Security Operations Analyst

1 month ago
Full-time
Junior
Cybersecurity
AlphaSense

AlphaSense

AlphaSense develops an artificial intelligence-based search platform that enables investment and corporate professionals to quickly access and analyze extensive financial data and market insights from over 500 million documents, enhancing decision-maki...

Internet Software & Services
251-1K
Founded 2011
$770M raised

Description

  • Monitor and triage security alerts across SIEM, EDR, cloud security, identity, and other platforms.
  • Perform initial investigation on escalated events by collecting and correlating evidence across log sources.
  • Execute containment and remediation actions within defined escalation thresholds.
  • Maintain accurate and timely incident documentation in the tracking system.
  • Contribute to YARA-L rule development and tuning in Chronicle/Google SecOps.
  • Assist with CrowdStrike Falcon IOA and prevention policy maintenance.
  • Review threat intelligence feeds and correlate IOCs against internal telemetry.
  • Identify detection gaps and recommend improvements to security coverage.
  • Triage cloud security findings and investigate identity anomalies such as suspicious logins and MFA bypass attempts.
  • Author and maintain SOC runbooks and triage playbooks, and participate in shift handoff knowledge transfer.

Requirements

  • 2–4 years of experience in SOC, incident response, or security operations.
  • Bachelor's degree (B. Tech) from a Tier 1 or Tier 2 institution.
  • Hands-on experience with a SIEM platform such as Chronicle, Splunk, Sentinel, or equivalent.
  • Familiarity with EDR tooling, preferably CrowdStrike Falcon.
  • Foundational understanding of cloud security concepts across AWS or GCP.
  • Working knowledge of identity threat patterns such as credential stuffing, MFA fatigue, and account takeover.
  • Ability to read and interpret authentication, network, endpoint, and cloud audit logs.
  • Strong written communication skills for clear incident documentation and escalation summaries.
  • Exposure to CSPM/CWPP platforms (preferred).
  • Scripting proficiency in Python or similar for basic automation and log parsing (preferred).
  • Relevant certifications such as CompTIA Security+, CySA+, GCIH, or GCIA (preferred).

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

CyberSecurity Intern

Element Solutions 11-50 Professional Services

Element is hiring a remote-first Cybersecurity Intern in Washington, DC to support implementation of the NIST Cybersecurity Framework across its security policies, controls, and compliance efforts.

AWS Cybersecurity Datadog GCP
10 hours, 40 minutes ago

Fraud Countermeasure Specialist, Fraud Platform

Veriff 51-250 IT Services

Veriff is hiring a Fraud Countermeasure Specialist to help protect customers and strengthen its fraud prevention systems by investigating suspicious activity and improving defenses against emerging online threats.

Looker SQL Tableau
10 hours, 55 minutes ago

IT Security Administrator

Bitwarden 51-250 Internet Software & Services

Bitwarden is seeking a remote Security and IT generalist to support enterprise security operations, user access, and endpoint protection while helping maintain compliance and secure systems across a global workforce.

Confluence HIPAA JIRA SIEM SOC
1 day, 10 hours ago

Minor Safety Analyst

Control Risks 1K-5K Professional Services

Minor Safety Analyst at a global technology client focused on reviewing abuse and safety reports, investigating risks to minors, and documenting findings for internal teams and stakeholders.

Cybersecurity
2 days, 10 hours ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers