Security Operations Analyst

1 week, 3 days ago
Full-time
Junior
Cybersecurity
Alphasense

Alphasense

Alphasense is a global leader in providing high-quality gas sensors and air quality monitors to industrial OEMs. With over 25 years of experience, the company offers a wide range of innovative gas sensor technologies for various applications, including...

Industrial Conglomerates
51-250
Founded 1996

Description

  • Monitor and triage security alerts across SIEM, EDR, cloud security, identity, and other security platforms.
  • Perform initial investigation of escalated security events by collecting and correlating evidence from multiple log sources.
  • Execute containment and remediation actions within defined escalation thresholds.
  • Maintain accurate, timely documentation in the incident tracking system.
  • Contribute to YARA-L rule development and tuning in Chronicle/Google SecOps.
  • Assist with CrowdStrike Falcon IOA and prevention policy maintenance.
  • Review threat intelligence feeds and correlate indicators of compromise against internal telemetry.
  • Identify detection gaps and recommend improvements to security coverage.
  • Triage cloud security findings and investigate identity anomalies such as suspicious login patterns and MFA bypass attempts.
  • Author and maintain SOC runbooks and triage playbooks, and support shift handoffs and compliance-adjacent security activities.

Requirements

  • 2–4 years of experience in SOC, incident response, or security operations.
  • Bachelor's degree (B. Tech) from a Tier 1 or Tier 2 institution.
  • Hands-on experience with a SIEM platform such as Chronicle, Splunk, Sentinel, or an equivalent tool.
  • Familiarity with EDR tooling, with CrowdStrike Falcon preferred.
  • Foundational understanding of cloud security concepts across AWS or GCP.
  • Working knowledge of identity threat patterns such as credential stuffing, MFA fatigue, and account takeover.
  • Ability to read and interpret authentication, network, endpoint, and cloud audit logs.
  • Strong written communication skills for incident documentation and escalation summaries.
  • Exposure to CSPM/CWPP platforms is preferred.
  • Familiarity with various log schemas is preferred.
  • Scripting proficiency in Python or a similar language for basic automation and log parsing is preferred.
  • Relevant certifications such as CompTIA Security+, CySA+, GCIH, or GCIA are preferred.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Entry-Level Assessor (Assessment & RMF Track)

Avint 11-50 IT Services

Avint is hiring an Entry-Level Cybersecurity Analyst to support security assessment, documentation, and continuous monitoring for critical systems in the HACS program and federal cybersecurity operations.

Cybersecurity
2 hours, 6 minutes ago

Sr. Network Administrator II (6617)

MetroStar 251-1K IT Services

MetroStar is seeking a Sr. Network Administrator II to support secure network operations for the Department of State by maintaining, monitoring, and improving network reliability, availability, performance, and security in a dynamic NOC environment.

Cisco DHCP DNS Fiber HTTP Nagios Splunk TCP/IP Wireshark Zabbix
2 hours, 36 minutes ago

Norwegian Speaking Digital Trust and Safety Analyst - Work In Bulgaria

Mercier Consultancy Professional Services

Mercier Consultancy MD is hiring a Norwegian-speaking Digital Trust and Safety Analyst in Bulgaria to monitor platform activity, address safety risks, and support a safer user experience.

2 hours, 51 minutes ago

Turkish Speaking Digital Trust and Safety Specialist - Work In Sofia

Mercier Consultancy Professional Services

Mercier Consultancy MD is hiring a Turkish Speaking Digital Trust and Safety Specialist in Sofia, Bulgaria to help monitor platform activity, investigate safety issues, and support policy enforcement across its digital services.

2 hours, 51 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers