22 часа назад
Cyber Security Analyst
100 000 - 130 000$
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Cyber Security Analyst (SIEM/SOAR): Detecting, investigating, and responding to security incidents while developing detection rules, automations, and threat intelligence workflows with an accent on SOC operations, incident containment, and security monitoring. Focus on threat hunting, reducing false positives, improving detection coverage, and supporting Red and Purple Team exercises.
Location: US PA Home Office; remote within the United States
Salary: $100,000–$130,000 per year, plus an annual discretionary bonus and employee benefits.
Company
is a family-owned manufacturer of personal care and household products serving large retailers and healthcare organizations across the United States and Canada.
What you will do
- Monitor SIEM/SOAR alerts and user reports, investigate incidents, and execute containment and eradication procedures.
- Develop, tune, and optimize detection rules and SOC processes to reduce false positives and improve detection accuracy.
- Conduct threat hunting, review threat intelligence, analyze logs, and identify visibility gaps.
- Design and maintain automations that streamline SOC workflows and accelerate incident response.
- Prepare reports on SOC activities, metrics, and security trends for stakeholders and management.
- Participate in Red and Purple Team exercises to assess security controls and incident response capabilities.
Requirements
- 1–2 years of experience in a Security Operations Center environment, in-house or with an MSSP.
- Hands-on experience with SIEM platforms and familiarity with EDR solutions such as CrowdStrike, SentinelOne, Microsoft Defender for Endpoint, or Cortex XDR.
- Ability to interpret firewall, Azure AD, Windows Security Log, email, proxy, and URL-filtering logs.
- Understanding of phishing, brute-force attacks, malware, and data exfiltration techniques.
- Strong analytical, troubleshooting, log analysis, communication, and problem-solving skills.
- Bachelor’s degree in Computer Security, Cybersecurity, Information Security, or a related field preferred; relevant experience may substitute for a degree.
Nice to have
- Advanced SIEM content development, including custom correlation rules, dashboards, and reporting.
- Python, PowerShell, or Bash scripting for security automation.
- End-to-end incident response, root cause analysis, and post-incident reporting experience.
- Experience securing cloud environments such as Microsoft Azure, AWS, or Google Cloud Platform.
Culture & Benefits
- Collaborative environment focused on continuous learning and professional development.
- Paid time off with a three-week minimum and paid parental leave.
- Medical, dental, and vision coverage starting on the first day.
- 401(k) with employer match, dependent care FSA support, tuition assistance, and wellness benefits.
- Travel of up to five days per year may be required.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
3 дня назад
Senior Security Analyst, Detection & Response (Cybersecurity)
100 000 - 130 000$
20 часов назад
CSOC Analyst T1 (Cybersecurity)
64 000 - 128 000$
4 дня назад
Detection and Response Lead (Cybersecurity)
160 000 - 200 000$
7 дней назад
Sr. Cyber Defense Specialist (Hybrid)
130 000 - 176 000$
1 день назад
Senior Security Analyst (Cybersecurity)
50 000 - 60 000GBP
7 дней назад
Information Security Analyst (Cybersecurity)
85 200 - 115 000$