Jobs Companies Zillow Information Security Analyst

À propos de ce poste Information Security Analyst chez Zillow

Zillow · Sur site · Bengaluru

About the team

About the team
Zillow Group's Cyber Defense team owns security monitoring, detection engineering, incident response, and vulnerability management across our environment. We partner closely with Engineering, IT, Legal, Privacy, and business stakeholders to keep Zillow's customers, employees, and data safe.

Zillow Group is a strategic, mission-driven organization focused on delivering exceptional experiences and measurable outcomes. Our work spans cross-functional partnership, scalable programs and operational excellence in support of Zillow’s mission. We bring deep experience working across diverse teams in a dynamic, high-growth environment, balancing strategic thinking with hands-on execution to drive meaningful business impact. We are seeking an experienced professional to support our workforce expansion in India.

About the role

About the Role
We're looking for an Information Security Analyst to be a core contributor to our security operations and incident response capabilities. In this role, you'll own the day-to-day SOC workload — triaging and resolving security alerts, investigating incidents, and executing response playbooks — while also taking on moderate-complexity incident response investigations with increasing independence.

You bring enough experience to work independently on most security events, make sound triage decisions, and know when to escalate. You contribute to playbook improvements, support other analysts, and partner with other teams during incident response.
 

You Will Get To

Security Operations

  • Monitor, triage, and resolve tier-1 and tier-2 SOC tickets across endpoints, identity, cloud, network, and application sources.

  • Investigate security alerts from SIEM, EDR, and cloud security platforms, accurately assessing severity and scope.

  • Execute incident response playbooks for scenarios such as phishing, account compromise, endpoint alerts, and cloud alerts.

  • Serve as an escalation point for other analysts, helping guide triage and investigation decisions.

  • Maintain accurate documentation of all investigations, response actions, and outcomes.

Incident Response

  • Lead response on low-to-moderate complexity security incidents, owning investigation from detection through containment, remediation, and post-mortem documentation.

  • Investigate a broad range of incident types including identity attacks, phishing, SaaS events, cloud attacks, supply chain alerts, and endpoint compromises.

  • Conduct forensic analysis of compromised systems across Windows, macOS, Linux, and cloud environments, preserving evidence and documenting findings.

  • Participate in on-call rotation for after-hours security incidents, escalating to senior responders when appropriate.

  • Contribute to post-incident reports and root cause analyses, capturing lessons learned and recommending improvements.

Cloud Security

  • Investigate AWS security alerts such as GuardDuty findings, CloudTrail anomalies, IAM events, and compute events.

  • Apply cloud security knowledge to scope and contain incidents in AWS environments, partnering with senior responders  and engineers on complex cloud investigations.

Detection and Continuous Improvement

  • Analyze threat intelligence and monitor for indicators of compromise relevant to Zillow's environment.

  • Contribute to detection logic refinement and playbook updates based on investigation findings and emerging threats.

  • Participate in tabletop exercises and help identify gaps in the team's response capabilities.

  • Collaborate with detection engineering to tune out false positives and improve alert fidelity.

  • Drive continuous improvement to the cyber defense program through lessons learned, process automation, tooling enhancements, post-incident follow-through and other duties as required.

  • Partner with cloud and platform engineering on containment actions and long-term security hardening recommendations.

This role has been categorized as an Office position. “Office” employees regularly work at the Zillow India office for approximately 80 to 100 percent of their time each month. Employees must live within a reasonable commuting distance of the office. Zillow has not defined a reasonable distance, and expects employees will use judgment in determining this for themselves and understand the implications re: time commitment and cost of daily commute.

In addition to a competitive base pay, employees in this role are eligible for incentive compensation subject to applicable laws and relevant Zillow policies. Actual amounts will vary depending on experience, performance and location.

Who you are

  • 5+ years of experience in cybersecurity, with hands-on experience in security operations, SOC, or incident response.

  • Proven ability to independently investigate and resolve moderate-complexity security incidents — you don't need step-by-step guidance on standard event types.

  • Working knowledge of AWS security services (GuardDuty, CloudTrail, IAM, S3, EC2) and experience investigating cloud-based security events.

  • Proficiency with SIEM platforms (e.g., Exabeam, Splunk) and EDR tools (e.g., CrowdStrike).

  • Solid understanding of attacker TTPs and the MITRE ATT&CK framework, with the ability to apply them during active investigations.

  • Experience investigating identity-based attacks including Okta and AD attacks, phishing, account compromise, and MFA abuse.

  • Understanding of Windows, macOS, and Linux environments and common forensic artifacts — logs, process activity, and persistence mechanisms.

  • Familiarity with scripting (Python, Bash, or PowerShell) for basic automation and investigation tasks.

  • Clear written and verbal communication — you document thoroughly and keep stakeholders informed during incidents.

  • Sound judgment on when to drive to resolution independently versus when to escalate to senior responders.

  • Plus: Background in IT systems administration, software engineering, or a technical field — helpful for cross-team collaboration and understanding the environments you're defending.

  • Plus: Experience with SOAR platforms or automated response workflows.

  • Plus: Relevant certifications: Security+, CySA+, GCIH, GCFR,  AWS SSA.

Get to know us

At Zillow, we’re reimagining how people move—through the real estate market and through their careers. 

As the most-visited real estate platform in the U.S., Zillow helps millions of customers navigate buying, selling, financing, and renting with greater ease and confidence. Our teams in India play a critical role in building and scaling the technology, products, and operations that power this experience.

Whether you’re working in tech, operations, or shared services, you’ll collaborate with global partners to solve meaningful problems and help more people make home a reality.

Zillow is honored to be recognized among the best workplaces in the U.S.. Zillow was named one of FORTUNE 100 Best Companies to Work For® in 2025, and included on the PEOPLE Companies That Care® 2025 list, reflecting our commitment to creating an innovative, inclusive, and engaging culture where employees are empowered to grow.

No matter where you sit in the organization, your work will help drive innovation, support our customers, and move the industry—and your career—forward, together.

Zillow Group is an equal opportunity employer committed to fostering an inclusive, innovative environment with the best employees. We are committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender, maternity status, HIV status, or veteran status. Reasonable accommodations will be provided to candidates with disabilities, in accordance with applicable policies.

Prêt à postuler chez Zillow ?
Postuler chez Zillow

À propos de Zillow

At Zillow, flexibility isn’t a perk - it’s how we work. Cloud HQ is our distributed work model, built on trust, clear systems, and the belief that you can do great work from wherever you are. It’s not about where you work. It’s about moving forward - together.

Voir tous les emplois chez Zillow →

Emplois similaires

HP
Cybersecurity Analyst - Detection and Response
HP
⚡ Postuler tôt Bengaluru, Karnataka, India Sur site
● Nouveau 👁 Vu ✓ Postulé il y a 10 h
NVIDIA
Senior System Software Engineer – Linux Kernel Automotive Cybersecurity
NVIDIA
⚡ Postuler tôt India, Bengaluru Sur site
● Nouveau 👁 Vu ✓ Postulé il y a 1 j
RE
SOC Analyst — Security Operations
Revantage
⚡ Postuler tôt Bengaluru Sur site
● Nouveau 👁 Vu ✓ Postulé il y a 4 j
LO
Analyst- Security Awareness
Lowe's
⚡ Postuler tôt Bengaluru Sur site
● Nouveau 👁 Vu ✓ Postulé il y a 4 j
Rockwell Automation
Cybersecurity Engineer - Network
Rockwell Automation
⚡ Postuler tôt Pune, India Sur site
● Nouveau 👁 Vu ✓ Postulé il y a 6 j
Fresenius Medical Care
Analyst - Product Security
Fresenius Medical Care
⚡ Postuler tôt Bengaluru, KA Sur site
● Nouveau 👁 Vu ✓ Postulé il y a 6 j
Hewlett Packard Enterprise
Senior Cybersecurity Incident Response Analyst
Hewlett Packard Enterprise
⚡ Postuler tôt Bengaluru, Karnātaka, India Sur site
● Nouveau 👁 Vu ✓ Postulé il y a 1 sem.
Mimecast
Information Security Analyst I
Mimecast
⚡ Postuler tôt India - Bengaluru Sur site
● Nouveau 👁 Vu ✓ Postulé il y a 1 sem.
Diligent Corporation
Security GRC Analyst II
Diligent Corporation
⚡ Postuler tôt Bengaluru, Karnataka, India Hybride
● Nouveau 👁 Vu ✓ Postulé il y a 1 sem.

Inscrivez-vous pour des suggestions adaptées aux emplois que vous ouvrez et aux recherches que vous enregistrez.

Plus d’emplois chez Zillow

Voir tous les emplois chez Zillow →

Postuler maintenant
🤖

Doucement — un instant

JobsRadar a été conçu pour de vraies personnes qui traversent une période difficile dans leur recherche d’emploi — pas pour des requêtes automatisées. Vous cliquez beaucoup trop vite et vous êtes maintenant temporairement bloqué.

Revenez plus tard. Si vous cherchez réellement un emploi, nous sommes de votre côté — agissez simplement comme un être humain.

Catch your next role the second it’s posted.

Create a free account and we’ll watch the boards for you — the instant a job matches your search, it lands in your inbox or Telegram. No digging, no refreshing.

Create free account

Free forever · takes 30 seconds · already have one?

Prenez une longueur d’avance dans votre recherche d’emploi.

Rejoignez notre canal Telegram pour ce qui vous aide à décrocher le poste — références salariales, le pouls hebdomadaire du marché et les annonces de nouveautés. Pas de spam, que du signal.

Rejoindre le canal — c’est gratuit