RAJ
Verified from BloomReach's careers page · Greenhouse

Security Analyst

BloomReachIndia (On-Site) 🇮🇳5 YearsPosted Sep 4, 2026
Apply now

Apply faster

Fill most application fields automatically from your RealAnalystJobs profile. You review, you submit.

Included with the from $2 for 30 days unlock

About this role

Bloomreach is building the world’s premier agentic platform for personalization .We’re revolutionizing how businesses connect with their customers, building and deploying AI agents to personalize the entire customer journey. • We're taking autonomous search mainstream, making product discovery more intuitive and conversational for customers, and more profitable for businesses. • We’re making conversational shopping a reality, connecting every shopper with tailored guidance and product expertise — available on demand, at every touchpoint in their journey. • We're designing the future of autonomous marketing , taking the work out of workflows, and reclaiming the creative, strategic, and customer-first work marketers were always meant to do. And we're building all of that on the intelligence of a single AI engine — Loomi — so that personalization isn't only autonomous…it's also consistent.From retail to financial services, hospitality to gaming, businesses use Bloomreach to drive higher growth and lasting loyalty. We power personalization for more than 1,400 global brands, including American Eagle, Sonepar, and Pandora. Role Overview We are looking for a Security Analyst to join the Bloomreach GIST (Global Information Security & Technology) team to help protect our environment from threats, vulnerabilities, and sophisticated attackers. Your work will have a significant impact on numerous customers across various e-commerce verticals and hundreds of millions of online users. As a core member of our globally distributed 24/7 Security Operations Team, you are expected to work from one of our India offices ( Bengaluru) or from home. This role is ideal for someone who has built a solid foundation in security operations and is ready to take the next step — owning more complex work, developing specialised skills, and contributing more meaningfully to the team's detection and response mission Your job will include, but is not limited to: • Monitor, analyze, and interpret security, system, application, cloud, and infrastructure logs to identify suspicious activity, configuration irregularities, and potential security incidents. • Leverage security tools, custom-built dashboards, threat intelligence, and proactive investigation techniques to detect anomalous or malicious activity. • Monitor cloud infrastructure and services for security-related events, misconfigurations, and indicators of compromise. • Monitor the evolving threat and vulnerability landscape, including security advisories, emerging threats, and relevant vulnerabilities, and coordinate or escalate findings as appropriate. • Investigate security alerts, incidents, and service requests, performing appropriate triage, analysis, documentation, escalation, and follow-up. • Develop, maintain, tune, and improve security detection use cases and alerts within SIEM and other security monitoring platforms. • Design, implement, and maintain automation workflows using SOAR or similar security orchestration and automation technologies. • Collaborate with Product Security, Infrastructure Security, Application Security, GRC, Engineering, and other relevant teams during cross-functional security investigations. • Work with GRC, Privacy, Legal, Product, and technical teams during security or privacy-related incidents and investigations, providing technical findings and evidence where required. • Participate in major incident calls and support incident response activities, including investigation, evidence gathering, timeline development, and preparation of incident summaries. • Document, follow, and execute Standard Operating Procedures (SOPs), security playbooks, investigation procedures, and escalation processes. • Create, manage, maintain, and continuously improve security use cases, playbooks, runbooks, and knowledge-base articles. • Support audit-related activities by gathering security evidence, validating controls, and collaborating with relevant stakeholders as required. • Maintain a working knowledge of AI and Large Language Model (LLM) tools such as Gemini, ChatGPT, and Claude, and understand their practical application within Security Operations. • Understand common authentication and credential-management concepts, including public/private key authentication, API keys, access tokens, service accounts, and the secure handling of credentials. • Be comfortable working with command-line interfaces (CLI), APIs, IDE-based tools, and agent-based workflows commonly used in modern security and cloud environments. • Take ownership of responsibilities assigned during the shift, ensuring effective handovers, timely escalation, and appropriate follow-through. • Proactively engage relevant stakeholders and escalate risks, incidents, blockers, or concerns when necessary. • Maintain a positive approach toward continuous learning, professional development, and upskilling as security technologies, threats, and operational practices evolve. Professional experience, skills & requirements Required Experience • 3–5 years of hands-on experience working within a 24×7 Security Operations Center (SOC), Cyber Fusion Center, or equivalent security operations function. • Hands-on experience in at least one or more of the following areas: • SaaS platform security • Cloud security, particularly AWS and/or Google Cloud Platform (GCP) • API and container security • Threat intelligence and threat hunting • Vulnerability management • SIEM or SOAR administration, engineering, or operational use • Strong hands-on experience using SIEM platforms for security monitoring, investigation, correlation, and detection engineering. Experience with Splunk is preferred. • Practical experience with SOAR platforms and security automation workflows. • Hands-on experience with Endpoint Detection and Response (EDR) and related capabilities such as threat intelligence, vulnerability/exposure management, device control, or data protection. • Hands-on exper

Description from BloomReach's public careers feed, reproduced so you can read the role here. Apply on the company's own site; RealAnalystJobs never submits anything for you.

Raj