Security Analyst I
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Security Analyst I (Cybersecurity): Deliver managed security solutions for clients by performing deep-dive investigations, threat hunting, and incident analysis with an accent on MITRE mapping and detection/response workflows. Focus on applying MITRE ATT&CK, automating investigations with Google SecOps SOAR, and analyzing raw log data in SIEM platforms to identify indicators of attack and provide security guidance.
Company
provides managed detection and response (MDR) and security programs integrating with existing tools.
What you will do
- Perform assessments and advanced analysis across endpoint, server, and network infrastructure.
- Conduct threat hunting and proactive security investigations to detect, isolate, and recommend actions for malicious activity.
- Coordinate incident investigations, scope customer incidents, and perform deep-dive analysis on detected threats.
- Apply MITRE ATT&CK to map customer use cases to tactics and techniques, and identify indicators of attack and compromise.
- Use Google SecOps SOAR to automate investigation and response workflows and analyze raw log data via SIEM platforms.
- Participate in an after-hours on-call rotation as an Incident Controller and document findings with recommendations.
Requirements
- Location: Hybrid position in the NW Arkansas office (Bentonville, Arkansas)
- 1+ years of progressive IT security experience.
- Experience administering Windows, Linux/Unix, or macOS systems.
- Advanced understanding of networking concepts and network artifacts.
- Experience with EDR solutions (e.g., Cortex XDR, SentinelOne, CrowdStrike, or Microsoft Defender) and SIEM platforms (e.g., Google SecOps, Microsoft Sentinel, Splunk, Elastic, IBM QRadar, or Chronicle).
- Basic scripting/programming experience in Python, JavaScript, PowerShell, Bash, or a similar language; industry certification (Security+, CEH, OSCP, or SANS such as GCIH/GCIA/GSEC/GMON) or active progress toward one.
Culture & Benefits
- Hybrid work model: 2–3 days in office.
- Medical insurance for employee and dependents, plus life insurance.
- Retirement match program and paid time off (PTO, sick & casual leave).
- Maternity & paternity leave, bereavement and volunteer time.
- Professional development reimbursement and LinkedIn Learning access.
- Mobile phone reimbursement.
Hiring process
- Interview process with evaluation of security operations, investigation/threat hunting experience, and tool familiarity (EDR/SIEM/SOAR).
- Discussion of incident response/on-call expectations and ability to work in a hybrid NW Arkansas office setup.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →