Security Analyst (India)

Security Analyst (India)

30 Sep
|
Right Job Solutions
|
India

30 Sep

Right Job Solutions

India

Role Name: Security Analyst

Location: Versova, Mumbai, India
Work Arrangement: On-site
Working Hours: 10:00 AM to 7:00 PM, 6 days a week
Compensation: Competitive
Employment Type: Full-time

About the Role

We are looking for a hands on L2 SOC Analyst with experience in security monitoring, incident investigation, log analysis, Wazuh administration, malware analysis, and Blue Team operations.

Our Wazuh setup is largely complete, but the candidate should be capable of onboarding current servers/endpoints, troubleshooting agents, tuning rules, and improving detections when required.

Key Responsibilities

- Investigate and handle L2 security alerts and incidents.
- Analyze Windows, Linux, firewall, VPN, endpoint, and authentication logs.
- Tune Wazuh rules and reduce false positives.
- Onboard new servers, endpoints, and log sources into Wazuh.
- Create and modify Wazuh rules and decoders using XML.
- Build or improve detection rules and security use cases.
- Perform malware analysis and identify indicators of compromise.
- Support incident containment, remediation, and recovery.
- Perform threat hunting and identify suspicious activity.
- Recommend security-hardening improvements.
- Prepare clear incident reports and investigation summaries.

Required Skills

- Hands-on experience as an L2 SOC / Blue Team Analyst.
- Strong practical knowledge of Wazuh.
- Experience with Wazuh rule tuning, custom rules, decoders, and XML configuration.
- Ability to read, modify, and troubleshoot XML-based Wazuh configurations.
- Experience with alert investigation and SIEM rule tuning.
- Good understanding of Windows and Linux security logs.




- Ability to analyze firewall and network traffic.
- Understanding of malware behavior and IOC analysis.
- Knowledge of TCP/IP, DNS, VPN, ports, protocols, and common attack techniques.
- Strong troubleshooting and incident-response skills.
- Good documentation and report-writing ability.

Preferred Skills

- Experience with EDR/XDR tools.
- Familiarity with Active Directory security events.
- Knowledge of MITRE ATT&CK.;
- Basic PowerShell, Python, Bash, or scripting knowledge.
- Experience with Sonicwall (Preferred) Fortinet, Palo Alto, Sophos, Check Point, Cisco, or similar firewalls.

First 3–6 Months

The selected candidate will be expected to:

- Understand the existing Wazuh and security-monitoring environment.
- Independently handle L2 investigations and incident analysis.
- Tune alerts and reduce recurring false positives.
- Onboard new servers, endpoints, and log sources when required.
- Create or modify Wazuh rules and decoders using XML.
- Improve detection rules and security-monitoring use cases.
- Perform malware analysis and threat hunting.
- Identify security gaps and recommend hardening measures.
- Improve incident documentation and reporting.

Ideal Candidate

Someone who can go beyond simply closing alerts, investigate what happened, correlate logs, identify the cause, recommend remediation, and improve detection and security controls.

The candidate should also be comfortable working directly with Wazuh XML rules, decoders, and configuration files when custom detections or troubleshooting are required.

Pay: ₹40,000.00 - ₹42,000.00 per month

Work Location: In person

📌 Security Analyst (India)
🏢 Right Job Solutions
📍 India

Reply to this offer

Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.

Subscribe to this job alert:

Get the latest job offers by email for: security analyst (india) / india

Subscribe to this job alert:

Get the latest job offers by email for: security analyst (india) / india