We are seeking a vigilant and technically proficient Security Analyst to join our Security Operations Center (SOC). This is a critical role responsible for 24x7 monitoring, detection, and response to security incidents. You will work with industry-leading security tools to identify threats, investigate security events, and provide actionable intelligence to protect our organizational assets.
Key Responsibilities
• Monitor and analyze security events and alerts from SIEM (IBM QRadar) in real-time
• Investigate suspected security incidents and create comprehensive incident reports
• Correlate and analyze logs from multiple security data sources and endpoints
• Respond to security alerts related to CrowdStrike Falcon endpoints and threat detection
• Manage and respond to Zscaler (ZIA/ZPA) security events and policy violations
• Review and analyze Data Loss Prevention (DLP) incidents and take appropriate action
• Monitor attack surface using specialized tools to identify external vulnerabilities
• Perform threat hunting and proactive threat identification
• Escalate critical incidents to senior analysts and management appropriately
• Maintain detailed documentation of all security events and investigations
• Collaborate with IT and business teams to remediate identified security issues
• Participate in security alerts, on-call support, and incident response drills
Required Qualifications
• 2+ years of experience in Security Operations Center (SOC) or cybersecurity role
• Proven hands-on experience with IBM QRadar SIEM platform
• Working knowledge of SIEM solutions and log management
• Hands-on experience with Zscaler Internet Access (ZIA) and Zscaler Private Access (ZPA)
• Solid experience with CrowdStrike Falcon platform and all its modules
• Experience with Data Loss Prevention (DLP) solutions and policies
• Familiarity with attack surface assessment and management tools