Senior Threat Defense Analyst
- Description:
- Senior Threat Defense Analyst works as a subject matter expert in rapid threat detection and appropriate response.
- This role includes some leadership responsibilities, incident response duties, communication to leadership about current threat actors and their tools, and techniques and processes, as well as providing mentorship to other analysts.
- Acts as a subject matter expert in rapid threat detection and appropriate responses.
- Performs complex hunting activities for IOCs within the enterprise to efficiently and accurately identify external and internal threat actors.
- Effectively and efficiently aggregates, analyzes, and reacts to threat intelligence data using threat intelligence feeds and analytics platforms to profile threat actors.
- Exercises considerable judgement to develop processes and perform analysis, triage, and response to escalated security events and incidents generated by various sources.
- Provides technical leadership investigating and resolving security events and incidents and coordinates among internal support teams and external managed security services providers to drive incident resolution.
- Organizes, executes, and participates in red team/blue team exercises to test threat defense controls.
- Conducts and makes recommendations on testing to determine whether vulnerabilities and flaws can be exploited and/or attack attempts may be successful.
- Creates and tell stories that articulate observed threats and compromises.
- Develops new and different ways of detecting and disrupting kill chain activities occurring within the environment.
- Maintains awareness of evolving security threats, threat actors, and their TTPs.
- Provides mentorship to other analysts on the team.
- Requirements:
- 4 years in CyberSecurity Threat Intelligence and/or Detection and Response experience.
- Bachelor’s degree, with a focus in information security or computer science preferred, or an additional 2 years of experience in lieu of this degree.
- Industry recognized professional security certification (e.g., CISSP, CISA, CEH, or similar).
- Experience performing information security incident response tasks.
- Ability to react quickly, decisively, and deliberately in high stress situations.
- SIEM technologies and forensics tool experience.
- Experience identifying and gathering relevant information, correlating data, and generating reports on threats, IOCs, security incidents, vulnerabilities, and risks.
- Experience reviewing and analyzing network packet captures.
- Strong understanding of attacker methodologies and tactics, including kill-chain phases and responses.
- Strong verbal and written communication and interpersonal skills to document and communicate findings, escalate critical incidents, and interact with other teams.
- High school diploma or equivalent.
- Minimum age of 18.
- Must be authorized to work in the U.S.
- Benefits:
- Free stand-by travel privileges on Alaska Airlines & Horizon Air
- Comprehensive well-being programs including medical, dental and vision benefits
- Generous 401k match program
- Quarterly and annual bonus plans
- Generous holiday and paid time off
Apply Job!
Apply to this Job