Security Operations Analyst

2 months, 2 weeks ago
Full-time
Junior
Cybersecurity
AlphaSense

AlphaSense

AlphaSense develops an artificial intelligence-based search platform that enables investment and corporate professionals to quickly access and analyze extensive financial data and market insights from over 500 million documents, enhancing decision-maki...

Internet Software & Services
251-1K
Founded 2011
$770M raised

Description

  • Monitor and triage security alerts across SIEM, EDR, cloud security, identity, and other platforms.
  • Perform initial investigation on escalated events by collecting and correlating evidence across log sources.
  • Execute containment and remediation actions within defined escalation thresholds.
  • Maintain accurate and timely incident documentation in the tracking system.
  • Contribute to YARA-L rule development and tuning in Chronicle/Google SecOps.
  • Assist with CrowdStrike Falcon IOA and prevention policy maintenance.
  • Review threat intelligence feeds and correlate IOCs against internal telemetry.
  • Identify detection gaps and recommend improvements to security coverage.
  • Triage cloud security findings and investigate identity anomalies such as suspicious logins and MFA bypass attempts.
  • Author and maintain SOC runbooks and triage playbooks, and participate in shift handoff knowledge transfer.

Requirements

  • 2–4 years of experience in SOC, incident response, or security operations.
  • Bachelor's degree (B. Tech) from a Tier 1 or Tier 2 institution.
  • Hands-on experience with a SIEM platform such as Chronicle, Splunk, Sentinel, or equivalent.
  • Familiarity with EDR tooling, preferably CrowdStrike Falcon.
  • Foundational understanding of cloud security concepts across AWS or GCP.
  • Working knowledge of identity threat patterns such as credential stuffing, MFA fatigue, and account takeover.
  • Ability to read and interpret authentication, network, endpoint, and cloud audit logs.
  • Strong written communication skills for clear incident documentation and escalation summaries.
  • Exposure to CSPM/CWPP platforms (preferred).
  • Scripting proficiency in Python or similar for basic automation and log parsing (preferred).
  • Relevant certifications such as CompTIA Security+, CySA+, GCIH, or GCIA (preferred).

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Cyber Security Intern

RegScale 11-50 Utilities

RegScale is seeking a Cyber Security Intern to support its security team in protecting production SaaS systems while gaining exposure to security operations, compliance, GRC, and cloud security.

AWS Azure Cybersecurity Encryption GCP SIEM
2 hours, 5 minutes ago

RMF/Assessment & Authorization (A&A) Analyst

Skyepoint Decisions 51-250 Internet Software & Services

SkyePoint Decisions is hiring a fully remote RMF/Assessment & Authorization Analyst to support federal information systems in maintaining RMF compliance and ATO status.

AWS Azure GCP
2 hours, 5 minutes ago

Fraud Jr Analyst

Banco Plata, S.A., Institución de Banca Múltiple. 1001-5000 Banking / financial services

Plata CF busca un Analista de Fraude Jr para apoyar la detección, investigación y prevención de fraudes en su etapa de expansión en Colombia.

SQL
3 hours, 5 minutes ago

Risk Antifraud Analyst [CO Portfolio Risk]

Banco Plata, S.A., Institución de Banca Múltiple. 1001-5000 Banking / financial services

Risk Antifraud Analyst on the Portfolio Risk Team at a fintech company, responsible for building and scaling fraud prevention capabilities for lending operations in Colombia.

Machine Learning Python SQL
3 hours, 5 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers