2 months ago
Remote, IndiaEntry Level
Responsibilities
- Assist with security engineering and operations work, including maintaining security tools, processes, documentation, and standards.
- Support threat monitoring, triage, log analysis, alert configuration, dashboard monitoring, and escalation of potential security incidents.
- Track and help remediate vulnerabilities across cloud and on-premises systems with application, infrastructure, and DevOps teams.
- Support email, endpoint, and identity protections through configuration, monitoring, and basic troubleshooting.
- Create operational runbooks, update SOC documentation, and help validate and document SIEM tuning changes.
- Automate recurring tasks and contribute to small improvements using Python, PowerShell, or other scripting languages.
- Participate in incident response activities with the production incident response team and contribute notes and evidence.
- Share knowledge through documentation, demonstrations, training sessions, and cross-team collaboration.
Requirements
- Bachelor's degree in Information Systems, Computer Science, or a related discipline, or an equivalent combination of education and experience.
- 1–3 years of experience, or relevant internships/co-ops, in security operations, IT operations, systems administration, or a related technical area.
- Foundational knowledge of SOC operations, SIEM, EDR, email threat protection, vulnerability management, and cloud security.
- Basic familiarity with Python or PowerShell scripting and awareness of MITRE ATT&CK, common attack techniques, and log analysis.
- Strong analytical, troubleshooting, communication, collaboration, and willingness-to-learn skills.
- Security+ or a similar foundational security certification is preferred; CEH, SANS, ISC2, AWS, Azure, or GCP certifications are a plus.
