Senior Infosec Analyst

Zillow · Bengaluru

  • Experience7–11 yrs
  • SalaryNot disclosed
  • Work modeonsite
  • Levelexecutive
  • Posted2 Sept 2026

About Zillow

Zillow is hiring in Bengaluru in real estate construction. This role looks for around 7+ years of experience.

Skills

  • security controls
  • threat analysis
  • vulnerability analysis
  • control gap analysis
  • cloud security
  • identity and access management
  • secure configuration
  • security architecture
  • incident response
  • security monitoring
  • security engineering
  • cybersecurity operations

The role

A security analyst at a real-estate technology company designs and optimizes security controls, performs threat analysis, and shapes secure-by-design solutions. The role applies cloud security, identity and access management, and incident response to protect distributed technology environments and guide engineering teams.

Full job description

Responsibilities:

Lead the design, implementation, and optimization of information security controls, processes, and tooling across cloud, endpoint, and application environments, aligning with enterprise security policies and risk appetite.

Perform advanced threat, vulnerability, and control gap analysis; translate complex technical findings into prioritized remediation plans and actionable guidance for engineering, product, and operations teams.

Serve as a subject matter expert and primary security liaison for assigned platforms or business areas, advising on architecture, data protection, identity and access management, and secure configuration standards.

Drive security-by-design in new and evolving solutions by reviewing architectures and change proposals, defining security requirements, and collaborating with cross-functional teams to balance risk, usability, and business outcomes.

Develop and refine detection, monitoring, and incident response playbooks; partner with operations teams to investigate complex security events and recommend containment, eradication, and recovery actions.

Produce clear security documentation, runbooks, and guidelines; deliver targeted training or coaching to raise security awareness and improve secure practices across technical and non-technical audiences.

Use data, metrics, and dashboards to evaluate the effectiveness of security controls, identify patterns and emerging risks, and recommend continuous improvements to processes and tooling.

Mentor less-experienced team members and contribute to team-wide standards, frameworks, and best practices that improve consistency, reliability, and scalability of security operations.

Requirements:

Bachelor's degree in computer science, information security, information systems, engineering, or a related field.

8+ years of progressive experience in information security, cybersecurity operations, security engineering, or a closely related technical security discipline.

Demonstrated experience designing, implementing, or operating security controls and processes in cloud-based or distributed technology environments.

Experience collaborating with engineering, product, or operations teams to assess security risk, define remediation approaches, and implement secure-by-design solutions.

Or an equivalent combination of education and experience.