Job Description
Location: Bengaluru, India
Experience: Junior to mid-level
Schedule: Rotating shifts supporting 24x7 operations
We are seeking a curious, detail-oriented Security Analyst to join our new Integrated Security Operations Center (ISOC) in Bengaluru.
You will monitor, investigate, and respond to security alerts across our technology environment. Your core responsibility is 24x7 alert triage: separating suspicious activity from routine events, assessing impact, and taking timely, authorized action.
As operational needs and your skills evolve, you will also contribute to incident response, detection engineering, threat intelligence, and security improvement projects.
What you'll doSecurity monitoring, triage, and response
- Monitor and investigate alerts from SIEM, EDR, identity, email, network, and cloud security platforms.
- Correlate logs and evidence to assess alert validity, severity, scope, and business impact.
- Follow response playbooks perform authorized containment and remediation escalate complex or high-impact issues.
- Maintain clear investigation records, document decisions, and provide thorough shift handoffs.
- Partner with security, IT, and business teams to resolve issues and strengthen response quality.
Incident response and improvement
- Support incident response through evidence collection, timeline development, scoping, containment, and recovery.
- Contribute to post-incident reviews and improvements to playbooks, procedures, and operational knowledge.
- Identify recurring alert patterns, workflow gaps, and automation opportunities.
Detection engineering and threat intelligence
- Help develop, test, tune, and document detection rules to improve coverage and reduce false positives.
- Review relevant threat intelligence and apply it to investigations and detection improvements.
- Support indicator validation and guided threat-hunting activities.
Special projects
- Contribute to projects such as onboarding security data sources, evaluating tools, improving reporting, and building lightweight automation.
- Take on additional security operations responsibilities aligned with business needs and development goals while maintaining operational coverage.
- Foundational knowledge of security operations, common attack techniques, and incident investigation.
- Familiarity with Windows, Linux, networking, authentication, and enterprise or cloud services.
- Experience with-or practical exposure to-security alerts, logs, and tools such as SIEM or EDR.
- Strong analytical judgment and the ability to follow procedures while knowing when to escalate.
- Clear written and verbal communication skills, including strong documentation and cross-shift collaboration.
- Willingness to work scheduled shifts, including nights, weekends, and public holidays.
- Typically 1-4 years of relevant experience in security operations, incident response, IT operations, or a related field. Strong internships, labs, projects, or equivalent practical experience are also welcome.
- A degree in cybersecurity, computer science, or a related field-or equivalent practical experience.
- Experience investigating phishing, malware, suspicious authentication, endpoint, or cloud security events.
- Familiarity with MITRE ATT&CK and threat-informed investigations.
- Basic scripting or query skills in Python, PowerShell, SQL, KQL, or SPL.
- Exposure to SOAR platforms, detection development, or incident response exercises.
- Certifications such as Security+, CySA+, or security-platform certifications. Helpful, but not required.
You will help shape a new security operations center while building hands-on investigative experience. Over time, you can take greater ownership of investigations and contribute more deeply to incident response, detection engineering, threat intelligence, and security improvement initiatives.
Key ResponsibilitiesSecurity Monitoring - Security Tool Design and Development:
-Plans and performs in-depth security assessments across a variety of products and services to identify potential vulnerabilities.
-Creates testing tools to help engineering teams identify security-related weaknesses.
-Conducts security design and provides recommendations and guidance for improvement.
-Participates in reviews of security alerts.
Event Response:
-Recognizes and escalates complex security violations to senior team members.
-Follows protocols to take appropriate actions needed to contain and mitigate events.
-Contributes to post-event reviews to identify areas for improvement.
Compliance:
-Contributes to compliance assessments to identify gaps and ensure compliance with internal and external obligations.
-Reviews security compliance deliverables and ensures adherence to policies and industry standards.
-Implements measures to ensure compliance with internal and external obligations , collaborating with relevant stakeholders.
-Maintains inventory systems from a security perspective.
Business Continuity Support:
-Contributes to the development of business continuity and disaster recovery plans, processes, and procedures.
-Ensures the execution of business continuity plans to support critical organizational systems and data in the face of disruptions.
-Participates in assessing readiness for certification and/or audit to identify areas for improvement.
Data Security and Privacy:
-Provides security best judgment and recommends best practices of data security using various tools and techniques such as encryption, hashing, masking, and access management to ensure the confidentiality and integrity of sensitive information.
-Reviews documentation and procedures to identify areas for improvement in data security practices.
Research and Innovation:
-Demonstrates advanced knowledge of industry security practices and seeks opportunities to expand knowledge through self-study and training.
-Stays updated on emerging trends to stay ahead of evolving threats and vulnerabilities.
-Explores novel techniques to solve unique security problems.
Core Responsibilities
Planning & Execution:
-Independently manages work, monitoring timelines and deliverables to ensure projects or initiatives stay on track and meet requirements. Proactively prioritizes work and adapts to resource or timeline shifts, suggesting adjustments to maintain project efficiency.
Collaboration & Partnership:
-Collaborates across teams to align on expectations and achieve shared objectives. Builds and maintains a comprehensive understanding of business, stakeholder, and/or customer needs to build and support effective partnerships. Actively listens to diverse perspectives and asks questions to ensure understanding of others.
Problem Solving:
-Independently identifies and addresses standard and non-standard issues in accordance with standard practices, escalating more complex issues as appropriate. Analyzes data and/or information from multiple sources to troubleshoot standard and non-standard errors. Contributes to knowledge sharing and best practices.
Continuous Learning:
-Embraces continuous learning by actively seeking to build knowledge and new skills and/or tools and staying current with industry trends and best practices. Seeks out and leverages feedback and training to improve skills. Contributes to a culture of continuous learning and knowledge sharing with team members.
Continuous Improvement:
-Develops ideas and recommends updates to increase the efficiency and effectiveness of processes, protocols, and workflows within a team. Seeks input from team members on alternative approaches and methods for improving work.
More Info
Key Skills
KQL
Detection engineering
Cloud security platforms
SOAR platforms
Windows
About Company
Only Oracle brings together the data, infrastructure, applications, and expertise to power everything from industry innovations to life-saving care. And with AI embedded across our products and services, we help customers turn that promise into a better future for all. Discover your potential at a company leading the way in AI and cloud solutions that impact billions of lives. True innovation starts when everyone is empowered to contribute. That's why we're committed to growing a workforce that promotes opportunities for all with competitive benefits that support our people with flexible medical, life insurance, and retirement options. We also encourage employees to give back to their communities through our volunteer programs. We're committed to including people with disabilities at all stages of the employment process. If you require accessibility assistance or accommodation for a disability at any point, let us know by emailing accommodation-request_mb@oracle.com or by calling 1-888-404-2494 in the United States. Oracle is an Equal Employment Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability and protected veterans' status, or any other characteristic protected by law. Oracle will consider for employment qualified applicants with arrest and conviction records pursuant to applicable law.


