Назад
Company hidden
5 дней назад

Senior Cybersecurity Analyst

Формат работы
onsite
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Cybersecurity Analyst (Microsoft Sentinel/Defender XDR): Detecting, investigating, and responding to threats across corporate, cloud, and product environments with an accent on multi-telemetry investigations, threat hunting, detection engineering, and security awareness campaigns. Focus on leading incident response, building PowerShell and Python automation, translating threat intelligence into detections, and mentoring junior analysts.

Location: Arlington, Virginia, United States; onsite role. Candidates must be legally authorized to work in the United States and must not require employer visa sponsorship.

Company

hirify.global delivers intelligent energy storage and optimization software and operational services for renewable energy and storage markets.

What you will do

  • Monitor, investigate, and respond to threats across corporate, cloud, endpoint, identity, email, network, and product environments.
  • Lead complex incident investigations from initial alert through containment, eradication, recovery, root cause analysis, and closure.
  • Conduct threat hunting with Microsoft Sentinel, Microsoft Defender XDR, KQL, and current threat intelligence mapped to MITRE ATT&CK.
  • Develop and improve detections, security monitoring, vulnerability assessments, and cloud telemetry integrations.
  • Build security operations automation with PowerShell, Python, Logic Apps, or comparable SOAR tooling.
  • Manage security awareness, phishing simulations, training assignments, reporting, and targeted coaching programs.

Requirements

  • Bachelor’s or master’s degree in computer science, information security, cybersecurity, or equivalent practical experience.
  • At least 5 years of security operations, incident response, red teaming, penetration testing, IT audit, network operations, or enterprise risk experience, primarily in hands-on security operations.
  • At least 4 years working with regulatory compliance and information security frameworks such as ISO 27001, NIST CSF, or NIST SP 800-53.
  • Hands-on experience with Microsoft Sentinel, Microsoft Defender XDR, firewalls, IDS/IPS, KQL, SQL, and Microsoft Excel.
  • Experience with PowerShell or Python automation, Logic Apps or SOAR platforms, threat intelligence, MITRE ATT&CK, vulnerability assessment tools, and ServiceNow or Jira.
  • Experience running security awareness and phishing simulation programs; CompTIA CySA+, Microsoft SC-200, or an equivalent certification.

Nice to have

  • Additional certifications such as GCIA, GCIH, GCFA, GCTI, CISSP, or Microsoft SC-100.
  • Experience securing Azure, GCP, or AWS environments and onboarding cloud telemetry into a SIEM.
  • Experience with detection-as-code, version control, CI/CD pipelines, operational technology, industrial control systems, or energy and manufacturing environments.
  • Experience mentoring analysts, leading major incident bridges, or working with managed security service providers and follow-the-sun SOC models.

Culture & Benefits

  • Collaborative culture focused on openness, active listening, innovation, and diverse perspectives.
  • Ownership-oriented environment with emphasis on customer value, continuous improvement, and sustainable energy impact.
  • Opportunity to work with IT infrastructure, DevOps, risk and compliance, business teams, managed service providers, and vendors.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →