The low-code platform for your high-stakes software.
Senior Security Analyst
Location
India
Posted
2 days ago
Salary
0
Seniority
Senior
Job Description
Senior Security Analyst
OutSystems
• Own complex incident investigations end-to-end, from detection to containment and remediation. • Conduct root cause analysis and post-incident reviews. • Continuously hunt for anomalies and threats across on-prem and cloud environments using threat intelligence, analytics, and behavioral patterns. • Monitor global threat actor activity, transform raw intel into actionable defense strategies, and collaborate with internal teams to harden security posture of OutSystems. • Work with engineering and DevSecOps teams to improve detection coverage, enrich SIEM use cases, and automate response processes. • Develop, optimize, and maintain incident response and threat hunting playbooks, ensuring operational excellence and consistency. • Identify gaps, suggest improvements, and contribute to capability building for detection, response, and threat modeling.
Job Requirements
- 4–6+ years of experience in a SOC, MDR, or enterprise security team with hands-on IR, TI, or Threat Hunting focus.
- In-depth knowledge of the MITRE ATT&CK Framework, Cyber Kill Chain, and adversary TTPs.
- Strong understanding of SIEM tools (e.g., Splunk, Sentinel, QRadar), EDR, and other detection technologies.
- Proficiency with scripting or query languages (e.g., Python, PowerShell, KQL, YARA).
- Familiarity with AWS, Azure, and/or other cloud environments.
- Familiarity with web technologies and protocols (web applications, APIs, service-oriented architectures) and the threats against them.
- Experience with log analysis, forensic tools, and threat intelligence platforms (e.g., MISP, ThreatConnect).
- Ability to translate technical findings into clear, actionable insights for technical and non-technical audiences.
- Strong written and verbal communication skills, with experience presenting to stakeholders or executive teams.
- Bachelor’s degree in Computer Science, Information Security, or a related field, or equivalent experience.
Benefits
- Professional development opportunities
- Flexible working hours
- Health insurance
- Paid time off
- Global team events
Related Guides
Related Categories
Related Job Pages
More Security Analyst Jobs
Role Description Our client in IT/Tech sector is seeking a SOC Analyst II to join the security operations team. This is a hands-on, second-line role at the center of the client's detection and response program. The ideal candidate will spend each day: - Investigating security alerts that have escalated beyond the initial triage layer. - Distinguishing genuine threats from false positives. - Driving confirmed incidents through containment, remediation, and resolution. - Operating in a fast-paced, telemetry-rich environment spanning cloud and on-premises infrastructure, thousands of endpoints, and a modern security stack that includes SIEM, EDR, and email security platforms. Beyond day-to-day monitoring, the ideal candidate will: - Take ownership of improving the effectiveness of the security operations function. - Contribute to maturing detection content. - Reduce alert fatigue by tuning false positives. - Enhance incident response runbooks and playbooks to ensure consistent handling across shifts. - Work closely with senior SOC analysts, threat hunters, and detection engineers to strengthen technical expertise and progress toward a Tier 3 SOC Analyst or specialized Security Engineering career path. This is a fully remote opportunity available on either a full-time or contract basis. Qualifications - 2 to 4 years of hands-on SOC, incident response, or security analyst experience. - Working knowledge of SIEM platforms such as Splunk, Microsoft Sentinel, or QRadar. - Familiarity with EDR tooling including CrowdStrike, SentinelOne, or Microsoft Defender. - Solid grounding in networking fundamentals, TCP/IP, DNS, and common attack techniques. - Ability to interpret logs and telemetry to reconstruct an attack timeline. - Strong written documentation and clear communication under time pressure. Requirements - Security+, CySA+, GCIH, or equivalent certification. - Experience with SOAR platforms and automation scripting in Python or PowerShell. - Working familiarity with the MITRE ATT&CK framework and threat-informed defense. - Exposure to cloud security monitoring in AWS or Azure.
Role Description The Lead Information Security Analyst is a senior cybersecurity leader responsible for protecting the organization’s digital ecosystem across product development, manufacturing, and enterprise IT systems. This role ensures the security of connected medical/surgical devices, intellectual property, and regulated environments, while maintaining compliance with cybersecurity guidance, ISO standards, and global regulations. This position plays a critical role in enabling secure product innovation, patient safety, and operational resilience across the device lifecycle. Key Responsibilities: - Security Operations & Incident Response - Lead detection and response for incidents affecting: - Manufacturing systems (OT/ICS) - Connected medical/surgical devices - Enterprise IT environments - Manage SOC operations with prioritization of IT security, production integrity, and supply chain impact - Investigate and respond to incidents involving: - Intellectual property theft - Disruptions and/or ransomware affecting production lines - IT vulnerabilities - Lead regulatory-aligned incident handling and disclosure (local/global authorities) - Production & IT Security (Critical Focus Area) - Partner with IT, production, and engineering to embed secure-by-design principles across the IT & product lifecycle - Conduct threat modeling and security risk assessments for surgical and medical devices - Support compliance with: - IT security guidance - SOX - ISO27001 - EU GDPR / NIS2 - Identify and remediate product vulnerabilities (secure firmware, APIs, connectivity) - Support coordinated vulnerability disclosure (CVD) processes - Manufacturing & Operational Technology (OT) Security - Secure manufacturing environments (plants, production lines, robotics, control systems) - Implement segmentation between IT and OT networks - Lead vulnerability and patch management for industrial control systems - Reduce risk to production continuity and product integrity - Threat & Vulnerability Management - Monitor threat landscape with emphasis on: - Nation-state attacks targeting IP - Supply chain compromise - Medical device exploitation - Lead proactive threat hunting across: - Cloud environments - OT/manufacturing systems - Product telemetry (if applicable) - Drive enterprise-wide vulnerability management with prioritization based on patient and product impact - Security Engineering & Architecture - Implement Zero Trust principles across corporate IT and manufacturing environments - Drive consolidation and optimization of: - SIEM/XDR (Sentinel, Defender, etc.) - Identity platforms (Entra ID, PAM) - Data protection tools (DLP, encryption for IP and regulated data) - Secure cloud platforms supporting R&D, analytics, and digital health capabilities - Regulatory Compliance & Risk Management - Ensure alignment with: - SOX - ISO 27001 - NIST CSF / NIST 800-53 - Global data protection regulations (GDPR where applicable) - Lead cyber risk assessments tied to patient safety, product risk, and regulatory exposure - Support internal and external audits and regulatory inspections - Translate cybersecurity risk into business impact (recalls, production disruption, liability) - Data Protection & Intellectual Property Security - Protect sensitive data, designs, and trade secrets - Implement controls for: - Secure collaboration with third-party manufacturers and partners - Data encryption and access governance - Monitor for data exfiltration and insider threats - Leadership & Mentorship - Provide technical leadership across security operations and engineering functions - Mentor analysts and engineers on: - IT/OT security - Production security - Incident response in regulated environments - Act as escalation point for high-impact security events affecting products or manufacturing - Stakeholder Collaboration - Partner with: - CIO - CISO - Chief Product/Engineering Officers - Quality & Regulatory Affairs - Manufacturing / Plant leadership - Legal and Compliance teams - Communicate cybersecurity risks in terms of: - IT security & safety - Regulatory impact - Revenue / production risk Qualifications - Bachelor’s degree in Cybersecurity, Engineering, IT, or related field (or equivalent experience) - 5+ years of experience in cybersecurity, with exposure to regulated industries or manufacturing environments, with 7+ years highly preferred - Hands-on experience with: - SIEM/XDR platforms - Endpoint, network, and cloud security - Vulnerability and incident response programs - Strong knowledge of: - Security frameworks (NIST, ISO 27001) - Identity and access management - Network segmentation and Zero Trust principles Requirements - Experience in medical device, healthcare technology, or manufacturing (OT/ICS) - Familiarity with: - ISO27001 - NIS2 - SOX - NIST CF 800-53 - EU GDPR - Preferred Certifications: CISSP, CEH, GIAC, GICSP (Industrial Control Systems) or HCISPP (strong plus) - Experience with: - IT/Production security testing - Threat modeling (e.g., STRIDE) - Secure SDLC practices Benefits - Competitive compensation - Excellent healthcare including medical, dental, vision and prescription coverage - Short & long term disability plus life insurance -- cost paid fully by CONMED - Retirement Savings Plan (401K) -- CONMED matches your contributions dollar for dollar, with the potential for up to 7% per pay period - Employee Stock Purchase Plan -- allows stock purchases at discounted price - Tuition assistance for undergraduate and graduate level courses
• Protect sensitive data and critical assets from current and emerging threats. • Analyze problems, structure issues and perform analysis. • Partner cross-functionally to identify trends and resolve issues. • Ensure initiative/project goals are met in a timely manner.
Senior Analyst, Workday Functional Security
SyscoA multinational distributor of food products, Sysco offers careers in information technology, sales, warehousing, and as drivers and encourages individuals tran
Role Description The Senior Workday Functional Security Analyst is responsible for establishing, maintaining, and evolving the functional security framework for Workday HCM. This role serves as the primary advisor on security design, access strategy, risk management, compliance requirements, and security impacts associated with business process, organizational, and regulatory changes. The position partners with HRIS, Shared Services, Internal Audit, and business stakeholders to ensure Workday security supports business objectives while maintaining appropriate controls, governance, and scalability. The role serves as the primary liaison between business requirements and technical security execution, providing consultation, decision support, reporting, and security expertise across the global Workday. Duties and Responsibilities - Serve as the primary functional security advisor for Workday by providing consultative guidance on access requests, evaluating business requirements, and recommending security approaches aligned to established standards, risk considerations, and business objectives. - Design, maintain, and optimize Workday security roles, access models, and functional security frameworks to support a scalable global operating model. - Serve as a functional security consultant to HRIS functional teams, supporting HRIS owned stakeholder engagements by evaluating security impacts associated with new business processes, organizational changes, system enhancements, and projects. - Conduct access reviews, segregation of duties assessments, and compliance-related security activities to identify and mitigate risk. - Develop and maintain security documentation, standards, procedures, training materials, and knowledge resources. - Create and analyze security reporting, metrics, dashboards, and audit support documentation for leadership, compliance, and business stakeholders. - Support investigation and resolution of complex security-related issues, access concerns, and escalations. - Partner with technical security resources, Workday consultants, and external partners to support security enhancements and continuous improvement initiatives. Qualifications - Bachelor’s degree in information technology, computer science, business or equivalent education/experience/training. Experience Required - Minimum of five (5) years of experience supporting Human Resources Information Systems (HRIS), Workday HCM, security administration, business process configuration, or related functional support activities. - Demonstrated experience evaluating business requirements and translating them into security, process, or technology solutions. - Experience supporting security audits, access reviews, compliance initiatives, governance activities, or risk assessments. - Experience partnering with business stakeholders and providing consultation on system functionality, security impacts, and operational processes. - Demonstrated analytical and problem-solving skills with the ability to evaluate complex issues and recommend solutions. Experience Preferred - Experience supporting Workday Security in a global organization. - Experience with role-based security design, business process security policies, and security framework development. - Experience supporting SOX, privacy, audit, compliance, or internal controls programs. - Experience supporting large-scale HR technology environments and global deployments. Licenses/Certifications Preferred - Workday Pro Security, Workday Pro HCM, Workday Security Administration Certification, Compliance, Audit, or Risk related certifications preferred. Skills and Abilities - Strong understanding of Workday security concepts including security groups, role assignments, domain security policies, business process security policies, constrained and unconstrained security, and intersection security. - Ability to assess business requirements and determine appropriate security solutions while balancing compliance, risk, and operational needs. - Strong understanding of HR business processes and how security impacts user experience, data access, workflow execution, and compliance requirements. - Ability to analyze complex security issues and provide practical recommendations. - Strong stakeholder management and influencing skills. - Experience presenting recommendations and findings to leaders and business partners. - Strong documentation, communication, and organizational skills. - Ability to work independently and manage competing priorities. - Demonstrated capability to operate in ambiguous situations and provide decision support. - High degree of integrity and attention to confidentiality. Benefits - For information on Sysco’s Benefits, please visit SyscoBenefits.com . Company Description Sysco is the global leader in foodservice distribution. With over 71,000 colleagues and a fleet of over 13,000 vehicles, Sysco operates approximately 333 distribution facilities worldwide and serves more than 700,000 customer locations. We offer our colleagues the opportunity to grow personally and professionally, to contribute to the success of a dynamic organization, and to serve others in a manner that exceeds their expectations. We’re looking for talented, hard-working individuals to join our team. Come grow with us and let us show you why Sysco is at the heart of food and service.




