6 часов назад
Security Analyst (AI/Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Security Analyst (AI/Cybersecurity): Leading investigations and incident response across cloud, identity, endpoint, and SaaS environments with an accent on evidence-based verdicts, customer communication, and AI-assisted analysis. Focus on threat hunting, containment decisions, detection improvement, and shaping the workflows of a new managed detection and response service.
Location: Remote from Israel, London, or New York City
Company
builds AI-driven cybersecurity and defense products that help companies detect and respond to threats in modern cloud, identity, endpoint, and SaaS environments.
What you will do
- Lead security investigations from initial signal through final verdict, determining impact, severity, and blast radius.
- Reconstruct attacker activity across identity, cloud, endpoint, and SaaS telemetry using AI-assisted investigation and hands-on log analysis.
- Recommend and execute authorized containment actions while explaining impact and next steps to customers.
- Conduct hypothesis-driven and AI-assisted threat hunts and turn findings into new cases and detections.
- Shape Apollo's investigative standards, response workflows, customer reporting, and analyst console as a founding analyst.
- Feed investigation insights into detection engineering and product improvements.
Requirements
- 4+ years of hands-on security operations experience in a SOC, MSSP, or MDR environment at a senior or Tier 3 level.
- Investigation experience across Okta, Entra ID, AWS, Azure, GCP, EDR, Microsoft 365, and Google Workspace.
- Fluency in attacker tactics, techniques, and procedures, including MITRE ATT&CK.
- Experience with AI-assisted investigation or automation and strong judgment about its appropriate use.
- Strong customer-facing communication skills and excellent written analysis.
- Comfort working defined shifts as analyst coverage expands to 24x7.
Nice to have
- Experience in a multi-tenant MDR or MSSP practice.
- Detection rule writing or tuning with Sigma, YARA-L, SPL, KQL, or similar tools.
- Incident command, executive briefings, threat hunting, or DFIR experience.
- Daily use of AI or agentic coding tools to build security tooling.
Culture & Benefits
- Founding analysts help define the service, quality standards, workflows, and customer experience.
- Work on active defense cases with direct customer impact.
- Exposure to multiple customer environments and a broad range of attacker behavior.
- AI-native security operations that prioritize expert judgment, response, and customer outcomes.
- Autonomy, open communication, mentorship, learning, and collaboration with security and engineering specialists.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
7 дней назад
Security Operations Engineer (Cybersecurity)
91 200 - 118 600$
WRITER
5 дней назад
Security Engineer Detection and Response UK (AI Security)
3 дня назад
Security Operations Analyst II (Microsoft Defender/Sentinel)
83 000 - 110 000$
7 дней назад
Agentic Detection & Response Specialist (AI Security)
5 дней назад
Security Analyst III - SOC
5 дней назад