Security Operations Analyst
ThoughtSpot · Bengaluru
- Experience3–4 yrs
- SalaryNot disclosed
- Work modeonsite
- Levelmid
- Posted22 Sept 2026
About ThoughtSpot
ThoughtSpot is hiring in Bengaluru in technology software. This role looks for around 3+ years of experience.
Skills
- information security
- incident response
- vulnerability management
- security monitoring
- threat intelligence
- SIEM
- EDR
- cloud security
- network security
- Python
- prompt engineering
- MCP/API integrations
- security principles
- network architecture
- DLP
- email security
The role
A security operations analyst at a software product company investigates security incidents, manages vulnerability management, and applies threat intelligence to protect enterprise environments. The role also automates security workflows with Python and improves investigations through AI tools.
Full job description
The Role:
The Security Operations Engineer position at ThoughtSpot will be a hands-on representative of the information security team and will assist with security incident management and vulnerability remediation. This is a technical role that requires a solid understanding of information security, incident response, and vulnerability management. This role will enhance our automation of vulnerability management, analyze results, and provide relevant reporting to stakeholders. This position requires organizational skills, analytic skills, quick reaction, attention to detail, and technical expertise to protect the company’s assets.
What You'll Do:
Respond to security alerts to support issue resolution and minimize the impact of security eventsResearch security issues and work with internal teams to find and track resolution.Assist with vulnerability identification and remediationHelp manage and improve the issue-tracking processCollaborate with remediation teams for process improvement opportunitiesEnsure security tickets are properly organized and trackedAssist with the creation and maintenance of incident response playbooksCreate and enhance operational metrics to ensure the security programs are effectiveAutomate existing processes as appropriate
What You Bring:
Security Operations & Analysis: 3+ years of hands-on experience in Security Operations Center (SOC) environments, with expertise in security monitoring, incident detection & response, threat intelligence, and vulnerability management. Proven ability to monitor and triage security alerts from SIEM, EDR, cloud, and other security technologies; investigate suspicious activities; and correlate events across multiple data sources.Enterprise Infrastructure & Security: Hands-on proficiency in deploying and operating enterprise-scale security solutions across cloud and on-premises environments, with a strong understanding of security principles, network architecture, and modern development practices. Experience integrating and analyzing multi-source telemetry across endpoint, identity, cloud, and DLP platforms to provide comprehensive security visibility.Automation & Development: Scripting or software development expertise (e.g., Python) to automate security workflows of routine tasks and Improve SOC workflow.AI Tools & Agent Workflows: Practical experience adopting AI technologies, including LLM-based assistants, copilots, and autonomous agents, to improve security operations and investigation workflows. Experience with prompt engineering, tool orchestration, and MCP/API integrations to automate analysis and enhance SOC efficiency.Process Adherence: Ensure all security incidents are detected, investigated, and escalated within defined SLAs and SOC procedures.Maintain timely and accurate incident documentation and ensure prompt escalation of critical incidents.Problem Solving & Threat Mindset: Demonstrate strong analytical capabilities to investigate complex security incidents, adopt an offensive security mindset, and apply structured problem-solving methodologies to identify root causes and drive effective resolutionsCollaboration & Communication: Self-motivated, detail-oriented team player capable of working independently or in distributed teams, with excellent communication skills to tailor technical insights for diverse stakeholders.Relevant certifications such as CEH, GCIH, CompTIA Security+, AWS, GCP or equivalent credentials.Academic Background in Computer Science, Cyber Security or related fieldFamiliarity with various security management tools (Eg: EDR, SIEM, DLP, Email Security, Threat & Vulnerability Management)