远程工作雷达

安全分析师(网络安全防御分析师)

Security Analyst (Cyber Defense Analyst)

开发工程职能支持限定地区(需当地身份)
公司AHEAD
薪资未公开
工作地点India
地域资格限定地区(需当地身份)
时区要求日间重叠约 6 小时,基本正常作息
用工类型Full Time
发布时间今天
数据来源Himalayas
前往 Himalayas 查看并投递 →
注意地域限制:该职位明确限定在 India 招聘。如果你是位于中国大陆的求职者,通常需要当地工作身份才能投递,或需与雇主确认是否接受独立合同(Contractor)形式合作。

AHEAD 构建数字业务平台。通过将云基础设施、自动化和分析,以及软件交付的最新技术相结合,我们帮助企业实现数字化转型的承诺。
在 AHEAD,我们优先打造一种归属感文化,让所有观点和声音都被代表、重视、尊重并被倾听。我们创造空间,使每个人都能发声、推动改变,并引领 AHEAD 的文化。
我们是平等机会雇主,不会基于个人的种族、国籍、肤色、性别、性别认同、性别表达、性取向、宗教、年龄、残疾、婚姻状况或其他适用法律规定的受保护特征(无论实际或感知)进行歧视。
我们欢迎所有能为 AHEAD 带来想法和视角多元化与丰富化的候选人。

AHEAD 正在寻找一名网络安全分析师加入 AHEAD 企业安全网络安全防御团队。该职位将有助于成功交付 AHEAD 的信息安全计划,以确保 AHEAD 利益相关者拥有强大的运营控制和有效的防御能力。

网络安全分析师负责监控、分类、调查和报告企业范围内的安全事件。典型的一天包括审查和修复安全平台中的警报,支持事件响应活动,改进检测能力,并参与加强 AHEAD 整体安全态势的信息安全相关项目。

直接向企业安全领导汇报,理想的候选人应是一名专业、协作的团队成员,能够适应与组织内各级人员合作。申请者应具备出色的分析、沟通、跟进和质量保证技能,同时能够在快节奏的安全环境中高效运作。

职责:

  • 在企业安全平台(包括 SIEM 和其他检测技术)上监控、分类并分析安全警报、遥测数据和日志数据。
  • 对端点、身份、网络、云和应用数据源中的攻击手段、攻击者行为和异常活动进行深入分析。
  • 在 SIEM 中审查并关联安全事件,以识别威胁、验证检测效果,并支持及时的事件声明和升级决策。
  • 记录调查发现,响应措施
查看英文原文

AHEAD builds platforms for digital business. By weaving together advances in cloud infrastructure, automation and analytics, and software delivery, we help enterprises deliver on the promise of digital transformation.
At AHEAD, we prioritize creating a culture of belonging, where all perspectives and voices are represented, valued, respected, and heard. We create spaces to empower everyone to speak up, make change, and drive the culture at AHEAD.
We are an equal opportunity employer, and do not discriminate based on an individual's race, national origin, color, gender, gender identity, gender expression, sexual orientation, religion, age, disability, marital status, or any other protected characteristic under applicable law, whether actual or perceived.
We embrace all candidates that will contribute to the diversification and enrichment of ideas and perspectives at AHEAD.

AHEAD is seeking a Cyber Defense Analyst to join the AHEAD Corporate Security Cyber Defense team. This position contributes to the successful delivery of AHEAD’s information security program in order to assure AHEAD stakeholders of strong operating controls and effective defensive capabilities.

The Cyber Defense Analyst is responsible for monitoring, triaging, investigating, and reporting on security events across the enterprise. A typical day will include reviewing and remediating alerts in our security platforms, supporting incident response activities, improving detections, and working on information security-related projects that strengthen AHEAD’s overall security posture.

Reporting directly to Corporate Security leadership, the ideal candidate must be a professional, collaborative team player that is comfortable working with people at all levels of the organization. Applicants should possess strong analytical, communication, follow-up and quality assurance skills, along with the ability to operate effectively in a fast-paced security environment.

Responsibilites:

  • Monitor, triage, and analyze security alerts, telemetry, and log data across enterprise security platforms, including SIEM and other detection technologies.
  • Perform in-depth analysis of exploits, attacker behavior, and anomalous activity across endpoint, identity, network, cloud, and application data sources.
  • Review and correlate security events in the SIEM to identify threats, validate detections, and support timely incident declaration and escalation decisions.
  • Document investigative findings, response actions, and evidence throughout the incident lifecycle, and provide timely status updates to leadership and stakeholders.
  • Conduct proactive threat hunting and threat research to identify emerging risks, adversary techniques, and gaps in current detection coverage.
  • Contribute to detection engineering and response automation efforts that improve Cyber Defense monitoring and containment capabilities.
  • Support security tooling operations by helping maintain the effectiveness, reliability, and visibility of core defensive technologies used by the Cyber Defense team.
  • Assist with the development and refinement of incident response processes, playbooks, workflows, and operational procedures to improve overall Cyber Defense effectiveness.
  • Communicate intrusion activity, incident details, threat trends, and recommended actions clearly to internal stakeholders and leadership.
  • Partner with infrastructure teams and system owners to review vulnerability findings, help prioritize remediation, and track closure of high-risk issues.

Qualifications:

  • 5+ years of experience in information security, ideally including direct experience in incident response, cyber defense, or security operations in a corporate or enterprise environment
  • Hands-on experience with SIEM platforms, including creating and using searches, dashboards, alerts, and investigations; experience with CrowdStrike NG-SIEM strongly preferred
  • Experience with Microsoft 365 security technologies, including Microsoft Defender XDR for email, identity, and collaboration platforms
  • Basic knowledge of networking concepts and cloud environments, including AWS and Azure
  • Foundational knowledge of Windows and macOS
  • Strong written and verbal communication skills, including clear incident documentation and the ability to communicate technical findings to non-technical stakeholders in a global environment
  • Familiarity with MITRE ATT&CK, NIST CSF, CIS Controls, or similar security frameworks is preferred
  • Basic familiarity with scripting or query languages such as PowerShell, Python, or similar to support automation and analysis is preferred
  • Experience supporting vulnerability management processes using tools such as Tenable and Wiz, including triage, validation, prioritization, and remediation tracking is preferred
  • Bachelor's Degree in Cybersecurity, Information Security, Computer Science, Information Technology, or a related field

Certifications:
· CCSP, GCIH, CySA+, GSEC, SSCP or similar cybersecurity certification required
Why AHEAD:
Through our daily work and internal groups like Moving Women AHEAD and RISE AHEAD, we value and benefit from diversity of people, ideas, experience, and everything in between.
We fuel growth by stacking our office with top-notch technologies in a multi-million-dollar lab, by encouraging cross department training and development, sponsoring certifications and credentials for continued learning.
India Employment Benefits include:

Comprehensive health insurance coverage for employees, with options to extend coverage to dependents

Paid time off and company holidays, along with additional leave benefits as per policy

Flexible work arrangements, supporting work-life balance

Learning and development opportunities to support continuous growth and upskilling

Employee wellness initiatives and programs focused on physical and mental well-being

Retirement and statutory benefits in line with India regulations

Inclusive and people-first culture, with a strong focus on collaboration and ownership
Originally posted on Himalayas

本页面信息整理自 Himalayas,版权归原发布方所有。职位可能随时关闭,投递请以原始页面为准。 本站只做信息聚合展示,不参与招聘流程,也不向求职者收取任何费用。

该公司其他在招职位

← 返回全部职位