Bloomreach logo
Bloomreach

Bloomreach is a computer software company that is on a mission to empower its clients to seamlessly personalize their customer experience and, in turn, successf

Security Analyst

Location

India

Posted

69 days ago

Salary

0

Seniority

Mid Level

Job Description

Security Analyst

Bloomreach

Role Description We are looking for a Security Analyst to join the Bloomreach GIST (Global Information Security & Technology) team to help protect our environment from threats, vulnerabilities, and sophisticated attackers. Your work will have a significant impact on numerous customers across various e-commerce verticals and hundreds of millions of online users. As a core member of our globally distributed 24/7 Security Operations Team, you are expected to work from one of our India offices (Bengaluru) or from home. This role is ideal for someone who has built a solid foundation in security operations and is ready to take the next step — owning more complex work, developing specialised skills, and contributing more meaningfully to the team's detection and response mission. Your job will be (but not limited to): - Monitor, analyze & interpret security/system/application/infrastructure logs for events, configuration irregularities & potential incidents. - Leverage security tools, custom built dashboards and/or proactive identification approaches to detect anomalous activities. - Monitor Cloud infrastructure for security-related events. - Monitor threat/vulnerability landscape and security advisories, coordinate and escalate as appropriate. - Collaborate with Product Security, Infrastructure Security, and GRC teams on cross-functional investigations and audit-related tasks as needed. - Work with application security teams, product specialists, GRC, and legal teams on active incidents and/or investigations. - Participate in a major incident call, document incident report summaries. - Document, follow and execute standard operating procedures (SOPs). - Documenting/Managing/maintaining & following use cases, playbooks and/or knowledge base articles. - Work on incidents, requests related to security. - Develop and maintain security detection use cases and alerts within SIEM platforms. - Design and implement automation workflows using SOAR or similar security orchestration tools. - Working knowledge of AI/LLM tools (e.g., Gemini, ChatGPT, Claude) and their application in security operations. - Understanding of authentication mechanisms, including private/public key concepts, familiarity with command-line interfaces (CLI), IDE-based tools, and agent-based workflows. - Awareness of API usage, token management, and secure handling of credentials. - Own responsibilities within a shift with a positive mindset towards growth & upskilling. - Engage & escalate issues as necessary. Qualifications - 3+ years of hands-on experience as part of a 24/7 Security Operations team or Cyber Fusion Center team supporting any one of the following as minimum: SaaS platform Security, Cloud Security, API/Container Security, Threat Intel/Hunting, Vulnerability Management. - Hands-on experience and deep knowledge on usage of SIEM (Splunk preferred), SOAR, EDR (modules like TI, VM, DLP). - Hands-on experience in using any of CSPM tools (SentinelOne, Falcon Horizon, Wiz, Sysdig, Prisma cloud, MS Defender). - Hands-on experience assessing, interpreting & managing vulnerabilities using relevant tools (CS Spotlight, QualysGuard, Rapid 7). - Hands-on experience of either AWS or GCP is a must. - Understanding of risk frameworks. - Ability to assess emerging trends & threats in the cyber security space. - Good analytical, problem-solving, and interpersonal skills. - Knowledge of NIST framework, OSINT standards, MITRE ATT&CK framework & cybersecurity incident lifecycle. - Knowledge of network protocols, operating systems (Linux, macOS, Windows), and security fundamentals. - Basic scripting skills (Python, Bash, or PowerShell) for automating repetitive tasks. - Entry-level or intermediate security certifications (e.g., CompTIA Security+, CySA+, GSEC, or equivalent). - Previous experience in a SaaS, e-commerce, or technology company. Requirements - Mandatory to work in a 24/7 rotation shift & weekends. - Possess excellent command on communication in English being a good listener, speaker & reader. - Experience working in a global team or understanding dialects from various parts of the world. - Growing independence in handling security events — able to work through moderate issues with some guidance, applying best practices and established procedures. - Strong analytical thinking and attention to detail, with a developing ability to connect findings across data sources during investigations. - Good written and verbal communication skills — able to document investigations clearly and provide accurate status updates. - Curious and eager to learn — actively seeks out new knowledge about threats, tools, and techniques. - Team-oriented with a collaborative, low-drama approach to working with colleagues across functions and time zones. - Proactive mindset — takes initiative to improve personal skills and contribute to the team's knowledge and processes. Benefits - A great deal of freedom and trust; no corporate rules or long approval processes. - Defined values and behaviors embedded in processes like recruitment, onboarding, feedback, and performance review. - Flexible working hours to accommodate your working style. - Virtual-first work environment with several Bloomreach Hubs available across three continents. - Company events to experience the global spirit of the company. - Support for volunteering activities — every Bloomreacher can take 5 paid days off to volunteer. - Employee Assistance Program with counselors for non-work-related challenges. - Subscription to Calm - sleep and meditation app. - ‘DisConnect’ days where Bloomreachers globally enjoy one additional day off each quarter. - Extended parental leave up to 26 calendar weeks for Primary Caregivers. - Restricted Stock Units or Stock Options based on role, seniority, and location. - Participation in the company's success through the company performance bonus. - Employee referral bonus of up to $3,000 paid out immediately after the new hire starts. - Celebration of work anniversaries — Bloomversaries! Company Description Bloomreach is building the world’s premier agentic platform for personalization. We’re revolutionizing how businesses connect with their customers, building and deploying AI agents to personalize the entire customer journey. We power personalization for more than 1,400 global brands, including American Eagle, Sonepar, and Pandora.

Related Job Pages

More Security Analyst Jobs

Endava logo

IT Security Analyst

Endava

Technology is our how. And people are our why.

Security Analyst69 days ago
Full TimeRemoteTeam 10,001+Since 2000H1B No Sponsor

• Monitor, manage, and administer IT Security specific technical control solutions (e.g. Content filtering, IDS/IPS, Firewall, End point protection, etc..) • Monitor and respond to information security issues related to the systems and workflow to ensure security policies and procedures are enforced. • Administer and monitor security profiles, review security violation reports, and investigate possible security exceptions. • Coordinate response to information security incidents. • Collaborate with IT management, legal, compliance and other applicable teams to manage vulnerability exposures. • Assist in the development and implementation of security policies and procedures (e.g., user log-on and authentication rules, security breach escalation procedures, security auditing procedures and use of firewalls and encryption routines). • Create, manage and maintain user security awareness. • Conduct security research in keeping abreast of latest security issues. • Involved in the evaluation of products and/or procedures to enhance productivity and effectiveness.

Tennessee
Job Closed

Coordinator, Precinct Security

NSW Government

The New South Wales (NSW) Government serves as the governing body for Australia’s most populous state, dedicated to delivering programs and services that enha

Security Analyst69 days ago

Coordinate and oversee security, safety, and risk management activities in public spaces. Engage with stakeholders, monitor compliance, and respond to incidents to ensure safe operations during events and high-traffic activities.

Australia
Job Closed
NuHarbor Security logo

Security Analyst

NuHarbor Security

Cybersecurity services you want from a team of experts you can trust.

Security Analyst69 days ago
Full TimeRemoteTeam 51-200H1B No Sponsor

• Responsible and accountable for analyzing security alerts, events, and trends to communicate the value of NuHarbor services. • Conduct investigations to provide actionable, context relevant, escalations to clients. • Provide analysis and interpretation of vulnerability scans and assessments. • Ensure client facing and internal escalations are serviced in a timely fashion. • Identify and communicate security gaps and potential mitigations. • Identify and scope opportunities for improvements in efficiency, quality, maturity, and capabilities. • Maintain current certifications and training relevant to their role as defined in the NuHarbor Career Course Toolkit. • Develop, implement, and improve documentation and operational processes. • Ensure reports are generated to standard and on-schedule. • Perform threat hunting in client environments. • Proactively identify and communicate internal and client risks. • Perform intelligence gathering and analysis to influence technical control development, client security program maturity, and client attack surface defense. • Continually research the cyber industry to stay up to date on current threats, threat actor’s tactics and techniques, and emerging vulnerabilities.

Vermont
$94K - $115K / year
Job Closed
GTT logo

Security Analyst

GTT

Greater Technology Together

Security Analyst69 days ago
Full TimeRemoteTeam 1,001-5,000H1B Sponsor

Job Title: Security Analyst Location: UK remote with travel as and when required Shift Pattern: 24/7 shift rota Grow Your Career with GTT! Join GTT to be part of a global mission to simply and securely connect people and data through innovative, AI-driven solutions. We empower curious, adaptive professionals to take ownership of their work, offering a culture where your ideas have a visible, real-world reach. If you are energized by complex challenges and a supportive team that lifts each other up, GTT is the place to build a rewarding career. Role Summary: The CSOC team at GTT specializes in providing Managed Detection and Response (MDR) services that meet and exceed government and certification body standards. Collaborating closely with our high-value customer base, the team delivers a wide range of security services, including Security Incident & Event Management, ensuring top-notch protection and peace of mind for our clients. The GTT SIEM platform is essential for identifying customer security incidents. One of the primary tasks of our security analysts is to deeply analyse the outputs of the SIEM environment and guide our customers toward effective remediation actions, successfully mitigating risks to their corporate and hosted environments Duties and Responsibilities: - Providing analysis of SIEM alerts leading to enhanced customer security - Work with customers to enhance security incident response procedures - Enhance internal investigation process and identify additional toolsets required for rapid incident turnaround - Be part of a 24/7 customer support team providing first level diagnosis for our hosting and network customers. - Identifying improvements and advising on best practice. - Manage 3rd party vendor support as required. - Adhere to team processes and the direction of the team - Work with Senior analysts / engineers to implement platform optimizations and tuning through structured change process - Perform upgrades to SIEM environment from operating system to application to ensure highest level of platform security Required Experience/Qualifications: - Proficiency in Security Information and Event Management (SIEM) platforms, particularly Splunk. - Demonstrated experience in analysing and responding to security incidents. - Strong understanding of cybersecurity principles and best practices. - Experience in threat detection, analysis, and mitigation. - Familiarity with incident response procedures and playbooks. - Excellent analytical and problem-solving skills. - Strong communication skills to collaborate effectively with stakeholders and customers. - Relevant security qualifications are a plus Hours/Travel/Shift: - Varied shift hours: Occasional extended hours may be required during critical incidents and platform upgrades. SC clearance will be required. Core Competencies - Accuracy and Attention to Detail: Understanding the necessity and value of accuracy; ability to complete tasks with high levels of precision. - Managing Multiple Priorities: Knowledge of effective self-management practices; ability to manage multiple concurrent objectives, projects, groups, or activities, making effective judgments as to prioritizing and time allocation. - Problem Solving: Knowledge of approaches, tools, and techniques for recognizing, anticipating, and resolving organizational, operational, or process problems; ability to apply knowledge of problem-solving appropriately to diverse situations. - Root Cause Analysis: Knowledge of the concepts, principles, and techniques of root cause analysis (RCA); ability to use a structured approach to identify the underlying causes of problems in a particular environment and the changes needed to prevent recurrences. - Cybersecurity Practices: Understanding of cybersecurity principles, protocols, and best practices; ability to apply security measures to protect network and data assets. - IP Technologies and Protocols: Basic theoretical knowledge of IP technologies and protocols. Our Commitments: Commitments drive the speed and relevance required to transform our culture and deliver extraordinary value to our customers. By embracing these commitments together, we create a thriving environment where we lift each other up and achieve mutual success. - Adaptive Mindset: We meet change head-on to build the capabilities we need now. We take personal ownership of our professional development to keep pace with change and actively drive it. - Collective Impact: We treat innovation as a team sport, working powerfully together to create extraordinary impact. We collaborate openly and with a shared purpose and amplify our unique human strengths to solve complex challenges that technology alone cannot. - Customer Ownership: We own our customers’ success, whether an internal stakeholder or an external client. We take full accountability, anticipate their needs and create smooth experiences to build trust with every touchpoint. In an automated world, personal ownership is GTT’s competitive edge. #LI-RD1 #LI-Remote

United Kingdom