Senior Security Analyst -SOC
On-siteKotwalucheruvu Tanda, State of Telangāna, Republic of India
Job Summary
Monitor and investigate Data Loss Prevention alerts across cloud, email, endpoint, OT, and removable media channels, performing end-to-end incident handling from triage through remediation. Design, create, and refine DLP policies while tuning existing rules to reduce false positives and align with business requirements. Correlate findings with identity and telemetry to establish incident context, maintain detailed documentation, and prepare operational reports on alert volumes and policy effectiveness. Participate in post-incident reviews to drive continuous improvement. This role operates in a 24x7 rotational shift environment and requires hands-on expertise with platforms like Netskope, Microsoft Purview, and Forcepoint.
Required Qualifications
- 4 to 6 years of hands-on experience in Data Loss Prevention, Data Security, or a related cybersecurity operations role
- Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or a related field (or equivalent practical experience)
- Proven experience of handling DLP alert investigation, incident response, and remediation and policy creation, tuning
- Hands-on experience with one or more DLP platforms: Netskope, Microsoft Purview, Forcepoint DLP, Palo Alto Networks
- Experience with SIEM platforms (Sentinel, Splunk, QRadar) for correlating DLP events with broader security telemetry
- Relevant Certifications: CySA+, CCSP, CEH, GCIA, GCIH
- Any vendor-specific DLP certifications (Netskope, Forcepoint, Varonis, Palo Alto)
- Deep understanding of cloud, email, endpoint, OT, and removable media DLP mechanisms, detection logic, and coverage gaps
- Ability to independently create, tune, maintain, and govern DLP policies aligned to regulatory and business requirements
- Experience driving DLP incidents end-to-end: from initial detection through containment, user engagement, and formal closure
- Solid grasp of data classification tiers, sensitive data types (PII, PCI, PHI, IP), and their handling obligations
- Ability to correlate data signals across multiple tools and telemetry sources to reconstruct incident timelines and identify root cause
- Effective communication skills for technical and non-technical stakeholders
- Ability to work in a 24x7 rotational shift environment
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.