Jobs Companies Zillow Information Security Analyst

Sobre esta vaga de Information Security Analyst na Zillow

Zillow · Presencial · Bengaluru

About the team

About the team
Zillow Group's Cyber Defense team owns security monitoring, detection engineering, incident response, and vulnerability management across our environment. We partner closely with Engineering, IT, Legal, Privacy, and business stakeholders to keep Zillow's customers, employees, and data safe.

Zillow Group is a strategic, mission-driven organization focused on delivering exceptional experiences and measurable outcomes. Our work spans cross-functional partnership, scalable programs and operational excellence in support of Zillow’s mission. We bring deep experience working across diverse teams in a dynamic, high-growth environment, balancing strategic thinking with hands-on execution to drive meaningful business impact. We are seeking an experienced professional to support our workforce expansion in India.

About the role

About the Role
We're looking for an Information Security Analyst to be a core contributor to our security operations and incident response capabilities. In this role, you'll own the day-to-day SOC workload — triaging and resolving security alerts, investigating incidents, and executing response playbooks — while also taking on moderate-complexity incident response investigations with increasing independence.

You bring enough experience to work independently on most security events, make sound triage decisions, and know when to escalate. You contribute to playbook improvements, support other analysts, and partner with other teams during incident response.
 

You Will Get To

Security Operations

  • Monitor, triage, and resolve tier-1 and tier-2 SOC tickets across endpoints, identity, cloud, network, and application sources.

  • Investigate security alerts from SIEM, EDR, and cloud security platforms, accurately assessing severity and scope.

  • Execute incident response playbooks for scenarios such as phishing, account compromise, endpoint alerts, and cloud alerts.

  • Serve as an escalation point for other analysts, helping guide triage and investigation decisions.

  • Maintain accurate documentation of all investigations, response actions, and outcomes.

Incident Response

  • Lead response on low-to-moderate complexity security incidents, owning investigation from detection through containment, remediation, and post-mortem documentation.

  • Investigate a broad range of incident types including identity attacks, phishing, SaaS events, cloud attacks, supply chain alerts, and endpoint compromises.

  • Conduct forensic analysis of compromised systems across Windows, macOS, Linux, and cloud environments, preserving evidence and documenting findings.

  • Participate in on-call rotation for after-hours security incidents, escalating to senior responders when appropriate.

  • Contribute to post-incident reports and root cause analyses, capturing lessons learned and recommending improvements.

Cloud Security

  • Investigate AWS security alerts such as GuardDuty findings, CloudTrail anomalies, IAM events, and compute events.

  • Apply cloud security knowledge to scope and contain incidents in AWS environments, partnering with senior responders  and engineers on complex cloud investigations.

Detection and Continuous Improvement

  • Analyze threat intelligence and monitor for indicators of compromise relevant to Zillow's environment.

  • Contribute to detection logic refinement and playbook updates based on investigation findings and emerging threats.

  • Participate in tabletop exercises and help identify gaps in the team's response capabilities.

  • Collaborate with detection engineering to tune out false positives and improve alert fidelity.

  • Drive continuous improvement to the cyber defense program through lessons learned, process automation, tooling enhancements, post-incident follow-through and other duties as required.

  • Partner with cloud and platform engineering on containment actions and long-term security hardening recommendations.

This role has been categorized as an Office position. “Office” employees regularly work at the Zillow India office for approximately 80 to 100 percent of their time each month. Employees must live within a reasonable commuting distance of the office. Zillow has not defined a reasonable distance, and expects employees will use judgment in determining this for themselves and understand the implications re: time commitment and cost of daily commute.

In addition to a competitive base pay, employees in this role are eligible for incentive compensation subject to applicable laws and relevant Zillow policies. Actual amounts will vary depending on experience, performance and location.

Who you are

  • 5+ years of experience in cybersecurity, with hands-on experience in security operations, SOC, or incident response.

  • Proven ability to independently investigate and resolve moderate-complexity security incidents — you don't need step-by-step guidance on standard event types.

  • Working knowledge of AWS security services (GuardDuty, CloudTrail, IAM, S3, EC2) and experience investigating cloud-based security events.

  • Proficiency with SIEM platforms (e.g., Exabeam, Splunk) and EDR tools (e.g., CrowdStrike).

  • Solid understanding of attacker TTPs and the MITRE ATT&CK framework, with the ability to apply them during active investigations.

  • Experience investigating identity-based attacks including Okta and AD attacks, phishing, account compromise, and MFA abuse.

  • Understanding of Windows, macOS, and Linux environments and common forensic artifacts — logs, process activity, and persistence mechanisms.

  • Familiarity with scripting (Python, Bash, or PowerShell) for basic automation and investigation tasks.

  • Clear written and verbal communication — you document thoroughly and keep stakeholders informed during incidents.

  • Sound judgment on when to drive to resolution independently versus when to escalate to senior responders.

  • Plus: Background in IT systems administration, software engineering, or a technical field — helpful for cross-team collaboration and understanding the environments you're defending.

  • Plus: Experience with SOAR platforms or automated response workflows.

  • Plus: Relevant certifications: Security+, CySA+, GCIH, GCFR,  AWS SSA.

Get to know us

At Zillow, we’re reimagining how people move—through the real estate market and through their careers. 

As the most-visited real estate platform in the U.S., Zillow helps millions of customers navigate buying, selling, financing, and renting with greater ease and confidence. Our teams in India play a critical role in building and scaling the technology, products, and operations that power this experience.

Whether you’re working in tech, operations, or shared services, you’ll collaborate with global partners to solve meaningful problems and help more people make home a reality.

Zillow is honored to be recognized among the best workplaces in the U.S.. Zillow was named one of FORTUNE 100 Best Companies to Work For® in 2025, and included on the PEOPLE Companies That Care® 2025 list, reflecting our commitment to creating an innovative, inclusive, and engaging culture where employees are empowered to grow.

No matter where you sit in the organization, your work will help drive innovation, support our customers, and move the industry—and your career—forward, together.

Zillow Group is an equal opportunity employer committed to fostering an inclusive, innovative environment with the best employees. We are committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender, maternity status, HIV status, or veteran status. Reasonable accommodations will be provided to candidates with disabilities, in accordance with applicable policies.

Pronto para se candidatar à Zillow?
Candidatar-se à Zillow

Sobre a Zillow

At Zillow, flexibility isn’t a perk - it’s how we work. Cloud HQ is our distributed work model, built on trust, clear systems, and the belief that you can do great work from wherever you are. It’s not about where you work. It’s about moving forward - together.

Ver todas as vagas na Zillow →

Vagas semelhantes

HP
Cybersecurity Analyst - Detection and Response
HP
⚡ Candidate-se cedo Bengaluru, Karnataka, India Presencial
● Nova 👁 Vista ✓ Candidatada há 17h
NVIDIA
Senior System Software Engineer – Linux Kernel Automotive Cybersecurity
NVIDIA
⚡ Candidate-se cedo India, Bengaluru Presencial
● Nova 👁 Vista ✓ Candidatada há 1d
LO
Analyst- Security Awareness
Lowe's
⚡ Candidate-se cedo Bengaluru Presencial
● Nova 👁 Vista ✓ Candidatada há 4d
RE
SOC Analyst — Security Operations
Revantage
⚡ Candidate-se cedo Bengaluru Presencial
● Nova 👁 Vista ✓ Candidatada há 4d
Rockwell Automation
Cybersecurity Engineer - Network
Rockwell Automation
⚡ Candidate-se cedo Pune, India Presencial
● Nova 👁 Vista ✓ Candidatada há 6d
Fresenius Medical Care
Analyst - Product Security
Fresenius Medical Care
⚡ Candidate-se cedo Bengaluru, KA Presencial
● Nova 👁 Vista ✓ Candidatada há 6d
Hewlett Packard Enterprise
Senior Cybersecurity Incident Response Analyst
Hewlett Packard Enterprise
⚡ Candidate-se cedo Bengaluru, Karnātaka, India Presencial
● Nova 👁 Vista ✓ Candidatada há 1sem
Mimecast
Information Security Analyst I
Mimecast
⚡ Candidate-se cedo India - Bengaluru Presencial
● Nova 👁 Vista ✓ Candidatada há 1sem
Diligent Corporation
Security GRC Analyst II
Diligent Corporation
⚡ Candidate-se cedo Bengaluru, Karnataka, India Híbrido
● Nova 👁 Vista ✓ Candidatada há 1sem

Cadastre-se para receber sugestões sob medida com base nas vagas que você abre e nas buscas que você salva.

Mais vagas na Zillow

Ver todas as vagas na Zillow →

Candidatar-se agora
🤖

Opa — calma aí

A JobsRadar foi feita para pessoas de verdade passando por um momento difícil na busca por emprego — não para requisições automatizadas. Você está clicando rápido demais e agora está temporariamente bloqueado.

Volte mais tarde. Se você está mesmo procurando emprego, estamos com você — apenas aja como um ser humano.

Catch your next role the second it’s posted.

Create a free account and we’ll watch the boards for you — the instant a job matches your search, it lands in your inbox or Telegram. No digging, no refreshing.

Create free account

Free forever · takes 30 seconds · already have one?

Ganhe vantagem na sua busca por emprego.

Entre no nosso canal do Telegram para o que ajuda você a conseguir a vaga — referências salariais, o pulso semanal do mercado e avisos de novos recursos. Sem spam, só sinal.

Entre no canal — é grátis