7 support. This role requires shift flexibility, including the ability to rotate between days, mids, and nights. As a Senior SOC-MDR Analyst, you will provide deep-level analysis for security investigations using a wide range of customer-provided data sources, audit, and monitoring tools at both local and enterprise levels. You will collaborate closely with Managers, Technology Engineers, Architects, and Threat Analysts to deliver exceptional security services to our clients. This in-office position is dedicated exclusively to a single client account and requires flexibility to rotate through day, mid, and night shifts as part of our 24/7 support team.

How You'll Make an Impact
  • Perform duties within a geographically dispersed team, ensuring situational awareness and keeping local team members informed and up-to-date
  • Perform security monitoring and incident response activities across client networks using various tools and techniques
  • Detect incidents through proactive “hunting” across security-relevant data sets using multiple tools and technologies
  • Thoroughly document incident response analysis activities
  • Review investigations conducted by junior analysts to ensure quality standards
  • Develop new, repeatable methods for identifying malicious activity across networks
  • Recommend enhancements to detection and protection capabilities; propose updates to Standard Operating Procedures (SOPs)
  • Present technical topics to both technical and non-technical audiences
  • Develop and follow detailed operational processes and procedures to appropriately analyze, elevate, and assist in the remediation of information security incidents
  • Prioritize multiple high-priority tasks and formulate responses with recommendations to customers and team members in a fast-paced environment
  • Continually develop new technical skills; push to expand and improve overall team capabilities, engage with and mentor other team members
  • Demonstrate understanding of attack methodologies, malware analysis, malicious toolkits, and how those may manifest across various environments and security technologies
  • Understand complex adversary emulation concepts
  • Support advanced use case design for insider threats, operational, threat detection, and response
  • Review defensive and detective controls to reduce client attack surface
What We're Looking For
  • 6+ years operational experience assessing, reviewing, and remediating cybersecurity vulnerabilities and risks
  • Knowledge of cybersecurity threats and risks associated with third-party software vulnerabilities, vendor computing environments, end user systems, and network and server technologies
  • Experience with CVE’s, CVSS scores, and understanding of compensating controls and mitigating factors
  • Familiarity with Information Security frameworks, guidelines, and best practices
  • Strong working knowledge of Windows and/or Linux operating systems
  • Expertise in cybersecurity controls, Security Event and Information Management (SIEM - Splunk & QRadar) and Endpoint Detection and Response (EDR - CrowdStrike) technologies, and experience with Security Orchestration, Automation, and Response (SOAR - Palo Alto Cortex) platforms.
  • Ability to interact professionally with personnel at all levels
  • Excellent problem-solving and analytical skills; passion for data analysis
  • Team player, able to collaborate with local and remote team members to support uninterrupted mission operations
  • Expertise in the cyber threat landscape; in depth knowledge of current adversarial tactics and techniques; a thorough understanding of the security controls and/or telemetry data available to detect malicious activity; well-versed in cyber security incident response terminology and best practices
  • Ability to support moderate to complex cyber investigations using multiple tools (including endpoints, User and Entity Behavior Analytics (UEBA), public cloud, Software as a Service (SaaS), and packet analysis)
  • Experience conducting threat response activities such as quarantining hosts and other common response playbook measures
  • Ability to apply threat intelligence to improve detection and response capabilities
  • Extensive experience with alert triage and endpoint investigations using EDR
  • Experience performing malware detection and analysis procedures (does not include reverse engineering)
  • Expertise in MITRE ATT&CK framework and common attack tactics used by threat actors
  • Ability to recommend tuning of security alerts, tools, and use cases to enhance detection accuracy and reduce false positives
  • Knowledge of AWS, Azure, and cloud technologies
  • Basic fraud and insider threat investigation skills
  • Proficient in writing and speaking English; must possess professional communication skills, verbal and written, for meetings with client leadership
  • The role requires to support in 24/7 shifts, preferrable US hours. This position requires reporting to the Bangalore office during shift working hours throughout the week.
What you can expect from Optiv
  • A company committed to our inclusive value through our Employee Resource Groups
  • Work/life balance
  • Professional training resources
  • Creative problem-solving and the ability to tackle unique, complex projects
  • Volunteer Opportunities.
  • “Optiv Chips In” encourages employees to volunteer and engage with their teams and communities.
  • The ability and technology necessary to productively work remotely/from home (where applicable)
EEO Statement

Optiv is an equal opportunity employer. All qualified applicants for employment will be considered without regard to race, color, religion, sex, gender identity or expression, sexual orientation, pregnancy, age 40 and over, marital status, genetic information, national origin, status as an individual with a disability, military or veteran status, or any other basis protected by federal, state, or local law. Optiv respects your privacy. By providing your information through this page or applying for a job at Optiv, you acknowledge that Optiv will collect, use, and process your information, which may include personal information and sensitive personal information, in connection with Optiv’s selection and recruitment activities. For additional details on how Optiv uses and protects your personal information in the application process, click here to view our Applicant Privacy Notice. If you sign up to receive notifications of job postings, you may unsubscribe at any time. We work alongside clients to manage cyber risk and equip them with perspectives and programs to accelerate business progress. Our real-world experience, deep vertical expertise and diverse teams enable us to face any challenge with confidence. We put you at the center of our unmatched ecosystem of people, products, partners and programs to design and implement agile solutions. Our adaptive approach continually assesses risk in the context of cyber and broader objectives to secure today's business and fortify it for the future. At Optiv, we manage cyber risk so you can secure your full potential.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Principal Analyst - SOC | On-site, Bangalore
Principal Analyst - SOC | On-site, Bangalore

Optiv • Bengaluru

On-site
INR 4,200,000 - 6,200,000
Volunteer Opportunities
Remote work options
Sr. Engineer - Endpoint security | On-Site, Bangalore
Sr. Engineer - Endpoint security | On-Site, Bangalore

Optiv • Bengaluru

On-site
INR 1,500,000 - 2,100,000
Work/life balance
Professional training resources
Volunteer Opportunities
Manager - Cyber Operations I On-site, Bangalore
Manager - Cyber Operations I On-site, Bangalore

Optiv • Bengaluru

On-site
INR 1,500,000 - 2,500,000
Work/life balance
Professional training resources
Volunteer opportunities
+1
Sr. Engineer - EDR | Onsite, Bangalore.
Sr. Engineer - EDR | Onsite, Bangalore.

Optiv Security India Private Limited • Bengaluru

On-site
INR 1,800,000 - 3,200,000
Sr. Engineer - EDR | Onsite, Bangalore.
Sr. Engineer - EDR | Onsite, Bangalore.

Optiv • Bengaluru

On-site
INR 1,200,000 - 2,000,000
Inclusive culture
Work-life balance
Professional training resources
+2
Engineer - BeyondTrust I On-site, Bangalore
Engineer - BeyondTrust I On-site, Bangalore

Optiv Security India Private Limited • Bengaluru

On-site
INR 900,000 - 1,400,000
Professional training resources
Volunteer opportunities
Employee Resource Groups
Sr. Engineer - SOAR | Onsite, Bangalore.
Sr. Engineer - SOAR | Onsite, Bangalore.

Optiv • Bengaluru

On-site
INR 2,200,000 - 3,600,000
Work from Office (3 days a week)
US-hours alignment
Engineer – Network Security | OPTIV
Engineer – Network Security | OPTIV

Owasp10 • Bengaluru

On-site
INR 700,000 - 1,000,000
Engineer - BeyondTrust I On-site, Bangalore
Engineer - BeyondTrust I On-site, Bangalore

Optiv • Bengaluru

Hybrid
INR 1,800,000 - 2,800,000
Principal Engineer - PKI | On-site, Bangalore
Principal Engineer - PKI | On-site, Bangalore

Optiv Security • Bengaluru

On-site
INR 1,200,000 - 2,000,000
Work/life balance
Professional training resources
Volunteer Opportunities