← Back to jobs

SOC Security Analyst

Company
Rubrik
Location
Remote
Work type
Remote · Remote
Posted
2026-08-07

Job description

What you'll do:
Monitor and respond to security alerts across Rubrik’s corporate network, endpoints, cloud, and SaaS environments.
Rapidly detect and accurately identify signs of intrusions and other malicious activity.
Manage the end-to-end incident response lifecycle, encompassing triage, deep-dive investigations, and remediation to ensure accurate identification of root causes and organizational impact.
Partner with vulnerability management, FedRAMP, and engineering teams to assess threats, prioritize vulnerabilities, and drive timely remediation efforts.
Collaborate with cross functional teams to drive resolution of events.
Contribute to overall program maturity through providing feedback and ideas to refine and improve detection capabilities and response processes.
Update and maintain accurate incident case attributes and investigation details.
Reviewing, documenting, and updating existing SOC processes.
Experience you'll need:
Bachelor’s degree in Cybersecurity, Information Systems, or other related technical disciplines, or equivalent experience.
3+ years of experience in Security Operations Center including security investigations and incident response.
Relevant Security Certifications (SANS, CompTia, ISC2, etc.) preferred.
Excellent communication and writing skills, with experience in direct written communication and report writing; effectively telling the details of what happened.
Experience utilizing incident analysis and investigation techniques. Applying and optimizing playbooks as a process,
Experience with any SIEM, EDR solution or incident analysis and response tools.
Experience with cloud native security solutions (Azure Defender, Google Security Command Center, AWS GuardDuty).
Working knowledge of cloud infrastructure and security concepts (AWS, Azure, GCP).
Problem solving and analytical thinking. An excellent ability to assess situations, identify potential risks, and make sound judgments based on available information.
Excellent real time collaboration and teamwork skills. Ability to collaborate effectively, share information, and coordinate efforts to address threats.
Demonstrated experience or strong interest in applying AI/automation to enhance security operations efficiency and scalability.

Skills Required
Bachelor's degree in Cybersecurity, Information Systems, or related field, or equivalent experience.
3+ years of Security Operations Center experience, including investigations and incident response.
Experience with SIEM, EDR, or incident analysis and response tools.
Experience with cloud-native security solutions (Azure Defender, Google Security Command Center, AWS GuardDuty).
Working knowledge of cloud infrastructure and security concepts (AWS, Azure, GCP).
Experience utilizing incident analysis and investigation techniques and applying/optimizing playbooks.
Excellent written and verbal communication and report-writing skills.
Problem solving, analytical thinking, and strong real-time collaboration/teamwork skills.
Demonstrated experience or strong interest in applying AI/automation to security operations.
Ability to work a schedule aligned with Pacific Time Zone hours.
Relevant security certifications (SANS, CompTIA, ISC2, etc.).
Subject to background checks and periodic re-screening (Tier 1/Tier 2/CJIS as applicable).

Original source