Senior InfoSec Analyst
- 🇮🇳 India
- On-site
- Senior
- 1 week ago
- Incident Response
- SIEM
- EDR
- AI
- ASE
- Network Security
- Machine Learning
- DNS
- AWS
- Azure
- GCP
- Python
- PowerShell
About Us
ACKO is the protection destination for over 200 million tech-savvy families across India, protecting their families, assets and money. Launched in 2016, ACKO started by reimagining insurance, making it simple, hassle-free and customer-first. Today, our mission goes beyond that: we aim to touch the lives of 1 million users, building products that solve real-world problems with technology at the core.
We are not just another insurance company, our DNA is product-tech, and our approach is bold, innovative, and digital-first. From zero commission, zero paperwork, and instant renewals to same-day claims settlements and app-based tracking, ACKO is a Welcome Change from traditional insurers. But what truly sets us apart? Our people. At ACKO, every Acker’s voice and ideas matter. We’re a vibrant, inclusive team of creators, thinkers, and doers, building products that redefine protection while ensuring each Acker grows, thrives and does meaningful work.
Join us at ACKO, where bold ideas, real impact and tech-driven innovation redefine protection and peace of mind - and where YOU can make a real difference in people's lives. ACKO is a product-tech company, launched in 2016, solving real-world problems for customers, starting with insurance. And as a customer-first organization serving the digitally-savvy, ACKO’s value proposition of ‘Welcome Change’ focuses on offerings that make insurance simple and hassle-free! With features such as zero commission, zero paperwork, instant renewal, same-day claim settlements, and app-based updates on claims, ACKO is a 'Welcome Change' from traditional insurers.
Having said that, we are not just another conventional insurance firm, or the people consulted solely for "claims”! Anchored in a tech-centric philosophy, ACKO’s approach fuels innovation, empowering us to develop comprehensive products that cater to every aspect of our customers' insurance requirements. And while we are at it, we put our Ackers at the heart of everything we do. We're not your typical 9-to-5 workplace; we're a vibrant and inclusive bunch of innovators and creators making sure every Acker’s idea matters, their voice is heard, and their growth is part of our mission.
About the Role
Experience: 6–8 Years
Function:Information Security / Security Operations
Role Overview
We are looking for a hands-onSenior InfoSec Analyst with strong experience inleading Security Operations, incident response, SIEM management, EDR, and security log analysis.
The candidate should be capable of independently handling complex security incidents and have practical experience acrossSASE, cloud security, threat hunting, brand monitoring, AI, and security automation.
Key Responsibilities
Monitor, investigate, and respond to security alerts and incidents.
Manage and optimize theSIEM platform, including log sources, correlation rules, detection use cases, dashboards, and alert tuning.
PerformEDR investigations and analyze suspicious endpoint activities.
Analyze and correlate SASE, cloud, identity, endpoint, and network security logs.
Independently manage complex security incidents from investigation through containment, remediation, and closure.
Conduct threat hunting, IOC analysis, root-cause analysis, and incident response.
Develop and tune security detection rules to improve detection quality and reduce false positives.
Monitor externalthreats including phishing websites, look-alike domains, brand impersonation, fake accounts, and exposed credentials.
Support brand-protection investigations and takedown activities.
Automate repetitive SOC activities usingscripts, APIs, SOAR, and other automation tools.
LeverageAI/GenAIto improve security investigations, threat analysis, reporting, detection, and SOC efficiency.
Perform post-incident reviews and recommend improvements to security controls and detection capabilities.
Maintain incident documentation, dashboards, metrics, and security reports.
Provide technical guidance and mentoring to other security team members.
Work with internal teams to drive remediation and continuous improvement of the organization's security posture.
Mandatory Skills
6–8 years of hands-on experience in Information Security / Security Operations.
Strong experience inSIEM management, security monitoring, and log analysis.
Strong incident investigation and response capabilities.
Hands-on experience withEDR investigation and threat hunting.
Strong experience developing and tuningSIEM detection and correlation rules.
Experience analyzingSASE security logs.
Experience withcloud security monitoring and log analysis.
Good understanding of networking, DNS, HTTP/HTTPS, proxies, firewalls, authentication, and common cyberattack techniques.
Practical knowledge of theMITRE ATT&CK framework.
Strong analytical, troubleshooting, and problem-solving skills.
Ability to independently own and drive complex security incidents.
Strong communication and stakeholder-management skills.
Good to Have
Experience acrossAWS, Azure, and/or GCP security monitoring.
Brand monitoring / Digital Risk Protection experience.
SOAR platform experience.
Python, PowerShell, or API-based automation experience.
Practical experience usingAI/GenAI in security operations.
Experience integrating security platforms with SIEM/SOAR.
Relevant certifications in security operations, SIEM, EDR, SASE, cloud
security, incident response, or threat hunting.
Preferred Candidate
We are looking for a strong hands-on security professional who can go beyond basic alert monitoring and independently own complex security investigations and SOC improvements.
The candidate should have astrong detection, threat-hunting, and automation mindset,be comfortable working across multiple security technologies, and identify opportunities to improve SOC capabilities using automation and AI.
The role also requires the ability tomentor team members, work effectively with cross-functional teams, and communicate security risks and incidents clearly to stakeholders.
Senior InfoSec Analyst · ACKO