Role OverviewThe Senior Cybersecurity Analyst will help the team to perform Security Operations duties, including incident response, malware analysis, and monitoring. This role will work with the team and become a senior technical contributor to implement and apply technologies, processes, and practices designed to protect networks, devices, and data from malicious attack, damage, or unauthorized access.
What You Will Do
Conduct threat analysis, assessment, and malware analysis in support of security investigations and incident response processes. Lead investigations into security incidents escalated from lower-tier SOC analysts. Provide technical mentorship to Tier 1 and Tier 2 SOC analysts, sharing knowledge on incident response, threat detection, and advanced cybersecurity techniques.
Why It Might Be a Fit
The ideal candidate will have a strong knowledge of incident response methodologies, including NIST 800-61, and a proven track record of handling advanced and complex security incidents. They will also have experience working with security tools such as Azure Sentinel, Splunk, and Microsoft Defender Security Suite.
Requirements
- Bachelor’s degree in cybersecurity, computer science, information technology, or related field
- 5+ years experience in a Security Operations Center or Technical Incident Response role
- Strong knowledge of incident response methodologies, including NIST 800-61
- Proven track record of handling advanced and complex security incidents
- Demonstrated experience in computer security-related disciplines such as incident response, host forensics, malware analysis, container security, network traffic analysis, Insider Threat, alert tuning, and trend analysis
- Strong knowledge of cloud security in Azure, AWS, GCP
- Extensive experience working with security tools such as Azure Sentinel, Splunk, Microsoft Defender Security Suite, firewalls, IDS/IPS, antispam, content management, server and network device hardening, etc.
- Strong understanding of security concepts and threat categories (such as malware, phishing attacks, Defense-in-Depth, MITRE ATT&CK framework, Cyber Kill Chain, etc.)
- Strong knowledge of Windows, Linux, and Mac OS
- Advanced Experience with query languages such as KQL and SPL
- Experience with scripting languages such as Bash, PowerShell, or Python
- The ability to effectively communicate both verbally and in writing to audiences of different technical skill levels
- Strong analytical and troubleshooting abilities to investigate, identify, and resolve security incidents quickly and effectively
- Capability to remain calm, composed, and focused during high-pressure situations, ensuring a clear and effective incident response
- Ability to conduct forensic analysis of network packet captures, DNS, proxy, and host-based security logs
Benefits
- Extended health and dental benefits, and mental health plans
- Paid time off
- Savings and retirement plan matching
- Generous employee discount
- Fitness & yoga classes
- Parenthood top-up
- Extensive catalog of development course offerings
- People networks, mentorship programs, and leadership series
]]>