Security Analyst
Bloomreach View all jobs
- India
- Permanent
- Full-time
- We're taking autonomous search mainstream, making product discovery more intuitive and conversational for customers, and more profitable for businesses.
- We're making conversational shopping a reality, connecting every shopper with tailored guidance and product expertise - available on demand, at every touchpoint in their journey.
- We're designing the future of autonomous marketing, taking the work out of workflows, and reclaiming the creative, strategic, and customer-first work marketers were always meant to do.
- To Monitor, analyze & interpret security/system/application/infrastructure logs for events, configuration irregularities & potential incidents
- To leverage security tools, custom built dashboards and/or proactive identification approaches to detect anomalous activities
- Monitoring Cloud infrastructure for security-related events
- Monitoring threat/vulnerability landscape and security advisories, coordinate and escalate as appropriate
- Collaborate with Product Security, Infrastructure Security, and GRC teams on cross-functional investigations and audit-related tasks as needed.
- Work with application security teams, product specialists, GRC, and legal teams on active incidents and/or investigations
- To participate in a major incident call, document incident report summaries
- To document, follow and execute standard operating procedures (SOPs)
- Documenting/Managing/maintaining & following use cases, playbooks and/or knowledge base articles
- To work on incidents, requests related to security
- Develop and maintain security detection use cases and alerts within SIEM platforms
- Design and implement automation workflows using SOAR or similar security orchestration tools
- Working knowledge of AI/LLM tools (e.g., Gemini, ChatGPT, Claude) and their application in security operations. Understanding of authentication mechanisms, including private/public key concepts, familiarity with command-line interfaces (CLI), IDE-based tools, and agent-based workflows. Awareness of API usage, token management, and secure handling of credentials
- Owning responsibilities within a shift with a positive mindset towards growth & upskilling
- Engaging & escalating issues as necessary
- 3+ years of hands on experience as part of a 24*7 Security Operations team or Cyber Fusion Center team supporting any one of the following as minimum
- SaaS platform Security
- Cloud Security
- API/Container Security
- Threat Intel/Hunting, Vulnerability Management
- Hands on experience and deep knowledge on usage of SIEM (Splunk preferred), SOAR, EDR ( modules like TI, VM, DLP)
- Hands on experience in using any of CSPM tools (SentinelOne, Falcon Horizon, Wiz,Sysdig,Prisma cloud,MS Defender)
- Hands on experience assessing, interpreting & managing vulnerabilities using relevant tools ( CS Spotlight, QualysGuard, Rapid 7)
- Hands on experience of either AWS or GCP is must
- Should possess positive attitude to participate, own & drive tasks for POCs for various tools
- Understanding of risk frameworks
- Ability to assess emerging trends & threats in cyber security space
- Should possess good analytical, problem-solving, and interpersonal skills. Should be able to apply & provide logical reasoning
- Knowledge of NIST framework, OSINT standards, MITRE ATT&CK framework & cybersecurity incident lifecycle
- Knowledge of network protocols, operating systems (Linux, macOS, Windows), and security fundamentals.
- Mandatory to work in a 24/7 rotation shift & weekends
- Possess excellent command on communication in English being a good listener, speaker & reader
- You have had working experience in a global team or can understand dialects from various parts of the world
- Basic scripting skills (Python, Bash, or PowerShell) for automating repetitive tasks.
- Growing independence in handling security events - able to work through moderate issues with some guidance, applying best practices and established procedures.
- Strong analytical thinking and attention to detail, with a developing ability to connect findings across data sources during investigations.
- Good written and verbal communication skills - able to document investigations clearly and provide accurate status updates.
- Curious and eager to learn - actively seeks out new knowledge about threats, tools, and techniques.
- Team-oriented with a collaborative, low-drama approach to working with colleagues across functions and time zones.
- Proactive mindset - takes initiative to improve personal skills and contribute to the team's knowledge and processes
- Entry-level or intermediate security certifications (e.g., CompTIA Security+, CySA+, GSEC, or equivalent).
- Previous experience in a SaaS, e-commerce, or technology company
- Understand the roles & responsibilities of SOC team, in-scope vs out of scope tasks
- Read & understand SOPs, Policies & working procedures of the team
- Shadow peers in day to day work, overlook tickets, alerts, incidents, understand the current state of ongoing projects/enhancements etc
- Understand the team's incident response procedures, escalation paths, and shift structure. Begin handling lower-severity alerts and incidents under guidance from senior analysts
- Start owning incidents, tasks as independent contributor with a peer shadowing you
- Participate in incident related calls, cross team/department meetings
- Handle SIEM/SOAR/EDR events. Demonstrate consistent adherence to SOPs and ticket hygiene standards. Contribute at least one update or improvement to a runbook, playbook, or knowledge base article based on hands-on experience
- You will start documenting or tweaking existing SOPs, process document
- You will bear responsibilities of representing team in forums/meetings/discussions
- You will start managing shift alone when needed
- You will adapt yourself to the service improvement mindset and contribute. Show measurable growth in investigation quality, speed, and documentation. Begin developing a specialisation area (e.g., cloud security monitoring, detection engineering, threat intelligence) aligned with team needs and personal development goals to overall success of the team