Security Operations Analyst (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Security Operations Analyst (Cybersecurity): Triage, investigate, respond to, and remediate cyber intrusions detected by the platform with an accent on EDR telemetry, forensic artifacts, malware analysis, and Microsoft 365 investigations. Focus on identifying attack root causes, tuning detections, analyzing threat actor techniques, and improving outcomes for analysts and partners.
Location: 100% remote within the United States, with an East Coast schedule alignment. Initial training runs Monday through Friday; the schedule may later include weekends or a 4x10 shift.
Salary: $100,000–$125,000 base annually, plus bonus and equity. Additional on-call or call-in pay may apply.
Company
is a remote-first cybersecurity product company that provides an in-house platform and 24/7 human-led Security Operations Center for protecting businesses from cyberattacks.
What you will do
- Triage, investigate, respond to, and remediate alerts from the platform.
- Review EDR telemetry, logs, and forensic artifacts to identify attack causes and recommend remediation.
- Perform tactical static and dynamic malware analysis.
- Investigate suspicious Microsoft 365 activity and support threat-related escalations from Product Support.
- Contribute to detection engineering, detection tuning, and analyst-focused improvement projects.
- Collaborate with and mentor peers while supporting customers and partners.
Requirements
- 2+ years of experience in a SOC or DFIR role.
- Experience investigating Windows, Linux, and macOS attack surfaces.
- Knowledge of threat actor tools and techniques, including MITRE ATT&CK, PowerShell, command-line tooling, lateral movement, persistence, and defense evasion.
- Experience with malware analysis, Windows or enterprise domain administration, Active Directory, Group Policy, networking, and web security concepts.
- Ability to explain complex security events to non-technical audiences and collaborate across departments.
- Strong customer focus, curiosity, and commitment to continuous learning.
Nice to have
- Experience in an MSP, MSSP, or MDR environment.
- Linux and macOS investigative experience.
- Scripting experience with PowerShell, Python, Bash, PHP, JavaScript, or Ruby.
- Experience with cloud investigations across Microsoft 365, Azure, AWS, or GCP.
- Experience with cybersecurity labs, competitions, CTFs, or MSP tools such as RMMs.
Culture & Benefits
- 100% remote work environment.
- Paid vacation, sick time, holidays, and 12 weeks of paid parental leave.
- Medical, dental, vision, life, and disability insurance.
- 401(k) with a 5% company contribution and stock options for full-time employees.
- $500 home-office reimbursement, annual education and professional development assistance, and a $75 monthly digital reimbursement.
- Access to BetterUp coaching and a culture focused on inclusivity, collaboration, and professional growth.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →