4 дня назад
Security Analyst II: Gaurdian (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Security Analyst II: Gaurdian (Cybersecurity): Monitoring, investigating, and responding to security events across customer environments with an accent on SIEM, endpoint detection, cloud security, and incident triage. Focus on analyzing suspicious activity, supporting containment and remediation, improving detection automation, and coordinating with customers and incident response teams.
Location: United States; remote
Company
provides managed security services and consulting for customer security operations.
What you will do
- Monitor alerts, logs, telemetry, and security events across customer environments.
- Analyze suspicious activity across endpoints, networks, identity systems, cloud environments, and security platforms.
- Perform initial incident triage, assess severity and impact, and escalate confirmed or high-risk incidents.
- Support incident response, containment, remediation, and accurate investigation documentation.
- Communicate security findings and recommended actions to customers and internal stakeholders.
- Improve detection capabilities, automation, operational processes, and platform effectiveness in collaboration with security and engineering teams.
Requirements
- Experience in a Security Operations Center, MSSP, or MDR environment.
- Experience with SIEM and log-management platforms such as Splunk, Elastic Stack, Microsoft Sentinel, or Google Security Operations.
- Experience with EDR platforms such as CrowdStrike, Microsoft Defender, or SentinelOne.
- Experience with AWS, Microsoft Azure, Google Cloud Platform, Microsoft 365, Entra ID/Azure AD, or enterprise security platforms.
- Advanced system administration and scripting experience with PowerShell, Python, JavaScript, Ansible, SaltStack, Chef, Puppet, or similar technologies.
- Knowledge of SOAR, incident response, threat hunting, digital forensics, malware analysis, and the MITRE ATT&CK framework.
Nice to have
- Relevant cybersecurity certifications.
Culture & Benefits
- Remote work within the United States.
- Collaborative work with customers, internal security teams, incident response, threat hunting, engineering, and customer success.
- Focus on customer outcomes, technical curiosity, critical thinking, and continuous improvement.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
6 дней назад
Security Operations Consultant (Cybersecurity)
7 дней назад
Security Analyst (AI/Cybersecurity)
4 дня назад
Manager, Security Operations (SOC)
Replit
6 дней назад
Security Engineer (Incident Response)
230 000 - 360 000$
5 дней назад
Threat Analyst 3 (Cybersecurity)
74 000 - 123 000CAD
6 дней назад