Senior cyber security analyst
Full Job Description
Join Gradient Cyber as a Senior Cyber Security Analyst in Bangalore, India (preferred), in a contract role with potential for full-time conversion. This is a unique opportunity to work at the intersection of cybersecurity and AI, shaping the future of AI-assisted MXDR operations.
As a Human-in-the-Loop (HITL) analyst, you will review and validate AI-generated Situation Reports (SitReps) across our Quorum AI (QAI) platform, ensuring accuracy and improving the system's intelligence. Your role involves:
- SitRep Triage & Investigation: Evaluate AI-generated reports, classify them as true positives, false positives, or benign, and investigate underlying security events across SIEM, EDR, cloud, and identity telemetry.
- Root-Cause Analysis: Diagnose AI output failures—whether due to client-specific conditions, flawed detection logic, payload issues, or asset misalignment—and propose permanent fixes.
- Knowledge Base & Prompt Engineering: Contribute to versioned Markdown documentation, refine agent prompts, and provide structured feedback to improve the AI's evaluation datasets.
- Reporting & Continuous Improvement: Support weekly triage outcome reports and monthly client-outcome reporting, identifying systemic issues and proposing scalable fixes.
Qualifications:
- 4–5 years in SOC, MDR/MXDR, incident response, or detection engineering (Tier 2+).
- Strong MITRE ATT&CK knowledge and experience mapping detections to adversary techniques.
- Hands-on experience with SIEM, EDR, NDR, cloud telemetry, and identity/authentication logs.
- Clear written communication skills to articulate reasoning for true/false positives.
- Familiarity with log formats (JSON, syslog, cloud audit logs) and event normalization.
- Comfort with ticketing systems (TheHive, Jira, Linear).
Preferred Qualifications:
- OCSF/ECS/CIM experience.
- LLM-based security tooling exposure (prompt writing, RAG systems).
- Detection engineering (Sigma, KQL, Jupyter, vendor-native languages).
- Python scripting for log analysis.
- Certifications like GCIA, GCIH, CySA+, or BTL1/BTL2.
This role is ideal for skeptical, root-cause-oriented analysts who thrive on improving systems at scale. You'll build expertise in AI-driven cybersecurity, ensuring long-term impact beyond individual cases.
Company
Gradient Cyber
Gradient Cyber specializes in AI-native Managed Extended Detection and Response (MXDR) solutions tailored for mid-market security teams facing budget and resource constraints. We empower these compani...