Source Job

India

  • Monitor, triage, and investigate security alerts across SIEM, EDR, and cloud platforms.
  • Conduct deep log analysis and escalate threats to specialized incident response teams.
  • Improve detection quality, reduce false positives, and maintain SOC documentation.

SIEM EDR Cloud Incident Response

20 jobs similar to Security Operations Analyst - Cyber Defense

Jobs ranked by similarity.

India

  • Monitor, triage, and investigate security alerts across SIEM, EDR, Microsoft security tools, and cloud platforms.
  • Analyze host and network logs from Windows, Linux, databases, applications, web servers, firewalls, and NIDS/HIDS.
  • Support incident response, remediation, and recovery activities.

Pragmatike recruits for major international organizations, specializing in cybersecurity and cloud enterprise security. They operate a global 24/7 Cybersecurity Operations Centre with a team of security specialists across different regions.

Europe

  • Monitor, triage, and investigate security alerts across SIEM, EDR, and cloud environments.
  • Analyze logs from Windows, Linux, databases, and network systems to identify and remediate threats.
  • Work with Incident Response teams to contain threats and improve detection quality.

Talan is a global consulting group specializing in innovation and business transformation through technology. With over 7,200 consultants across 21 countries and an €850M turnover, we deliver future-ready solutions in a multicultural, growth-oriented environment.

EMEA

  • Monitor, triage, and investigate security alerts across SIEM, EDR, Microsoft security tools, and cloud platforms.
  • Analyze host and network logs from Windows, Linux, databases, applications, web servers, firewalls, and NIDS/HIDS.
  • Support incident response, remediation, and recovery activities while collaborating with global cybersecurity teams.

Pragmatike is a recruitment firm that recruits on behalf of major international organizations in the cybersecurity and cloud security space. They are committed to a fair, transparent, and inclusive recruitment process, fostering a culture of diversity and global collaboration.

India

  • Act as a senior member of the SOC, independently managing and resolving security incidents end-to-end.
  • Lead incident investigations, perform root cause analysis, and drive lessons learned.
  • Collaborate with global security teams to develop and improve processes, tooling, and operational best practices.

Netrix Global provides the people, processes, and technology needed to run and scale modern, data-driven businesses that are always on and always secure. The company is consistently ranked in the CRN VAR500 as a top system integrator and fosters a culture of ownership, teamwork, and respect.

Global

  • Contribute to the development, tuning, and maintenance of security monitoring and detection capabilities across SIEM, EDR, and cloud platforms.
  • Support the onboarding, integration, and testing of security data sources and telemetry feeds.
  • Collaborate with threat intelligence and incident response teams to translate requirements into effective detection mechanisms.

Talan is an international consulting group specializing in innovation and business transformation through technology. With over 7,200 consultants in 21 countries and a turnover of €850M, they are committed to delivering impactful, future-ready solutions.

Colombia

  • Safeguard customer digital assets, sensitive data, and critical systems against cyber threats as part of the MXDR team.
  • Leverage expertise in vulnerability identification, robust security implementation, and incident response to enhance security posture.
  • Collaborate with cross-functional teams to assess risks, formulate security strategies, and ensure adherence to industry standards.

Check Point Software Technologies is a leading vendor of cybersecurity solutions, protecting against sophisticated threats and attacks. The company has been honored by Time Magazine as one of the World’s Best Companies for 2024 and recognized as one of the World’s Top Female-Friendly Places to Work.

India

  • Configure, monitor, and maintain cloud and network environments including AWS, Azure, and GCP.
  • Troubleshoot complex infrastructure and connectivity issues while applying cybersecurity best practices.
  • Collaborate with cross-functional teams to ensure reliability, security, and operational efficiency.

Our partner is a technology company that provides secure, reliable infrastructure solutions. They operate as a fully remote team with a collaborative culture.

$85,000–$141,000/yr
US

  • Design, implement, and maintain SIEM platform architectures across AWS, Azure, and GCP environments.
  • Build and operate reliable log collection and ingestion pipelines using forwarders, connectors, APIs, syslog, and agents.
  • Support FedRAMP continuous monitoring and compliance requirements while partnering with detection engineering and security operations teams.

Coalfire is a leading cybersecurity solutions provider that advises, assesses, automates, and helps clients navigate the ever-changing cybersecurity landscape. The company has offices across the U.S. and U.K. and fosters a culture of passionate problem-solvers who are hungry to learn and grow.

Australia

  • Lead security incident response in a 24/7 global rotation, managing incidents from detection through recovery.
  • Create and maintain comprehensive incident response documentation, including runbooks and procedures.
  • Design and implement automated security processes to improve operational efficiency and reduce manual intervention.

GitLab is the intelligent orchestration platform for DevSecOps, helping organizations improve developer productivity, operational efficiency, and security. With over 50 million users and a high-performance culture, GitLab values innovation, continuous knowledge exchange, and inclusion.

India

  • Monitor security alerts and events to identify potential threats and vulnerabilities.
  • Detect and analyze security incidents using multiple security tools like SIEM, EDR, and IDS/IPS.
  • Respond to security incidents promptly following established procedures and perform phishing analysis.

Zscaler accelerates digital transformation so customers can be more agile, efficient, resilient, and secure with its Zero Trust Exchange platform. The company employs thousands globally and fosters a culture of ownership, collaboration, and continuous feedback.

India 4w PTO

  • Manage the information security ticketing process and serve as initial point of contact for security events.
  • Provide technical support, investigate alerts, and document resolutions.
  • Collaborate with GRC and other teams to improve security processes and awareness.

The partner company is a distributed organization focused on information security. The company size is not specified, but it offers a remote-first culture with comprehensive benefits.

$90,000–$100,000/yr
US

  • Monitor, triage, and respond to security alerts and incidents across the security stack.
  • Engineer, implement, and maintain information security technologies such as SIEM, detection rules, and automation.
  • Collaborate with teams to promote information security culture and advise on cyber risk across the organization.

VEIC is a sustainable energy organization working toward a healthy planet, thriving people, and energy justice. The company values an inclusive culture and supports flexible work arrangements, welcoming candidates of all backgrounds.

Poland

  • Lead investigation and resolution of complex cybersecurity incidents in the Security Operations Centre.
  • Analyze and correlate security events from SIEM, IDS, EDR, and other sources.
  • Conduct digital forensic investigations and provide expert guidance throughout the incident response lifecycle.

Eurofins Scientific is an international life sciences company providing analytical testing services to make life and the environment safer, healthier, and more sustainable. With over 65,000 employees across 950+ laboratories in 60 countries, they are a global leader in testing and laboratory services.

India

  • Design and manage complex IT infrastructures across multiple client environments.
  • Serve as Tier 3 escalation point for critical infrastructure and security issues.
  • Lead infrastructure projects including cloud, virtualization, and network transformations.

Jobgether is an AI-powered job matching platform that connects candidates with hiring companies. It uses AI to review applications and shares top-fitting candidates directly with employers.

$93,800–$120,000/yr
US Unlimited PTO

  • Operate and monitor cybersecurity controls for a FedRAMP- and CJIS-regulated SaaS product in AWS.
  • Triage security events, investigate threats, and support incident response with root-cause analysis.
  • Maintain security platforms, vulnerability management, and data protection operations across the environment.

Granicus provides cloud-based technology for government agencies to improve digital services and connect with communities. Over 25 years, they serve 5,500 agencies and 300 million subscribers, with a remote-first, inclusive culture.

Brazil

  • Lead the complete response lifecycle for Level 2 and Level 3 security incidents, from analysis to containment and eradication.
  • Coordinate with MSSPs, 24/7 SOC, and cross-functional teams (Legal, DPO, Communications) during critical incidents.
  • Develop and refine IR playbooks, perform DFIR investigations, and integrate automation with SOAR.

Grupo QuintoAndar is the largest real estate ecosystem in Latin America, with a diversified portfolio of brands and solutions across the housing journey. The company is valued at over USD 5.1 billion and has a Technology Hub in Portugal, fostering innovation, collaboration, and high performance.

Europe

  • Architect and oversee advanced security monitoring and threat detection frameworks across diverse systems and log sources.
  • Lead the integration of security into the software development lifecycle, including Security-as-Code and automated SAST, DAST, and SCA capabilities within CI/CD pipelines.
  • Own the end-to-end vulnerability management strategy across infrastructure and applications, prioritizing remediation according to business risk.

The partner company operates a large-scale digital platform and a globally distributed technology ecosystem connected to gaming and esports communities. They maintain a flexible, distributed, and inclusive work environment focused on equal opportunity and technical ownership.

US

  • Support the security team by monitoring and triaging security activity, investigating potential threats, and improving security operations across endpoint, network, and cloud platforms.
  • Assist with developing SIEM detection rules, analyzing security telemetry for anomalous behavior, and conducting targeted threat-hunting activities.
  • Work with vulnerability management, threat intelligence, and documentation to strengthen security practices and ensure adherence to policies.

SimSpace is an AI Proving Ground that helps organizations train, test, and outmaneuver adversaries through realistic cyber simulations. Founded in 2015 by experts from U.S. Cyber Command and MIT Lincoln Laboratory, the company fosters a culture of continuous learning and professional growth, consistently outperforming industry benchmarks in internal mobility and promotions.

United States

  • Independently triage security alerts and incident reports.
  • Investigate incidents using forensic and threat hunting skills.
  • Drive incidents to closure and enhance response platforms.

LinkedIn is the world's largest professional network, built to create economic opportunity for every member of the global workforce. The company is committed to a culture built on trust, care, inclusion, and fun, offering transformational opportunities for employees.

$133,000–$209,000/yr
US

  • Design and continuously improve detection and alerting controls to reduce noise and enable rapid response.
  • Build, test, and automate incident response playbooks to increase efficiency across the incident lifecycle.
  • Drive prioritization of alerts using a data-driven triage framework aligned with business impact and threat context.

Sword builds AI to heal billions, pioneering AI Care for healthcare delivery across physical therapy, women’s health, and more. With over 700,000 members and 1,000+ enterprise clients, they have raised $500 million and emphasize a culture of proactive security and AI proficiency.