Threat Analyst 2
Jobgether
Make my CV for this job, freeView job and applyYour CV, rewritten for this role using only your real experience. Sign in with Google and upload your CV. Nothing to install.
Skills named in this job
Read from the description itself, not inferred.
This role on the market
155 open threat roles across 59 companies are on ApplySarthi right now, most of them in Bengaluru (5), Pune (1), Hyderabad (1).
- Cyber Security Consultant - Threat Management (UK Public Sector)IBM
- Senior Threat AdvisorSentinelOne
- Senior Insider Threat AnalystWorkday
- Cybersecurity Intelligence Senior Associate — Applied Cyber Threat Research (ACTR)JPMorgan
- Safety Threat Investigator, Safety InvestigationsRoblox
What threat roles keep asking for: Python (30%), SIEM (25%), SQL (13%) — counted across their open postings here.
Linux jobs · Python jobs · SIEM jobs
Jobgether has 3,935 open roles listed here.
- AI Researcher — Distillation
- AI Researcher — Distillation
- Accounting & Regulatory Reporting
- Accounts Receivable Coordinator
- AI Security Analyst
Counted across 14 company job boards, updated as roles open and close.
Preparing for this interview
Interviews for threat roles keep coming back to Python, SIEM, SQL. Practise those questions before you sit with Jobgether.
Questions you are likely to be asked
- Why do you want to join Jobgether?
- What is your experience with Linux? Tell me one thing you learned the hard way.
- How do you check that your numbers are right before you share them?
- Walk me through a dashboard or report you built. Who used it, and for what?
- Explain a join or a window function you have used, and why you needed it.
Prep Sarthi gives you a free mock interview: an AI interviewer asks you questions like these out loud, from your own CV and this job, and shows your score and your weakest answer.
Practise the Threat Analyst 2 at Jobgether interview free →Accountabilities: Investigate escalated security alerts and incidents across endpoint, network, cloud, and identity environments. Analyze incidents to establish root cause, attack scope, lateral movement, affected systems, and potential business impact. Support ransomware investigations by examining attacker activity, credential abuse, persistence techniques, and malware behavior. Analyze and deobfuscate suspicious scripts, malware samples, and other indicators to identify malicious activity. Conduct proactive threat hunting based on defined hypotheses, threat intelligence, and emerging attacker behaviors. Investigate suspicious authentication activity, privilege escalation, and identity or privileged-account misuse. Perform investigations across Windows and Linux environments, including process analysis and examination of relevant logs. Correlate information from EDR, SIEM, cloud logging, identity platforms, and other security data sources. Document investigative findings accurately and provide actionable remediation recommendations to clients. Collaborate with senior analysts on complex or high-severity incidents and contribute to incident response activities. Support detection tuning and the improvement of response playbooks based on lessons learned from investigations. Participate in a rotational schedule supporting continuous 24x7x365 MDR operations. Requirements 3–5 years of experience in a SOC, MDR, incident response, or related cybersecurity operations environment. Hands-on experience investigating endpoint and network security alerts using EDR and SIEM technologies. Working knowledge of ransomware attack patterns, common intrusion techniques, and adversary behaviors. Practical experience investigating both Windows and Linux systems. Experience analyzing obfuscated scripts and malware behavior, including deobfuscation techniques. Familiarity with adversary tactics and techniques and practical exposure to the MITRE ATT&CK framework. Experience working with Windows Event Logs, Linux logs, and Active Directory fundamentals. Basic understanding of cloud and identity security investigations, including suspicious authentication and privileged-account activity. Ability to analyze network traffic and core protocols such as TCP/IP, DNS, and HTTP/S. Mandatory scripting knowledge, including PowerShell , with Python or another programming language. Strong investigative documentation skills, attention to detail, analytical thinking, and troubleshooting abilities. Ability to manage multiple investigations simultaneously in a fast-paced operational environment. Clear written and verbal communication skills, particularly when documenting technical findings and communicating remediation guidance. A bachelor's degree in Information Technology, Computer Science, or a related field, or equivalent professional experience. Security certifications such as Security+, CySA+, GCIH , or equivalent are advantageous. Willingness to work rotational schedules supporting a continuous 24x7x365 MDR operation. Benefits Remote-first working model, with remote work as the primary arrangement for most roles. Opportunity to work on real-world cybersecurity incidents and develop expertise across multiple security domains. Exposure to endpoint, network, cloud, identity, SIEM, EDR, threat intelligence, and incident response technologies. Collaboration with experienced security professionals on complex and high-severity investigations. Employee-led diversity and inclusion networks supporting community, education, and advocacy. Annual charity, fundraising, and employee volunteer initiatives. Global sustainability initiatives and employee participation opportunities. Global fitness and trivia activities. Wellbeing days, webinars, and training focused on employee health and wellbeing. Inclusive working environment with support for reasonable adjustments throughout the recruitment process. Opportunities to strengthen investigative, threat-hunting, malware-analysis, and incident-response capabilities.
Match this job to your CV
ApplySarthi scores your CV against this role, shows the skills you are missing, and writes a tailored version for the application.
Check my match →Similar open roles
- .Net Software DeveloperJobgether
- Account DirectorJobgether
- Account Director, Renewals & GrowthJobgether
- Advisor, BMO SmartFolio WFHJobgether
- Agentic AI DeveloperJobgether
- AI Graphic Designer + Video EditorJobgether
- AI/ML Data ScientistJobgether
- Analista de Automação e IA com N8NJobgether
Need answers during your interview? Try Live Sarthi.
Live Sarthi, an Interview Sarthi app, shows answer suggestions during the call.
- Hidden from supported screen sharingThe overlay stays out of supported Windows screen captures.
- Answers start in about 1.5 secondsResponse time varies with your connection and model.
- From your own CVYour projects and your experience, not a generic script.
- 30 minutes freeThen ₹99 for a 2-day pass with unlimited calls — you pay for the days you are interviewing, not a subscription.
A Windows app, from the same team as ApplySarthi.
Listed on lever · posted 2026-09-23. ApplySarthi collects openings and links to application pages; the role is advertised by Jobgether, not by us.