Information Security Analyst

Zillow
Bengaluru
Workplace: OnsiteFull timeFunction: CybersecurityExperience: 5+ yearsSkills: ["Communication","Documentation","Escalation judgment","Problem-solving","Independent decision-making"]

Own day-to-day SOC triage and incident response for Zillow Group, monitoring alerts across endpoints, identity, cloud, network, and applications. Investigate tier-1/tier-2 events and lead low-to-moderate incidents from detection through containment, remediation, and post-incident documentation. Use SIEM/EDR and AWS security tooling (GuardDuty, CloudTrail, IAM) to assess severity, refine detection logic, and improve playbooks alongside detection engineering and engineers.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Zillow
Zillow
6 hours ago

Information Security Analyst

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 6 hours agoStatus: Live

Job Summary

Own day-to-day SOC triage and incident response for Zillow Group, monitoring alerts across endpoints, identity, cloud, network, and applications. Investigate tier-1/tier-2 events and lead low-to-moderate incidents from detection through containment, remediation, and post-incident documentation. Use SIEM/EDR and AWS security tooling (GuardDuty, CloudTrail, IAM) to assess severity, refine detection logic, and improve playbooks alongside detection engineering and engineers.
Location: Bengaluru
Workplace: Onsite
Employment Type: Full time
Job Function: Cybersecurity
Seniority: Mid level

Key Responsibilities

  • •Monitor, triage, and resolve tier-1/tier-2 SOC tickets across endpoints, identity, cloud, network, and application sources.
  • •Investigate alerts from SIEM, EDR, and cloud security platforms, assessing severity and scope accurately.
  • •Execute incident response playbooks for scenarios such as phishing, account compromise, endpoint alerts, and cloud alerts.
  • •Lead response on low-to-moderate complexity incidents, conducting investigations and documenting outcomes through post-mortems.
  • •Perform forensic analysis of compromised systems across Windows, macOS, Linux, and cloud environments, preserving evidence and findings.

Key Requirements

  • •5+ years of experience in cybersecurity with hands-on SOC work or incident response.
  • •Independently investigate and resolve moderate-complexity security incidents without step-by-step guidance.
  • •Working knowledge of AWS security services (GuardDuty, CloudTrail, IAM, S3, EC2) and experience investigating AWS security events.
  • •Proficiency with SIEM (e.g., Exabeam, Splunk) and EDR tools (e.g., CrowdStrike).
  • •Understanding of Windows, macOS, and Linux environments and common forensic artifacts (logs, process activity, persistence mechanisms).
Experience:5+ years
Skills:CommunicationDocumentationEscalation judgmentProblem-solvingIndependent decision-making
Certifications:Security+CySA+GCIHGCFRAWS SSA
Tech Stack:AWSAmazon GuardDutyAmazon CloudTrailAWS IAMAmazon S3Amazon EC2SIEMExabeamSplunkEDRCrowdStrikeMITRE ATT&CKOktaActive DirectoryWindowsMacOSLinuxPythonBashPowerShell

Company Brief

Zillow
Operates an online real estate marketplace providing listings, valuation estimates, rentals, and agent tools. Connects buyers, sellers, renters, and real estate professionals with data-driven search, home Zestimate valuations, and advertising services.
Industry: Online Marketplaces
Company Size: Enterprise (1,001+ employees)
Revenue: USD 1B+
Growth: Public Company
Valuation: Public Company (Market Cap in USD)
Funding: IPO / Publicly Listed
Headquarters: Seattle, United States
Founded: 2006
WebsiteLinkedIn