1 час назад
Threat Analyst 1
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Threat Analyst 1 (Cybersecurity): Providing monitoring, detection, and response services to defend customer environments with an accent on enterprise, log analysis and endpoint collection systems. Focus on cyber threat hunting, incident response, and neutralization of cyber threats.
Location: Remote
Company
is a global leader and innovator of advanced security solutions for defeating cyberattacks.
What you will do
- Monitor, investigate, and respond to alerts generated by the security stack.
- Perform end-to-end analysis on suspicious activity to assess scope, impact, and risk.
- Conduct threat hunting to identify potential threats throughout the MDR customer base.
- Investigate phishing emails, suspicious binaries, and behavioral anomalies.
- Contribute to internal knowledge bases, documentation, and continuous improvement initiatives.
- Engage with clients via email, phone, and tickets as part of case handling.
Requirements
- 1+ years of experience working in a Security Operations Center (SOC) or cybersecurity-focused IT role.
- Familiarity with endpoint and network security tools, including EDR, IDS/IPS, and malware prevention/monitoring solutions.
- Working knowledge of Windows operating systems (both workstation and server), with additional experience in Linux (Ubuntu, Debian, RedHat) or macOS environments.
- Understanding of core network concepts including TCP/IP, protocols, routing, and traffic analysis.
- Strong analytical thinking and troubleshooting skills, with attention to detail in investigations and case documentation.
- Excellent communication skills, with the ability to clearly explain findings to both technical and non-technical audiences.
Nice to have
- Familiarity with the MITRE ATT&CK framework and its application in detection and response.
- Experience working with SIEM platforms and managing enterprise security telemetry.
- Ability to write and interpret SQL queries for data analysis and investigation.
- Experience with OSQuery and scripting skills, particularly in PowerShell.
- Relevant and practical cybersecurity certifications (e.g., GSEC, GCIA, GCIH, PEN-200, Security Blue Team L1, TCM Academy SOC L1, or similar)
Culture & Benefits
- operates a remote-first working model, making remote work the primary option for most employees.
- Employee-led diversity and inclusion networks that build community and provide education and advocacy.
- Annual charity and fundraising initiatives and volunteer days for employees to support local communities.
- Global employee sustainability initiatives to reduce our environmental footprint.
- Global wellbeing days for employees to relax and recharge.
- Monthly wellbeing webinars and training to support employee health and wellbeing.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
4 минуты назад
Senior Internal Soc Analyst
4 дня назад
Security Engineer
3 часа назад
Incident Response Consultant (Cybersecurity)
1 день назад
Senior Threat Research Engineer (Cybersecurity)
190 000 - 235 000$
3 часа назад
Senior Security Researcher (Cybersecurity)
1 день назад