Security Analyst

Posted 4 Days Ago
Be an Early Applicant
Hiring Remotely in India
Remote
2M-3M Annually
Senior level
Edtech • Software
The Role
Owns end-to-end security incident triage, investigation, containment, remediation, and documentation during non-US hours. Investigates events across SIEM, EDR, email, network, identity, and cloud platforms; performs root cause analysis; maintains playbooks and SOC documentation; prepares metrics and incident reports; coordinates shift handoffs; and recommends improvements to SOC tooling, processes, and automation. The role independently performs L2 investigations and L3 response duties for a global security operations team.
Summary Generated by Built In

Are you looking for an opportunity to help solve one of today's biggest business challenges? AI is changing the pace of business, and organizations everywhere are struggling to help their workforce, partners, and customers keep up. At Litmos, we're building the Learning Acceleration Platform that helps organizations build human capability faster—and we're looking for people who are passionate about making a meaningful impact for customers while growing alongside a collaborative, people-first team.

Litmos is the Learning Acceleration Platform that helps organizations build capability faster, adapt at the speed business changes, and scale learning to anyone, anywhere. Combining an intuitive platform, AI-powered capabilities, trusted content, expert services, and a broad ecosystem of integrations, Litmos helps organizations accelerate workforce productivity, improve customer adoption and retention, enable high-performing partners, and reduce organizational risk through continuous learning.

Organizations such as Hewlett Packard Enterprise, Graco, Sabre, and Russell Mineral Equipment trust Litmos to accelerate learning across their workforce, partners, and customers. Today, more than 11K customers with 30 million learners across 150 countries and 37 languages use Litmos to build the capabilities their organizations need to succeed. Backed by Francisco Partners, one of the world's leading technology investment firms, we're investing in the future of learning—and the people who are building it. Learn more at www.litmos.com.


About the Role 

We are looking for a senior, self-directed SOC Analyst to join our lean global security operations team based in Pune. As the sole security operations resource during non-US business hours, you will own the full spectrum of alert triage, incident investigation, and response for your shift. This role requires someone who can function as both an L2 investigator and an L3 responder depending on the situation, without relying on a senior analyst to hand off to. 

Responsibilities 

Incident Investigation & Response 

  • Own the full incident lifecycle during non-US hours — from initial triage through containment, remediation, and documentation 
  • Conduct in-depth investigation of security events across SIEM, EDR, email security, network, identity, and cloud platforms 
  • Perform root cause analysis on confirmed incidents and produce clear, actionable incident reports 
  • Escalate incidents to the Director of Security Operations with a clear situation summary and recommended course of action 
  • Provide detailed shift handoff notes to the US-based security analyst at transition, ensuring full continuity of open investigations 

Process & Documentation 

  • Develop, maintain, and improve incident response playbooks and SOC runbooks 
  • Maintain accurate and up-to-date documentation across all active and closed incidents 
  • Contribute to weekly and monthly SOC metrics, trend analysis, and reporting for the Director of Security Operations 
  • Identify opportunities to improve SOC processes, tooling, and automation and bring recommendations to the team 

Collaboration 

  • Work closely with the US-based security analyst and Director of Security Operations during shift overlap windows to align on priorities, open incidents, and ongoing investigations 
  • Serve as the primary security operations contact for any India-based stakeholders or teams during non-US hours 

Qualifications 

  • Bachelor's degree in Computer Science, Information Technology, Electronics, or a related field (B.E. / B.Tech / BCA / B.Sc. IT preferred)  
  • 4–6 years of experience in SOC or cybersecurity operations, with demonstrated experience performing both L2 investigation and L3 response duties  
  • Hands-on experience with SIEM platforms (Splunk, Microsoft Sentinel, IBM QRadar, or similar)  
  • Strong experience with EDR tools (CrowdStrike Falcon, Microsoft Defender, SentinelOne, or similar)  
  • Advanced log analysis skills across Windows, Linux, cloud (AWS, Azure, GCP), and identity platforms (Active Directory, Azure AD)  
  • Strong working knowledge of the MITRE ATT&CK framework  
  • Demonstrated ability to work independently, make sound decisions under pressure, and manage incidents end-to-end without real-time senior support  
  • Excellent written and verbal communication skills in English — including the ability to write clear incident reports, escalation summaries, and shift handoff notes for a global team  
  • Comfortable working non-US business hours 

Nice to Have 

  • Certifications: CompTIA CySA+, GCIH, GCFE, GCFA, SC-200, or equivalent 
  • Experience with SOAR platforms and alert automation or basic scripting (Python, PowerShell) for SOC workflow improvement 
  • Exposure to cloud security monitoring (AWS GuardDuty, Microsoft Defender for Cloud, Azure Sentinel, etc.) 
  • Experience operating in a small or lean security team with broad individual ownership 
  • Familiarity with GRC concepts and compliance frameworks (SOC 2, ISO 27001, NIST) to support cross-team collaboration 

Salary Range: ₹24,00,000 to ₹32,00,000 plus 10% bonus

As a learning company we believe in the potential of everyone; if you don't have experience in all the details mentioned in this job post, then we still encourage you to apply and we'll get back to you as soon as we can.  

We are an equal opportunity workplace employer. We are committed to the values of Equal Employment Opportunity and provide accessibility accommodations to applicants with physical and/or mental disabilities.

Applicants will receive consideration for employment without regard to their age, race, religion, national origin, ethnicity, age, gender (including pregnancy, childbirth, et al), sexual orientation, gender identity or expression, protected veteran status, or disability.

Skills Required

  • Bachelor’s degree in Computer Science, Information Technology, Electronics, or a related field; B.E., B.Tech, BCA, or B.Sc. IT preferred
  • 4–6 years of experience in SOC or cybersecurity operations
  • Demonstrated experience performing both L2 investigation and L3 response duties
  • Hands-on experience with SIEM platforms such as Splunk, Microsoft Sentinel, IBM QRadar, or similar
  • Strong experience with EDR tools such as CrowdStrike Falcon, Microsoft Defender, SentinelOne, or similar
  • Advanced log analysis across Windows, Linux, cloud platforms, and identity platforms
  • Strong working knowledge of the MITRE ATT&CK framework
  • Ability to work independently, make sound decisions under pressure, and manage incidents end-to-end
  • Excellent written and verbal English communication skills, including incident reporting and escalation summaries
  • Availability to work non-US business hours
  • CompTIA CySA+, GCIH, GCFE, GCFA, SC-200, or equivalent certification
  • Experience with SOAR platforms, alert automation, or basic Python or PowerShell scripting
  • Exposure to cloud security monitoring, including AWS GuardDuty or Microsoft Defender for Cloud
  • Experience working in a small or lean security team with broad individual ownership
  • Familiarity with GRC concepts and SOC 2, ISO 27001, or NIST frameworks
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: San Francisco, CA
213 Employees
Year Founded: 2007

What We Do

Litmos is an online training platform that makes the management and delivery of web & mobile training courses easy. Our platform is fully extensible with our powerful API and out-of-the-box connectors. Litmos is one of the fastest growing learning technology providers in the world, supporting millions of users, in 130 countries in over 24 languages. We pride ourselves on our customer centric approach and continual innovation in the marketplace. It is our mission to enable training to be deployed in minutes not months by any organization.

Similar Jobs

Wolters Kluwer Logo Wolters Kluwer

IT Security Analyst

Information Technology • Software
Remote
Kalyani Nagar, Pune, Mahārāshtra, IND
18996 Employees
Remote or Hybrid
3 Locations
132624 Employees

Binance Logo Binance

Data Analyst

Blockchain • Fintech • Software • Cryptocurrency • Metaverse
In-Office or Remote
19 Locations
7696 Employees
Remote
Shri Bhrigukshetra, BLR, Uttar Pradesh, IND
15967 Employees

Similar Companies Hiring

Kepler  Thumbnail
Artificial Intelligence • Fintech • Software
New York, New York
9 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees
Revel.io Thumbnail
Aerospace • Hardware • Robotics • Software
US
50 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account