CrawlJobs Logo

Security Operations Analyst

spectramedix.com Logo

SpectraMedix

Location Icon

Location:
India , Gurugram

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided

Job Description:

The Security Operations Analyst is a member of the IT Infrastructure & Security Department. This role is responsible for day-to-day security operations, security event analysis, and incident response execution across SpectraMedix’ on-premises, co-located datacenter and Microsoft Azure cloud tenant. The Security Operations Analyst works closely with the IT Security Analyst and reports to the CISO/VP, Information Technology & Security. This position serves as the primary responder to security alerts, including endpoint protection alerts, server and system events, and reported intrusion/phishing attempts. The Security Operations Analyst performs alert triage, investigation, containment actions, and escalation in accordance with documented runbooks and the System Security Plan.

Job Responsibility:

  • Monitor, triage, and investigate security alerts generated by security tools (e.g., Sophos, Azure Monitor, Log360, server OS and application logs)
  • Act as the first responder for confirmed security events, including malware detections, suspicious logins, anomalous system behavior, and phishing reports
  • Perform containment actions (e.g., isolate endpoints, disable accounts, block indicators) following approved procedures
  • Escalate incidents to the IT Security Analyst or Incident Response team with documented findings and evidence
  • Maintain accurate incident records, timelines, and response actions in incident tracking systems
  • Execute daily, weekly, monthly, quarterly, and annual security operational tasks as defined in the System Security Plan and security runbooks
  • Review endpoint, server, and system logs for indicators of compromise or policy violations
  • Validate vulnerability scan results and assist with remediation tracking
  • Assist with access reviews, security control verification, and operational evidence collection
  • Analyze reported phishing emails and user-submitted security issues or concerns
  • Determine legitimacy, remove malicious content, and take corrective action (e.g., user guidance, IOC blocking)
  • Track phishing trends and recurring patterns for reporting to the security team
  • Work closely with IT infrastructure, DevOps, data management and application development teams during incident investigations and remediation
  • Support the IT Security Analyst during audits, assessments, and tabletop exercises by providing operational evidence
  • Follow defined escalation paths and incident severity classifications
  • Provide feedback on alert quality, false positives, and detection gaps
  • Contribute to improving SOC procedures and runbooks, incident response procedures, and alert tuning
  • Stay current on common attack techniques, indicators, and defensive best practices relevant to healthcare data environments

Requirements:

  • 2–4 years of experience in security operations, SOC, or incident response roles
  • Hands-on experience monitoring and responding to security alerts
  • Familiarity with endpoint detection and response (EDR), SIEM, and log monitoring tools
  • Working knowledge of: Networking items (TCP/IP, DNS, HTTPS, SSH, SFTP). Authentication and access control concepts. Intrusion detection, malware, phishing, and common attack techniques
  • Experience working within documented procedures and escalation models
  • Must have worked with US based clients in onsite/off shore delivery model
  • Strong verbal and written communication, technical articulation, listening, and presentation skills are essential
  • Should have proven analytical and problem-solving skills
  • Demonstrated expertise in prioritization, time management, and stakeholder management (both internal and external) is necessary
  • Should be a quick learner, self-starter, proactive, and an effective team player
  • Must have experience working under tight deadlines within a matrix organizational structure

Nice to have:

  • CompTIA Security+
  • CompTIA CySA+
  • Certified SOC Analyst (CSA)
  • Equivalent entry-to-mid-level security certifications

Additional Information:

Job Posted:
February 13, 2026

Work Type:
Hybrid work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Security Operations Analyst

Security Operations Analyst

As a Security Operations Analyst within our Information Security Team you will p...
Location
Location
Portugal , Lisbon; Oporto; Barcelona; Madrid; Flexible
Salary
Salary:
Not provided
https://www.tui.com Logo
TUI
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Demonstrable deep experience of design and build of systems integration, ideally in a security operations environment
  • Strong technical and IT operations background
  • Experience with Splunk or similar SIEM platforms, Service Desk systems, and security monitoring tools
  • Familiarity with Windows, macOS, Linux, and Unix operating systems
  • Computer networking and cloud technology fundamentals
  • Understanding of Active Directory, LDAP, IDaaS (AAD)
  • Rudimentary security knowledge of firewalls, proxies, antivirus, and IPS/IDS concepts
  • Experience scripting in Python or PowerShell
  • Experience using Microsoft Excel and Word
  • Excellent written and verbal communication skills
Job Responsibility
Job Responsibility
  • Monitor for alerts from security tools
  • Triage security alerts
  • Use network and host security tooling to perform additional investigation
  • Work the full incident lifecycle from detection, investigation, response, to remediation for security alerts
  • Contribute to the further development, maintenance, and standardization of SOC processes, policies, and procedures
  • Work with other IT/security teams to identify areas for improvement around detection, investigation, and response
  • Research common and topical commodity and APT-based malware tactics and techniques
  • Provide feedback on detection rules to help tune security tools and minimize false positives
  • Participate in SOC working groups and sub-teams to help generate and execute on new ideas for content, technology advancements, and proactive defence improvement projects
What we offer
What we offer
  • Attractive remuneration
  • Bonus opportunity
  • Exclusive travel perks & discounts
  • Extensive health & wellbeing support
  • Flexible working models
  • Opportunities to upskill, reskill and grow your career
  • Access to TUI Tech Learning Hub
  • Participation in tech communities and collaboration on global projects and teams
  • Involvement in local charity and sustainability initiatives
  • Fulltime
Read More
Arrow Right

Security Operations Analyst

As a Security Operations Analyst within our Information Security Team you will p...
Location
Location
Portugal , Lisbon; Oporto; Barcelona; Madrid; Flexible
Salary
Salary:
Not provided
https://www.tui.com Logo
TUI
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Demonstrable deep experience of design and build of systems integration, ideally in a security operations environment
  • Strong technical and IT operations background
  • Experience of working with Splunk or similar SIEM platforms, Service Desk systems and security monitoring tools
  • Familiarity and experience with Windows, macOS, Linux, and Unix operating systems
  • Computer networking and cloud technology fundamentals
  • Understanding of Active Directory, LDAP, IDaaS (AAD)
  • Rudimentary security knowledge and awareness of firewalls, proxies, antivirus, and IPS/IDS concepts
  • Experience scripting in Python or PowerShell
  • Experience using Microsoft Excel and Word
  • Excellent written and verbal communication skills
Job Responsibility
Job Responsibility
  • Monitor for alerts from security tools
  • Triage security alerts
  • Use network and host security tooling to perform additional investigation
  • Work the full incident lifecycle from detection, investigation, response, to remediation for security alerts
  • Contribute to the further development, maintenance, and standardization of SOC processes, policies, and procedures
  • Work with other IT/security teams to identify areas for improvement around detection, investigation, and response
  • Research common and topical commodity and APT-based malware tactics and techniques in preparation for future attacks
  • Provide feedback on detection rules to help tune security tools and minimize false positives
  • Participate in SOC working groups and sub-teams to help generate and execute on new ideas for content, technology advancements, and proactive defence improvement projects
What we offer
What we offer
  • Attractive remuneration
  • Bonus opportunity
  • Exclusive travel perks & discounts
  • Extensive health & wellbeing support
  • Flexible working
  • Opportunities to upskill, reskill and grow your career
  • Access the TUI Tech Learning Hub
  • Participate in tech communities and collaborate on global projects and teams
  • Get involved with local charity and sustainability initiatives
  • Fulltime
Read More
Arrow Right

Security Operations Analyst

As a Security Operations Analyst within our Information Security Team you will p...
Location
Location
Portugal , Lisbon
Salary
Salary:
Not provided
https://www.tui.com Logo
TUI
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Demonstrable deep experience of design and build of systems integration, ideally in a security operations environment
  • strong technical and IT operations background, with strong experience
  • experience of working with Splunk or similar SIEM platforms, Service Desk systems and security monitoring tools desirable with experience in designing and developing these platforms
  • familiarity and experience with Windows, macOS, Linux, and Unix operating systems
  • computer networking and cloud technology fundamentals
  • understanding of Active Directory, LDAP, IDaaS (AAD)
  • rudimentary security knowledge and awareness of firewalls, proxies, antivirus, and IPS/IDS concepts
  • experience scripting in Python or PowerShell
  • experience using Microsoft Excel and Word
  • excellent written and verbal communication skills
Job Responsibility
Job Responsibility
  • Promote a security first culture at TUI
  • work with resolver teams to ensure that information security events and incidents are automatically generated, appropriately addressed and closed in local ticketing systems and ensure reporting on key performance indicators and service levels
  • adopt a pragmatic and ‘can-do’ attitude in everything you do, partnering with your colleagues across the TUI businesses and IT functions worldwide
  • build strong working relationships and influence others to do the right thing to Protect our Smile
  • monitor for alerts from security tools, including, but not limited to, security analytics platforms, automation tools, ticket management systems, user-reported alerts, and others
  • triage security alerts, including initial analysis to determine the validity of alerts and gather additional context
  • use network and host security tooling to perform additional investigation
  • work the full incident lifecycle from detection, investigation, response, to remediation for security alerts
  • contribute to the further development, maintenance, and standardization of SOC processes, policies, and procedures
  • work with other IT/security teams to identify areas for improvement around detection, investigation, and response
What we offer
What we offer
  • Attractive remuneration, bonus opportunity, exclusive travel perks & discounts, extensive health & wellbeing support, and more
  • flexible working: Work is something you do, not somewhere you go. We encourage a healthy work-life balance and offer hybrid or remote working models
  • opportunities to upskill, reskill and grow your career
  • access the TUI Tech Learning Hub to level-up and reach your ambitions
  • participate in our tech communities and collaborate on global projects and teams
  • get involved with incredible local charity and sustainability initiatives like the TUI Care Foundation and the Sustainable Tech Community.
  • Fulltime
Read More
Arrow Right

IT and Security Operations Analyst

UpGuard’s mission is to protect the world’s data. We obsessively seek out elegan...
Location
Location
Australia , Sydney; Hobart; Melbourne; Brisbane
Salary
Salary:
Not provided
https://www.upguard.com Logo
UpGuard
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Practical experience in modern system administration across cloud-based infrastructure (e.g. GCP) and SaaS environments
  • A strong understanding of identity and access management (e.g. Okta), including SSO/MFA, SCIM, and RBAC concepts and tooling
  • Familiarity with low-code/no-code automation platforms (e.g. Zapier, N8N) and a mindset for streamlining repetitive tasks
  • Experience managing and integrating enterprise SaaS applications, ideally in a high-growth or security-conscious environment
  • A working knowledge of scripting (e.g. Bash, PowerShell, Python) to automate tasks, support system health checks, or build internal tooling
  • Exposure to infrastructure-as-code tools like Terraform or similar — or a willingness to learn and contribute to InfraOps practices
  • A thoughtful, empathetic approach to end-user support across globally distributed teams
  • Hands-on experience supporting and managing laptop fleets (macOS and ChromeOS)
Job Responsibility
Job Responsibility
  • Enterprise IT Service Health (30%): Run daily, weekly, and periodic IT and security checklists
  • Troubleshoot issues, document fixes, and raise follow-up actions as needed
  • Perform health checks across infrastructure and DevOps (e.g. uptime, CI/CD, compliance, alerts)
  • Collaborate with DevOps and InfraOps on platform-level issues
  • General IT Support (40%): Monitor and action items in the IT support queue, with a proactive approach
  • Prioritize tasks effectively and align timelines with stakeholders
  • Deliver empathetic, solutions-oriented support across systems, hardware, and software
  • Project Work (30%): Identify and propose improvements as you gain business context
  • Work cross-functionally to implement automation, tooling, and platform enhancements
  • Contribute to scripts, dashboards, and operational improvements
What we offer
What we offer
  • Monthly Lifestyle subsidy: use this for financial, physical, and mental wellbeing
  • WFH set-up allowance: to ensure you have the right environment to work in, we will help you get set up within your first 3 months at UpGuard
  • $1,500 USD annual Learning & Development allowance: to support your career development all team members will be able to expense development opportunities against this allowance
  • Generous Annual Leave/PTO allowances: time to recharge your batteries
  • 18 weeks paid Parental Leave: irrespective of parenting role
  • Personal Leave allowance: this includes sick & carer’s leave
  • Fully remote working environment: while we have physical offices in Sydney & Hobart, we do not mandate compulsory attendance
  • Top-spec hardware: all team members will be provided with top-spec laptops for their roles
  • Personal device security & online privacy protection subsidy: UpGuard provides team members with a paid subscription to personal device security & online privacy protection platform
  • Generative AI subsidy: UpGuard provides paid subscriptions for all team members to access generative AI tools to support their work
  • Fulltime
Read More
Arrow Right

Security Operations Analyst I

Our Security Operations Analyst I position supports our Virtual Network and Secu...
Location
Location
United States , North Wilkesboro
Salary
Salary:
Not provided
infusionpoints.com Logo
InfusionPoints
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • AS/BS degree in Information Technology, Computer Science, Engineering or related field
  • 1-3 years of hands-on deep technical experience
  • Security analysis, threat hunting, forensics, flow analysis, and log management experience
  • IDS/IPS management, PCAP carving, file extraction, and long tail analysis experience
  • Strong understanding of attacker tactics, techniques, and procedures
  • Understanding of endpoint and network security
  • Experience with or knowledge of vulnerability management and penetration testing of systems, applications, and networks
  • General understanding of industry standards, compliance, and legal guidelines: ISO 27001, FedRAMP, NIST 800-171, NIST 800-53, SOC 2, and HIPAA
  • Self-starter able to drive towards goals and manage time effectively
  • Analytical and the ability to think on the fly
Job Responsibility
Job Responsibility
  • Perform event and incident triage, threat hunting, and incident response
  • Use industry-leading commercial and open source software to detect, evaluate, triage, prioritize, and respond to security events
  • Support research and development, security module creation, automation, and process improvement
  • Support vulnerability management and penetration tests
  • Write both technical and executive incident reports when called upon
  • Continuous learning and improvement of security analysis skills to match current technical security challenges and innovations
What we offer
What we offer
  • competitive compensation and benefits package
  • Fulltime
Read More
Arrow Right

Security Operations Analyst

UpGuard’s mission is to make life easier for security teams. We meticulously cre...
Location
Location
Australia , Sydney; Melbourne; Hobart; Brisbane
Salary
Salary:
Not provided
https://www.upguard.com Logo
UpGuard
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Practical experience in IT and security operations across cloud infrastructure (GCP) and SaaS environments
  • Hands-on knowledge of Google SecOps/Chronicle for threat detection and incident response
  • Strong understanding of identity and access management (Okta), including SSO/MFA, SCIM, and RBAC concepts
  • Familiarity with automation platforms (Zapier, N8N) and scripting (Bash, PowerShell, Python) to streamline tasks and improve security operations
  • Experience managing and integrating enterprise SaaS applications in a security-conscious environment
  • Exposure to infrastructure-as-code tools like Terraform or similar, or willingness to learn
  • Thoughtful, empathetic approach to end-user support across globally distributed teams
  • Hands-on experience managing laptop fleets (macOS and ChromeOS)
Job Responsibility
Job Responsibility
  • Run daily, weekly, and periodic IT and security checklists, with a focus on Google SecOps/Chronicle monitoring
  • Perform health checks across GCP infrastructure, SaaS applications, and security tooling (alerts, compliance, CI/CD pipelines)
  • Troubleshoot security or infrastructure issues, document fixes, and raise follow-up actions
  • Collaborate with DevOps and InfraOps on platform-level and security-related issues
  • Identify and propose security and platform improvements as you gain business context
  • Implement automation, security tooling, and platform enhancements to strengthen cloud and SaaS environments
  • Contribute to scripts, dashboards, and operational improvements with a focus on security and compliance
  • Feed insights from day-to-day work into long-term IT security and operational strategy
  • Occasionally assist with IT support tasks across systems, hardware, and software
  • Prioritize tasks effectively and align timelines with stakeholders
What we offer
What we offer
  • Monthly Lifestyle subsidy: Use this for financial, physical, and mental well-being
  • WFH set-up allowance: To ensure you have the right environment to work in, we will help you get set up within your first 3 months at UpGuard
  • $1500 USD annual Learning & Development allowance: To support your career development, all team members will be able to expense development opportunities against this allowance
  • Annual leave: PTO plus two additional UpGuardian leave days to give you time to recharge your batteries
  • 18 weeks paid Parental Leave: Irrespective of parenting role
  • Personal Leave Allowance: This includes sick & carer’s leave
  • Fully remote working environment: While we have physical offices in Sydney & Hobart, we do not mandate compulsory attendance
  • Top-spec hardware: All team members will be provided with top-spec laptops for their role
  • Generative AI subsidy: UpGuard provides paid subscriptions for all team members to access generative AI tools to support their work
  • Health Insurance: Health, dental, and vision insurance
  • Fulltime
Read More
Arrow Right

IT and Security Operations Analyst

UpGuard’s mission is to make life easier for security teams by creating robust s...
Location
Location
United States
Salary
Salary:
Not provided
https://www.upguard.com Logo
UpGuard
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Practical experience in modern system administration across cloud-based infrastructure (e.g. GCP) and SaaS environments
  • A strong understanding of identity and access management (e.g. Okta), including SSO/MFA, SCIM, and RBAC concepts and tooling
  • Familiarity with low-code/no-code automation platforms (e.g. Zapier, N8N) and a mindset for streamlining repetitive tasks
  • Experience managing and integrating enterprise SaaS applications, ideally in a high-growth or security-conscious environment
  • A working knowledge of scripting (e.g. Bash, PowerShell, Python) to automate tasks, support system health checks, or build internal tooling
  • Exposure to infrastructure-as-code tools like Terraform or similar — or a willingness to learn and contribute to InfraOps practices
  • A thoughtful, empathetic approach to end-user support across globally distributed teams
  • Hands-on experience supporting and managing laptop fleets (macOS and ChromeOS)
Job Responsibility
Job Responsibility
  • Run daily, weekly, and periodic IT and security checklists
  • Troubleshoot issues, document fixes, and raise follow-up actions as needed
  • Perform health checks across infrastructure and DevOps (e.g. uptime, CI/CD, compliance, alerts)
  • Collaborate with DevOps and InfraOps on platform-level issues
  • Monitor and action items in the IT support queue, with a proactive approach
  • Prioritize tasks effectively and align timelines with stakeholders
  • Deliver empathetic, solutions-oriented support across systems, hardware, and software
  • Identify and propose improvements as you gain business context
  • Work cross-functionally to implement automation, tooling, and platform enhancements
  • Contribute to scripts, dashboards, and operational improvements
What we offer
What we offer
  • Monthly Lifestyle subsidy: use this for financial, physical, and mental wellbeing
  • WFH set-up allowance: to ensure you have the right environment to work in, we will help you get set up within your first 3 months at UpGuard
  • $1,500 USD annual Learning & Development allowance: to support your career development all team members will be able to expense development opportunities against this allowance
  • Generous Annual Leave/PTO allowances: time to recharge your batteries
  • 18 weeks paid Parental Leave: irrespective of parenting role
  • Personal Leave allowance: this includes sick & carer’s leave
  • Fully remote working environment: while we have physical offices in Sydney & Hobart, we do not mandate compulsory attendance
  • Top-spec hardware: all team members will be provided with top-spec laptops for their roles
  • Personal device security & online privacy protection subsidy: UpGuard provides team members with a paid subscription to personal device security & online privacy protection platform
  • Generative AI subsidy: UpGuard provides paid subscriptions for all team members to access generative AI tools to support their work
  • Fulltime
Read More
Arrow Right

Security Operations Analyst

Location
Location
Spain , Valencia
Salary
Salary:
Not provided
united-its.com Logo
United ITs
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Knowledge of Transmission Control Protocol / Internet Protocol (TCP/IP) protocols
  • Deep knowledge of Microsoft Security Tools (e.g. M365, Cloud App Security, Azure, Defender for Endpoints, Azure Security, Azure Sentinel and XDR
  • Deep Knowledge of Cloud technologies (e.g. Azure, AWS and GCP)
  • Deep knowledge of SIEM tools like Splunk, QRadar, ArcSight, MS Sentinel, ELK Stack
  • Knowledge of at least one EDR solution (MS Defender for Endpoint, SentinelOne, Crowdstrike)
  • Knowledge of email security, network monitoring, and incident response
  • Knowledge of Linux/Mac/Windows
  • A minimum of five (5) years of relevant experience in information technology field, including triage of alerts and supporting security incidents
  • Proven experience with the usual toolbox available in a SOC (e.g., SIEMs, EDRs), able to autonomously perform technical analysis of security threats and collaborate with Incident Response team
  • Trouble ticket generation and processing experience
What we offer
What we offer
  • Teleworking option: Yes (up to 4 days per week for consultants working from Valencia, Spain)
  • Fulltime
Read More
Arrow Right