Stop applying to remote jobs that are already dead.
Every listing checked, aged honestly, expired when filled.

All listings

Pragmatike via Ashby

ICC - Security Operations Analyst - Cyber Defense | IST Timezone

IndiaSri LankaVietnamIndonesiaThailand Level not stated
still open verified 2d ago posted 6d ago seen 1h ago
Apply at jobs.ashbyhq.com

This is the employer's own posting, not a copy on a job board.

What we know

Is it still open?

Confirmed still open

Last checked 2d ago — checked against the employer's own applicant tracking system, which is the company answering directly.

We re-read the employer's own applicant tracking system and the posting was still there. That is the company answering directly.

Check this listing's status as JSON

How old is it?

Posted 6d ago

The date the source published, not the day we noticed it (2026-09-25). Last seen at its source 1h ago.

We have tracked this listing since 25 Sep 2026 (6 days). The employer's own board has carried it every time we have read it, most recently 1 hour ago.

Is it remote?

Marked remote on the employer's board

Their board carries a remote setting on this posting — a field they filled in, not wording we read. The location field names somewhere specific, which is usually where the team or the entity sits.

Who may apply?

India, Sri Lanka, Vietnam, Indonesia, Thailand

The description agrees: it names India.

What the ad says
…Location: India, Remote-First…

Pay not stated

Similar roles pay A$1,650–2,438/mo

Middle 50% of 18 listings that do state pay — Operations · all levels · APAC · AUD/month. This employer has published no salary; this is what comparable listings we hold disclose, never converted between currencies or periods. How this is calculated.

Skills named in the ad

AWSAzureBashGCPGDPRIncident ManagementLinuxPythonRubySIEMSplunk

Recognised terms only, from a fixed vocabulary — this is what CV matching compares against.

Carried by 1 source

The listing

Location: India, Remote-First
Employment: Full-Time Contract
Duration: 6 months, with potential extension
Language: Fluent English required
Industry: Cybersecurity / Cloud / Enterprise Security

About the Opportunity

Pragmatike is recruiting on behalf of a major international organization for a Security Operations Analyst to join a global 24/7 Cybersecurity Operations Centre.

You’ll work with cybersecurity specialists across different regions to monitor, detect, investigate, and respond to cyber threats across cloud, endpoint, network, and enterprise environments.

This is a hands-on SOC role for an experienced security professional with strong skills across security alert triage, log analysis, SIEM/EDR platforms, and incident response.

What You’ll Do

  • Monitor, triage, and investigate security alerts across SIEM, EDR, Microsoft security tools, and cloud platforms.

  • Analyze host and network logs from Windows, Linux, databases, applications, web servers, firewalls, and NIDS/HIDS.

  • Investigate suspicious activity and identify potential root causes.

  • Support incident response, remediation, and recovery activities.

  • Determine appropriate escalation paths and coordinate with relevant cybersecurity teams.

  • Work with Incident Response specialists to investigate and manage threats.

  • Identify opportunities to improve detection quality and reduce false positives.

  • Support security monitoring optimization and whitelist tuning.

  • Prepare technical reports, summaries, and security findings.

  • Maintain SOC documentation, procedures, and knowledge-base content.

  • Contribute to process improvements and operational quality initiatives.

What We’re Looking For

  • 5+ years of relevant IT/cybersecurity experience.

  • Hands-on experience with security alert triage and incident investigation.

  • Experience working with SIEM and EDR platforms.

  • Strong log analysis skills across Windows/Linux and enterprise infrastructure.

  • Deep knowledge of Microsoft Security technologies.

  • Experience with Azure, AWS, and/or GCP.

  • Experience with SIEM platforms such as Microsoft Sentinel, Splunk, QRadar, ArcSight, or ELK.

  • Experience with at least one EDR solution such as Microsoft Defender for Endpoint or CrowdStrike.

  • Knowledge of email security, network monitoring, and incident response.

  • Strong Linux, macOS, and Windows knowledge.

  • Fluent English with excellent written and verbal communication skills.

Nice to Have

  • Tier-1/Tier-2 Incident Response experience.

  • AWS security monitoring experience across IaaS, PaaS, or SaaS environments.

  • Scripting experience with Python, PowerShell, Bash, Ruby, or similar.

  • Certifications such as SC-200, GCIH, CEH, GCFA, GIAC, CCNA, or MCSE.

  • Experience working in a global SOC or distributed cybersecurity team.

Why Join

  • Join a global 24/7 Security Operations Centre protecting international organizations.

  • Work across a broad cybersecurity stack spanning SIEM, EDR, cloud, network, and endpoint security.

  • Collaborate with security specialists across different regions and technical disciplines.

  • Gain hands-on exposure to real-world threat detection and incident response.

  • Work remotely while contributing to a globally distributed cybersecurity operation.

Pragmatike is committed to a fair, transparent, and inclusive recruitment process. We do not discriminate based on age, disability, gender, gender identity or expression, marital or civil partner status, pregnancy or maternity, race, religion or belief, sex, or sexual orientation.

In accordance with GDPR, your personal data will be processed lawfully, fairly, and securely and used solely for recruitment purposes, including sharing it with our client(s) for employment consideration.

Apply at jobs.ashbyhq.com