2 дня назад
Security Operations Analyst (Cybersecurity)
100 000 - 125 000$
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Security Operations Analyst (Cybersecurity): Triaging, investigating, responding to, and remediating intrusions and security alerts from the Huntress platform with an accent on EDR telemetry, forensic artifacts, malware analysis, and Microsoft 365 investigations. Focus on determining attack root causes, developing remediations, tuning detection engineering, and handling complex threat activity on a weekend 4x10 schedule.
Location: Remote, United States. Initial training is Monday–Friday; afterward, work follows a 4x10 schedule: Wednesday–Saturday or Sunday–Wednesday, 7am–5pm PST.
Salary: $100,000–$125,000 base annually, plus bonus and equity. Additional on-call/call-in pay may apply.
Company
provides managed, enterprise-grade cybersecurity products through an integrated Security Operations Center and SaaS platform.
What you will do
- Triage, investigate, respond to, and remediate alerts and intrusions detected by the platform.
- Review EDR telemetry, log sources, forensic artifacts, and attack activity to determine root causes and recommend remediation.
- Perform tactical malware analysis and investigate suspicious Microsoft 365 activity.
- Support threat-related escalations from Product Support and explain findings to less technical audiences.
- Contribute to detection engineering, alert tuning, and projects that improve outcomes for analysts and partners.
Requirements
- 2+ years of experience in a SOC or digital forensics/DFIR role.
- Experience investigating Windows, Linux, and macOS attack surfaces.
- Knowledge of MITRE ATT&CK, PowerShell, Command Prompt, WMIC, scheduled tasks, SCM, domain enumeration, lateral movement, persistence, and defense evasion techniques.
- Experience with static and dynamic malware analysis, Windows or enterprise domain administration, Active Directory, Group Policy, and domain trusts.
- Working knowledge of networking fundamentals, web technologies, OWASP Top 10, and Microsoft 365 investigations.
- Effective communication, customer focus, curiosity, and willingness to learn.
Nice to have
- Experience in an MSP, MSSP, or MDR environment.
- Linux and macOS investigative experience, cloud investigations, or familiarity with RMM tools.
- Scripting experience with PowerShell, Python, Bash, PHP, JavaScript, or Ruby.
- Participation in HackTheBox, TryHackMe, Blue Team Labs Online, Capture the Flag, or cybersecurity competitions.
Culture & Benefits
- 100% remote work environment.
- Paid vacation, sick time, holidays, and 12 weeks of paid parental leave.
- Medical, dental, vision, life, and disability insurance.
- 401(k) contribution of 5% regardless of employee contribution and stock options for full-time employees.
- Home-office reimbursement, education and professional development allowance, and $75 USD monthly digital reimbursement.
- Access to BetterUp for personal and professional coaching.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
2 дня назад
Lead Threat Response Operations Analyst (Cybersecurity)
2 дня назад
Incident Response Analyst, Senior (Cybersecurity)
86 800 - 198 000$
5 дней назад
SOC Analyst - US
9 дней назад
Information Security Analyst (Cybersecurity)
137 800 - 180 800$
5 дней назад
OT Security Response Engineer (OT Cybersecurity)
145 900 - 234 200$
2 дня назад