Security Analyst II
Summary
The Senior Security Analyst acts as a shift lead and SOC anchor, responsible for triaging high-severity security alerts, mentoring junior analysts, and ensuring operational quality across cloud and network telemetry.
About Gruve
Gruve is an innovative software services startup dedicated to transforming enterprises to AI powerhouses. We specialize in cybersecurity, customer experience, cloud infrastructure, and advanced technologies such as Large Language Models (LLMs). Our mission is to assist our customers in their business strategies utilizing their data to make more intelligent decisions. As a well-funded early-stage startup, Gruve offers a dynamic environment with strong customer and partner networks.
Position summary:
Senior-most L1 and shift anchor for the SOC pod. Owns triage quality across the rotation, handles high severity alerts through to L2 handoff, and is the first coordination point with the NOC anchor during cross-domain incidents.
Key Roles & Responsibilities:
- Act as shift senior: final L1 quality gate on investigations and escalations.
- Handle P1/P2 security alerts end-to-end to L2/L3 handoff, including initial scoping and evidence preservation.
- Drive shift-level metrics: SLA adherence, false-positive rate, reopen rate.
- Coach and quality-review the trainee and mid-career analysts; own runbook accuracy for the SOC pod.
- Lead post-incident documentation inputs and lessons-learned capture.
- Coordinate cross-tower with the NOC/DMT shift anchor on ambiguous events.
Mandatory Qualifications:
- BE/BTech (CS/IT/E&TC) or equivalent.
- 4–6 years SOC experience with demonstrable incident handling ownership.
- Strong multi-source triage across cloud, network and identity telemetry.
- Audit-grade documentation; ability to run a shift independently and calmly under P1 pressure.
- Mentoring aptitude — this role carries the shift's junior bench.
Preferred Qualifications:
- GCIH/CHFI-level knowledge; scripting for enrichment/automation.
- Hands-on triage of Kubernetes/container security alerts — kube-audit events, workload anomalies and pod-level network flows (Cilium/Hubble) — ideally on GKE.
- CKA/CKS or KCSA; exposure to admission controls and image/runtime security tooling.
- Prior GPU-cloud, hyperscale or data-center customer exposure.
Why Gruve
At Gruve, we foster a culture of innovation, collaboration, and continuous learning. We are committed to building a diverse and inclusive workplace where everyone can thrive and contribute their best work. If you’re passionate about technology and eager to make an impact, we’d love to hear from you.
Gruve is an equal opportunity employer. We welcome applicants from all backgrounds and thank all who apply; however, only those selected for an interview will be contacted.
Skills
As published by greenhouse · 11 questions
Basics
First Name, Last Name, Email, Phone, Resume/CV, Cover Letter
Short answers (6)
- Preferred First Name optional
- LinkedIn Profile optional
- What is your current notice period?
- What is your current CTC?
- What are your salary expectations for this role?
- What is your current address?
Pick from a list (5)
- This role requires to work in 24*7 rotational shift (Including Night Shifts), Are you comfortable for this?
- Are you willing to relocate to Pune or comfortable for working from Baner, Pune?
- I acknowledge my right to refrain from disclosing any confidential or proprietary information during the interview and understand that the company will not solicit such information, in accordance with the Non-Disclosure Agreement
- I consent to the use of AI-powered note-taking tools during the interview process and acknowledge that the interview may be recorded and stored for evaluation purposes.
- I hereby provide my consent to share my professional referees with Gruve and authorize Gruve, or its designated third-party representative, to contact them for the purpose of conducting business reference checks as part of the hiring process.