Security Operations Analyst (Remote - USA East)

Commvault Systems, Inc.
United States
about 2 months ago
Apply on www.indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
2 years minimum
Compensation
$54,400.0 - $120,750.0
Working hours
Regular working hours
Job source

Tech stack

Active Directory Cloud Computing Security Cyber Security Digital Forensics Information Technology Operations Intrusion Detection and Prevention Python (Programming Language) Windows PowerShell Azure Active Directory Phishing Kusto Query Language Security Information and Event Management
+6 more
Mitre Att&ck Malware Information Technology Cybercrime Microsoft Sentinel Commvault

Job description

Commvault is seeking a Security Operations Analyst to join our Cybersecurity team to help support our Security Operations capabilities. This role is ideal for a hands-on SOC professional who can investigate security alerts, coordinate incident response activities, and contribute to operational improvement efforts across a complex enterprise environment.

The Security Operations Analyst will work closely with teams including Security Engineering, Threat and Vulnerability Management, Networking, Infrastructure, Identity, and IT Operations., * Investigate security alerts using tools such as CrowdStrike Falcon Suite, Microsoft Sentinel, endpoint telemetry, identity logs, network data, and cloud security sources.

  • Perform alert triage and analysis to determine the scope, severity, and potential impact of security events.
  • Support incident response activities, including investigation, containment, remediation, recovery, and post-incident documentation.
  • Participate in rotational on-call escalation coverage for higher-priority security events outside normal business hours, as needed.
  • Write clear incident reports, investigation summaries, timelines, findings, and recommended improvements.
  • Support selected SOC projects focused on improving detection quality, workflows, playbooks, reporting, automation, and response readiness.
  • Participate in regular security operations reviews and collaborate with cross-functional teams, including Security Engineering, Threat and Vulnerability Management, Networking, Infrastructure, Identity, and IT Operations.

Requirements

  • 2-4 years of cybersecurity experience, including hands-on SOC experience.
  • Experience investigating security alerts, performing triage, documenting findings, and supporting incident response.
  • Hands-on experience with CrowdStrike Falcon Suite.
  • Experience with Microsoft Sentinel or similar SIEM technology.
  • Experience supporting hybrid Active Directory and Microsoft Entra ID environments.
  • Understanding of common attack techniques, including phishing, credential compromise, malware execution, lateral movement, privilege escalation, and data exfiltration.
  • Ability to analyze endpoint, identity, network, cloud, and SIEM telemetry to determine scope, severity, and business impact.
  • Strong written and verbal communication skills, including the ability to brief technical findings and drive follow-up across teams., * Security+, GIAC certifications, or other relevant cybersecurity credentials.
  • Bachelor’s degree in Cybersecurity, Information Security, Computer Science, Information Technology, or a related field.
  • Experience with threat hunting, detection engineering, malware analysis, or digital forensics.
  • Familiarity with KQL, PowerShell, Python, MITRE ATT&CK, or incident response frameworks.
  • Experience improving SOC processes, playbooks, metrics, or detection and response workflows.

Benefits & conditions

3.73.7 out of 5 stars Remote $54,400 - $120,750 a year - Full-time, Pulled from the full job description

  • Opportunities for advancement, * Continuous professional development and training
  • Clear career growth and advancement opportunities
  • Inclusive company culture
  • Comprehensive benefits package

LI-PK1

LI-Remote

Thank you for your interest in Commvault. Reflected below is the minimum and maximum base salary range for this role. At Commvault we use broad salary ranges in our job postings to reflect the diverse levels of expertise and experience among our candidates and is not reflective of the total compensation and benefits package. The specific salary offered will be determined based on your unique qualifications, including your relevant experience, skills, and the value you bring to the role. While the range provides a general idea of the compensation, it is important to note that placements within the range are not automatic and will be carefully considered to ensure a fair and competitive offer. We are committed to rewarding talent and experience. Pay Range $54,400-$120,750 USD

About the company

Commvault (NASDAQ: CVLT) is the gold standard in cyber resilience. The company empowers customers to uncover, take action, and rapidly recover from cyberattacks - keeping data safe and businesses resilient. The company’s unique AI-powered platform combines best-in-class data protection, exceptional data security, advanced data intelligence, and lightning-fast recovery across any workload or cloud at the lowest TCO. For over 25 years, more than 100,000 organizations and a vast partner ecosystem have relied on Commvault to reduce risks, improve governance, and do more with data.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:29 min

Evaluating phishing emails that leverage artificial time constraints

Mauro Verderosa · LIVE

6:01 min

Handling container constraints and fileless malware

Dimitrij Klesev +1 · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

2:39 min

Exposing stored XSS and phishing attacks via markdown

Ramona Schwering Ramona Schwering · World Congress 2026 Europe

6:18 min

Architecting asynchronous malware scanning for uploaded file contents

Austin Gil · LIVE

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

Videos

See all

Related articles

See all