Senior Security Analyst -SOC

Posted Yesterday
Be an Early Applicant
Serilingampally, Medak, Telangāna, IND
In-Office
Senior level
Information Technology • Software • Consulting • Cybersecurity
The Role
Manage enterprise Data Loss Prevention operations across cloud, email, endpoint, OT, and removable media. Investigate and remediate DLP incidents, create and tune policies, maintain data identifiers and classification rules, correlate SIEM and security telemetry, monitor platform health, produce operational reports, and serve as a technical escalation point in a 24x7 SOC environment.
Summary Generated by Built In
Role Overview:

The Senior Security Analyst-SOC is responsible for the end-to-end management of Data Loss Prevention operations across the enterprise. This role focuses on investigating DLP alerts generated across cloud, email, endpoint, OT, and removable media channels, handling DLP incidents from detection through remediation, and ensuring data security policies are effectively enforced. The analyst serves as a technical escalation point from L1 and collaborates closely with the Security Operations Center, Incident Response, Compliance, teams to protect sensitive organizational data from unauthorized access, leakage, or exfiltration.

The ideal candidate brings deep hands-on expertise with industry-leading DLP platforms and demonstrates the ability to independently manage the full DLP lifecycle from policy creation and tuning to alert investigation, incident response, and stakeholder reporting with minimal supervision.


Key Responsibilities:

    Monitor and investigate DLP alerts across cloud, email, endpoint, OT, and USB/removable media channels on a day-to-day basis.

    Perform end-to-end DLP incident handling: triage, investigation, root cause analysis, containment, remediation, and closure.

    Classify incidents by severity and data sensitivity, escalate critical incidents to the Stakeholders or management per defined SLAs

    Correlate DLP findings with identity, endpoint, and cloud telemetry to establish full incident context and impact.

    Maintain accurate, detailed documentation of investigations, timelines, and remediation actions.

    Prepare regular DLP operational reports covering alert volumes, incident trends, false positive rates, and policy effectiveness

    Participate in post-incident reviews and contribute to lessons-learned and improvement initiatives

    Design, create, and refine DLP policies covering cloud (CASB), email, endpoint, and OT/industrial environments.

    Tune existing DLP policies to reduce false positives, improve detection accuracy, and align with evolving business requirements

    Maintain and update DLP dictionaries, regular expressions, sensitive data identifiers, and classification rules.

    Monitor DLP platform health, connector status, and policy deployment and tool-related issues.


Required Qualification:

    4 to 6 years of hands-on experience in Data Loss Prevention, Data Security, or a related cybersecurity operations role.

    Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or a related field (or equivalent practical experience)

    Proven experience of handling DLP alert investigation, incident response, and remediation and policy creation, tuning.

    Hands-on experience with one or more DLP platforms: Netskope, Microsoft Purview, Forcepoint DLP, Palo Alto Networks

    Experience with SIEM platforms (Sentinel, Splunk, QRadar) for correlating DLP events with broader security telemetry.

    Relevant Certifications: CySA+, CCSP, CEH, GCIA, GCIH

    Any vendor-specific DLP certifications (Netskope, Forcepoint, Varonis, Palo Alto)


Core Competencies:

    Deep understanding of cloud, email, endpoint, OT, and removable media DLP mechanisms, detection logic, and coverage gaps.

    Ability to independently create, tune, maintain, and govern DLP policies aligned to regulatory and business requirements

    Experience driving DLP incidents end-to-end: from initial detection through containment, user engagement, and formal closure

    Solid grasp of data classification tiers, sensitive data types (PII, PCI, PHI, IP), and their handling obligations

    Ability to correlate data signals across multiple tools and telemetry sources to reconstruct incident timelines and identify root cause

    Effective communication skills for technical and non-technical stakeholders 

    Ability to work in a 24x7 rotational shift environment 




Skills Required

  • 4 to 6 years of hands-on experience in Data Loss Prevention, Data Security, or a related cybersecurity operations role
  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or a related field, or equivalent practical experience
  • Experience handling DLP alert investigation, incident response, remediation, policy creation, and policy tuning
  • Hands-on experience with one or more DLP platforms: Netskope, Microsoft Purview, Forcepoint DLP, or Palo Alto Networks
  • Experience with SIEM platforms including Sentinel, Splunk, or QRadar
  • Relevant certification such as CySA+, CCSP, CEH, GCIA, or GCIH
  • Vendor-specific DLP certification such as Netskope, Forcepoint, Varonis, or Palo Alto
  • Ability to work in a 24x7 rotational shift environment
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
99 Employees
Year Founded: 2022

What We Do

NopalCyber provides integrated offensive and defensive cybersecurity solutions for organizations seeking resilience and compliance. Its offerings include managed extended detection and response, attack surface management, breach and attack simulation, advisory services, and 24/7 security operations. AI-driven products such as Nopal360°, NopalGo, and Cyber Intelligence Quotient help clients quantify, visualize, and reduce cyber risk across their IT environments while tailored service packages broaden access to enterprise-grade protection.

Similar Jobs

MongoDB Logo MongoDB

Technical Director, Builder Relations

Big Data • Cloud • Software • Database
Easy Apply
Remote or Hybrid
India
5550 Employees

Capco Logo Capco

Product Manager

Fintech • Professional Services • Consulting • Energy • Financial Services • Cybersecurity • Generative AI
Remote or Hybrid
India
6000 Employees

Capco Logo Capco

Visualisation Analyst (Liquidity & Treasury)

Fintech • Professional Services • Consulting • Energy • Financial Services • Cybersecurity • Generative AI
Remote or Hybrid
India
6000 Employees

CSC Logo CSC

Security Engineer

Fintech • Legal Tech • Software • Financial Services • Cybersecurity • Data Privacy
Remote or Hybrid
2 Locations
8500 Employees

Similar Companies Hiring

Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees
Kepler  Thumbnail
Fintech • Software
New York, New York
6 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account