23 часа назад
Principal Advanced Threat Response Analyst (Cybersecurity)
120 500 - 276 500$
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Principal Advanced Threat Response Analyst (Cybersecurity): Leading complex APT, ransomware, insider threat, and nation-state investigations across enterprise and cloud environments with an accent on threat hunting, digital forensics, incident command, and adversary emulation. Focus on developing detections and automation, directing purple team exercises, hardening security controls, and mentoring incident response specialists.
Location: Fully remote within the USA
Salary: USD 120,500–276,500 annual base salary in Texas; variable incentives may also be offered.
Company
is a global edge-to-cloud technology company helping organizations connect, protect, analyze, and act on data and applications.
What you will do
- Lead complex investigations involving APTs, ransomware, insider threats, and nation-state activity across enterprise and cloud environments.
- Drive proactive threat hunting focused on emerging TTPs, behavioral analytics, and detection gaps across EDR, SIEM, and network telemetry.
- Develop purple team exercises, tabletop simulations, custom detections, playbooks, and automation to improve detection and containment.
- Lead incident command during major security events, coordinate multidisciplinary responders, brief executives, and produce after-action reports.
- Collaborate with red teams, offensive security engineers, engineering, and architecture teams to translate adversary behavior into stronger controls and detections.
- Mentor junior analysts, hunters, and incident responders while contributing to threat intelligence initiatives.
Requirements
- Must be based in the USA for this fully remote role.
- 10+ years of experience in incident response, threat hunting, digital forensics, threat intelligence, or SOC operations.
- Experience leading end-to-end investigations of advanced threat campaigns and complex multi-vector attacks.
- Strong knowledge of MITRE ATT&CK, adversary emulation, kill chain analysis, enterprise IT, and cloud security across AWS, Azure, and GCP.
- Expertise with offensive security tools, SIEM platforms including Splunk, Sentinel, and ELK, EDR platforms, and forensic tools.
- Strong scripting or automation skills with Python, PowerShell, or Bash, plus excellent communication and leadership abilities.
Nice to have
- Advanced SANS certifications such as GCFA, GREM, GCIA, GNFA, GCTI, GSEC, or GCIH.
- Offensive certifications such as OSCP, OSEP, OSED, or CRTO.
- Recognition from hands-on cybersecurity platforms such as Hack The Box, CyberDefenders, or TryHackMe.
- Cloud security certifications for AWS, Azure, or GCP.
Culture & Benefits
- Remote/teleworker arrangement with flexibility to manage work and personal needs.
- Comprehensive health, financial, and emotional wellbeing benefits for employees and their loved ones.
- Professional development programs supporting subject-matter expertise and career mobility.
- Inclusive workplace that values varied backgrounds and individual uniqueness.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
7 часов назад
Principal Cybersecurity Engineer (AI)
184 800 - 277 200$
4 дня назад
Cybersecurity Threat Hunter
115 000 - 123 000$
2 дня назад
Principal Incident Response Analyst (Cybersecurity)
101 900 - 132 800$
Datadog
2 дня назад
Security Engineer 2 - Cyber Threat Intelligence
156 000 - 195 000$
9 часов назад
Cybersecurity Senior Specialist – Threat Hunter
143 900 - 215 800$
4 дня назад
Senior Manager, Detection & Response (D&R) (Cybersecurity)
191 000 - 277 000$