Confiz is seeking an experienced Security Analyst. This role focuses on initial analysis, documentation, and escalation of security events while following established SOC procedures. You will collaborate closely with senior analysts and management to ensure timely and effective incident handling.
Responsibilities
Act as the initial triage point for security alerts and incidents
Monitor and correlate alerts from SIEM, EDR, and firewall logs
Perform basic log analysis to identify suspicious or anomalous activity
Escalate validated or suspicious findings to senior analysts and management
Follow standard operating procedures (SOPs) and identify opportunities for improvement
Map basic security incidents to MITRE ATT&CK tactics during documentation
Identify and escalate data privacy–related concerns
Accurately document incidents and actions in ticketing systems
Support endpoint and network monitoring activities
Participate in shift handovers and daily SOC briefings
Use GenAI tools (e.g., ChatGPT) to assist with threat research and report summarization when appropriate
Qualifications
1+ year of experience in IT or security operations (internships/bootcamps acceptable)
Ability to triage low-level security alerts and escalate incidents appropriately
Basic log analysis and alert correlation using SIEM, EDR, and firewall data
Familiarity with SIEM tools (Splunk, IBM QRadar) and endpoint security tools (Windows Defender, CrowdStrike)
Understanding of incident response fundamentals and common indicators of compromise (IOCs)
Knowledge of networking fundamentals (TCP/IP, DNS, HTTP/S, ICMP)
Basic Windows and Linux troubleshooting skills
Experience with ticketing systems (ServiceNow, Jira) and SOC documentation practices
Foundational understanding of security concepts (CIA triad, malware, phishing, brute force, DDoS)
Exposure to cloud platforms (AWS/Azure), cloud service models, and containerization basics
Strong attention to detail, communication, and documentation skills
Familiarity with GenAI tools (e.g., ChatGPT) for threat research and reporting
Security certifications (Security+, Network+, CySA+, GSOC) or actively pursuing
We have a global team of amazing individuals working on highly innovative enterprise projects & products. Our customer base includes Fortune 100 retail and CPG companies, leading store chains, fast growth fintech, and multiple Silicon Valley startups.
What makes Confiz stand out is our focus on processes and culture. Confiz is ISO 9001:2015 (QMS), ISO 27001:2022 (ISMS), ISO 20000-1:2018 (ITSM) and ISO 14001:2015 (EMS) Certified. We have a vibrant culture of learning via collaboration and making workplace fun.
People who work with us work with cutting-edge technologies while contributing success to the company as well as to themselves.
To know more about Confiz Limited, visit https://www.linkedin.com/company/confiz/