Security Operations Analyst

Mode Analytics
Mode Analytics

Software Engineering, IT, Operations · Full-time

Bengaluru, Karnataka, India

Posted on Sep 24, 2026

The Role:

The Security Operations Engineer position at ThoughtSpot will be a hands-on representative of the information security team and will assist with security incident management and vulnerability remediation. This is a technical role that requires a solid understanding of information security, incident response, and vulnerability management. This role will enhance our automation of vulnerability management, analyze results, and provide relevant reporting to stakeholders. This position requires organizational skills, analytic skills, quick reaction, attention to detail, and technical expertise to protect the company’s assets.

What You'll Do:

  • Respond to security alerts to support issue resolution and minimize the impact of security events
  • Research security issues and work with internal teams to find and track resolution.
  • Assist with vulnerability identification and remediation
  • Help manage and improve the issue-tracking process
  • Collaborate with remediation teams for process improvement opportunities
  • Ensure security tickets are properly organized and tracked
  • Assist with the creation and maintenance of incident response playbooks
  • Create and enhance operational metrics to ensure the security programs are effective
  • Automate existing processes as appropriate

What You Bring:

  • Security Operations & Analysis: 3+ years of hands-on experience in Security Operations Center (SOC) environments, with expertise in security monitoring, incident detection & response, threat intelligence, and vulnerability management. Proven ability to monitor and triage security alerts from SIEM, EDR, cloud, and other security technologies; investigate suspicious activities; and correlate events across multiple data sources.
  • Enterprise Infrastructure & Security: Hands-on proficiency in deploying and operating enterprise-scale security solutions across cloud and on-premises environments, with a strong understanding of security principles, network architecture, and modern development practices. Experience integrating and analyzing multi-source telemetry across endpoint, identity, cloud, and DLP platforms to provide comprehensive security visibility.
  • Automation & Development: Scripting or software development expertise (e.g., Python) to automate security workflows of routine tasks and Improve SOC workflow.
  • AI Tools & Agent Workflows: Practical experience adopting AI technologies, including LLM-based assistants, copilots, and autonomous agents, to improve security operations and investigation workflows. Experience with prompt engineering, tool orchestration, and MCP/API integrations to automate analysis and enhance SOC efficiency.
  • Process Adherence: Ensure all security incidents are detected, investigated, and escalated within defined SLAs and SOC procedures.Maintain timely and accurate incident documentation and ensure prompt escalation of critical incidents.
  • Problem Solving & Threat Mindset: Demonstrate strong analytical capabilities to investigate complex security incidents, adopt an offensive security mindset, and apply structured problem-solving methodologies to identify root causes and drive effective resolutions
  • Collaboration & Communication: Self-motivated, detail-oriented team player capable of working independently or in distributed teams, with excellent communication skills to tailor technical insights for diverse stakeholders.
  • Relevant certifications such as CEH, GCIH, CompTIA Security+, AWS, GCP or equivalent credentials.
  • Academic Background in Computer Science, Cyber Security or related field
  • Familiarity with various security management tools (Eg: EDR, SIEM, DLP, Email Security, Threat & Vulnerability Management)