18 часов назад
Network Security Analyst (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Network Security Analyst (Cybersecurity): Monitoring, investigating, and prioritizing security alerts across SIEM, EDR, cloud, email, identity, and network security platforms with an accent on threat triage, incident response, and vulnerability risk assessment. Focus on correlating complex security events, distinguishing real threats from false positives, and coordinating containment and escalation in a 24x7 CSOC environment.
Location: Onsite in Austin, Texas
Company
is a technology and professional services firm specializing in innovative technologies and nationwide technology management.
What you will do
- Monitor, investigate, and triage alerts from SIEM, EDR, cloud security, email security, identity protection, and network security platforms.
- Correlate events across endpoints, firewalls, IDS/IPS, cloud services, authentication systems, and threat intelligence feeds.
- Investigate indicators of compromise, phishing, malware, suspicious network activity, and anomalous user behavior.
- Support incident containment, eradication, recovery, escalation, and vulnerability remediation prioritization.
- Document investigations and response actions while improving alert tuning, playbooks, workflows, and detection processes.
- Research emerging threats and collaborate with security engineers, incident responders, administrators, and business stakeholders.
Requirements
- 3+ years of experience in cybersecurity operations, security monitoring, incident response, threat detection, or security investigations.
- Experience triaging security alerts, analyzing security events, documenting investigations, and distinguishing threats from false positives.
- Experience with one or more SIEM platforms such as Microsoft Sentinel, Splunk, QRadar, ArcSight, LogRhythm, or NetWitness.
- Experience with EDR tools and knowledge of IDS/IPS, threat intelligence, vulnerability management, email security, cloud security, or SASE solutions.
- Knowledge of Windows, Linux, networking protocols, Active Directory, Microsoft Entra ID, cloud environments, enterprise security controls, and incident response frameworks.
- Ability to work independently and within a 24x7 cybersecurity operations team.
Nice to have
- Bachelor’s degree in cybersecurity, information security, computer science, or a related field.
- Relevant certifications such as Security+, GCIH, GCIA, CSA, or SC-200.
- Experience with KQL, Lucene, SPL, ESQL, PowerShell, Python, or Bash.
- 5+ years of experience across the required technical areas.
Culture & Benefits
- Competitive salary.
- Work within a 24x7 cybersecurity operations model.
- Collaborative environment involving technical and non-technical stakeholders.
- Opportunity to support threat detection and incident response process improvement.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
7 дней назад
Security Operations Center Cyber Analyst
64 252 - 111 721$
7 дней назад
Manager / Sr. Manager, SecOps & Cyber Defense
185 000 - 235 000$
5 дней назад
Security Engineer, Level 5, Detection & Response (Cybersecurity)
178 000 - 313 000$
5 дней назад
Senior Security Operations Analyst III (Cybersecurity)
145 000 - 170 000$
4 дня назад
Incident Response Analyst (Cybersecurity)
140 000 - 160 000$
1 день назад
Senior Cyber Defense Engineer (AI)
121 300 - 192 692$