Apply

Security Analyst

Posted about 1 month agoViewed

View full description

💎 Seniority level: Junior, 1+ years

📍 Location: United States, Canada

💸 Salary: 114750.0 - 120000.0 USD per year

🔍 Industry: Biotechnology

🏢 Company: Benchling👥 501-1000💰 $100,000,000 Series F over 3 years agoBiotechnologyLife ScienceSoftware

🗣️ Languages: English

⏳ Experience: 1+ years

🪄 Skills: PythonCloud ComputingScripting

Requirements:
  • 1+ years of Incident Response experience
  • Experience participating in multi-team incidents
  • Practical experience with attacker tactics and techniques
  • Experience with cloud environments and automation
  • Experience in at least one scripting language, preferably Python
Responsibilities:
  • Coordinate investigations across the organization
  • Drive multi-functional incident response
  • Build efficient processes for handling investigations
Apply

Related Jobs

Apply

📍 Canada, U.S.

🔍 Information Security

  • 3 - 5+ years of information security experience
  • Thorough knowledge of networks and cloud computing
  • Experience with SOC 2 Type 2
  • Knowledge of data protection operations and legislation (e.g. GDPR, PIPEDA, HIPAA)
  • Experience diagnosing and stopping cyberattacks
  • Experience with vulnerability scanning solutions
  • Experience penetration testing
  • Proficiency with mobile device management and endpoint management software
  • A thorough understanding of security best practices
  • Leadership and organizational skills
  • Ability to manage multiple projects
  • Outstanding communication skills
  • Problem-solving aptitude
  • Ability to troubleshoot and repair issues
  • Create and maintain security policies at TealBook
  • Work with SOC 2 Type 2 auditors to ensure compliance and certification
  • Work with customers to communicate TealBook’s security stance and gather security requirements
  • Guide and collaborate with software engineers to design, implement and operate secure systems
  • Guide and collaborate with data engineers to design and implement data security best practices
  • Perform penetration testing and remediation
  • Perform vulnerability testing and remediation
  • Plan and maintain a security roadmap
  • Track and manage security risks

Cloud ComputingCybersecurityLDAPComplianceRisk ManagementData modelingScripting

Posted 3 days ago
Apply
Apply

📍 United States, Canada, United Kingdom, India

🔍 Cybersecurity

  • 5 or more years of progressing/in-depth IT security experience.
  • System Administration experience (Windows, Unix/Linux, Mac)
  • Advanced understanding of networking concepts and ability to analyze network artifacts.
  • Demonstrated experience in using Endpoint Detection and Response software (SentinelOne, Crowdstrike, Defender ETC.)
  • Advanced knowledge of at least one leading SIEM platform (Sentinel, Splunk, Elastic, IBM Qradar, Chronicle etc.)
  • Possess at least one industry certification Sec+, CEH, SANS Certification (e.g. GCIH, GCIA, GSEC, GMON), OSCP etc. or working towards a related certification.
  • Prior knowledge of SOAR platform such as Siemplify, Forti soar etc.
  • Basic scripting or development experience in one of the following languages: Python, JavaScript, PowerShell, bash, etc.
  • Exceptional written and verbal communication skills.
  • Demonstrated expert knowledge of the MITRE ATT&CK framework.
  • Take ownership of positive security outcomes for a designated set of customers.
  • Provide overall guidance, instruction, mentorship, and leadership to other Security Analysts.
  • Drive customer cadence calls and act as trusted advisor to customers.
  • Develop custom dashboards and reports for regular customer status updates.
  • Ensure quality of SOC deliverables to the Principal Analyst’s customers.
  • Perform Threat Hunting on customer networks to detect, isolate threats and provide recommendations.
  • Provide proactive security investigation and searches on client environment to detect malicious activities.
  • Expert-level Strategic Analysis of customer security posture, risk level, and security data.
  • Update documentation and runbooks to ensure repeatable analysis.
  • Advise Detection Engineering, Automation Engineering, and Telemetry Engineering on technology improvements to close gaps in customer security posture.
  • Document and communicate recommendations and guidelines based on results of analysis.
  • Maintain current knowledge and understanding of threat landscape.

PythonSQLBashCybersecurityData AnalysisCommunication SkillsAnalytical SkillsCI/CDProblem SolvingCustomer serviceMentoringLinuxWritten communicationDocumentationNetworkingReportingActive listeningRisk ManagementScripting

Posted 6 days ago
Apply
Apply
🔥 Security Analyst
Posted 29 days ago

📍 US, Canada

🧭 Full-Time

🔍 Fraud Prevention and AML Compliance

🏢 Company: Sardine👥 101-250💰 $70,000,000 Series C about 2 months agoCryptocurrencyFraud DetectionFinTechSoftware

  • 3+ years working in a fast-paced role.
  • Strong understanding of security frameworks and standards (e.g., NIST, ISO 27001, SOC 2).
  • Knowledge of relevant regulations and compliance requirements (e.g., HIPAA, PCI DSS, GDPR).
  • Experience with security tools and technologies, such as SIEM, vulnerability scanners, intrusion detection/prevention systems, and firewalls.
  • Familiarity with risk assessment methodologies and frameworks.
  • Experience in developing and implementing security policies, standards, and procedures.
  • Strong analytical, problem-solving, and incident response skills.
  • Excellent communication and interpersonal skills, with the ability to effectively interact with technical and non-technical stakeholders.
  • Ability to work independently and as part of a team.
  • Ability to travel if needed.
  • Working knowledge of MacOS.
  • Develop, implement, and maintain security policies, standards, and procedures in line with regulatory requirements (e.g., NIST, ISO 27001, HIPAA, PCI DSS, GDPR).
  • Conduct risk assessments to identify and mitigate threats to information assets.
  • Monitor and report on compliance, tracking the effectiveness of security controls.
  • Manage security audits, coordinate with external auditors, and address findings.
  • Maintain security documentation and ensure alignment with evolving regulations.
  • Provide security awareness training and support incident response planning.
  • Monitor SIEM systems and security tools for threats and vulnerabilities.
  • Investigate and respond to security incidents, documenting analysis and remediation steps.
  • Perform vulnerability scanning, penetration testing, and security assessments.
  • Collaborate with IT teams to implement security controls and remediate risks.
  • Stay informed on emerging threats and contribute to threat intelligence initiatives.
  • Participate in incident response exercises and develop security reports for management.

AWSCloud ComputingCybersecurityCommunication SkillsAnalytical SkillsProblem SolvingLinuxAttention to detailComplianceTeamworkTroubleshootingRisk ManagementScripting

Posted 29 days ago
Apply
Apply
🔥 Security Analyst
Posted about 1 month ago

📍 Philadelphia, Pennsylvania; Boston, Massachusetts; New York City, New York; Baltimore, Maryland; Washington, D.C.; Charlotte, North Carolina; Raleigh-Durham, North Carolina; Atlanta, Georgia; Chicago, Illinois; CT, DE, FL, GA, IL, IN, MA, MD, MI, NC, NJ, NY, OH, PA, TN, and VA

🧭 Full-Time

🔍 Information Security

🏢 Company: HealthVerity👥 101-250💰 $100,000,000 Series D almost 4 years agoInformation ServicesInformation TechnologyHealth Care

  • 2-5 years information security and/or system administration experience under Linux-focused on patching, configuration management, and vulnerability remediation
  • ISC2, SANS or similar security certifications
  • Working knowledge of Nmap, Nessus, OpenVPN, tcpdump, OpenSSL and other security related tools
  • Comfortable with scripting in Python and Bash
  • Understanding of data network configuration and infrastructure concepts, including TCP/IP, DNS, routers, internet/intranet/extranet, firewalls, web servers and security hierarchy including the application of encryption key infrastructures and authentication processes
  • Manage and triage security incidents and events daily
  • Own operational security tool administration and optimization of configuration settings
  • Perform scanning activities and ensuring records are created to document and track vulnerabilities
  • Ensure our logging system configuration is consistent with policy and procedure requirements and generates reports that aid in incident response and investigation
  • Participate in select security led projects to expand and/or improve security capabilities
  • Research InfoSec trends, analyze threat intelligence reports via subscribed feeds and recommend security posture changes
  • Aid in identifying procedure maintenance and create documentation as needed
  • Participate in Contingency Planning and Incident Response exercises

PythonSQLBashCybersecurityLinuxComplianceRisk ManagementScripting

Posted about 1 month ago
Apply
Apply

📍 United States

💸 98000.0 - 110000.0 USD per year

🔍 Information Security

🏢 Company: Authorium👥 51-100💰 $12,000,000 Series A almost 2 years agoConsultingGovernmentInformation TechnologySoftware

  • Bachelor's degree in Information Security, Computer Science, or a related field or equivalent work experience.
  • Minimum of 2 years of experience in information security or a related field.
  • Working knowledge of FedRAMP/StateRAMP requirements and compliance frameworks.
  • Experience with continuous monitoring tools and techniques.
  • Strong analytical and problem-solving skills.
  • Excellent communication and interpersonal skills.
  • Ability to work independently and as part of a team.
  • Experience with DevSecOps principles and practices is a strong plus.
  • Knowledge of scripting languages (e.g., Python, Bash) is a plus.
  • Certification e.g., CISSP, CISM, CISA.
  • Play a vital role in maintaining Authorium’s compliance with SOC 2, StateRAMP, FedRAMP, and DoD Impact Level 5 requirements.
  • Bridge the gap between operations, development, and security, documenting robust application security measures aligned with NIST 800-53.
  • Work closely with developers, security experts, and other operations teams to ensure the platform's security, reliability, and performance through monthly continuous monitoring activities.

PythonBashCybersecurityAnalytical SkillsProblem SolvingComplianceScripting

Posted 4 months ago
Apply
Apply

📍 USA

💸 80000 - 110000 USD per year

🔍 Insurance and Cybersecurity

🏢 Company: At-Bay

  • Bachelor’s degree or equivalent.
  • Minimum of 2 years of experience in cybersecurity operations, incident response, or another security discipline.
  • Willingness to travel as needed.
  • Previous EDR, MDR, XDR, security monitoring, or incident response experience.
  • Strong oral and written communication skills.
  • Experience performing security operations with various endpoint and network tools.
  • Familiarity with deployment, tuning, and operation of security tools from vendors like CrowdStrike and SentinelOne.
  • Experience with SIEM or similar tools for security data analysis.
  • Skills in analyzing potential indicators of compromise, rapid response to incidents, and cyber threat intelligence.
  • Operation and tuning of security monitoring tools including EDR, network monitoring, email security, DLP, SIEM, and security automation tools.
  • Identification and analysis of anomalous activity in customer technology environments.
  • Triage of event data to identify potential indicators of compromise.
  • Escalation of potentially malicious activity to engage incident responders.
  • Participation in incident investigation, containment, remediation, and recovery activities.
  • Developing and maintaining relationships with customers for MDR service delivery.
  • Developing and delivering reports on identified activity to customer stakeholders.

AWSCloud ComputingCybersecurityGCPMicrosoft AzureAmazon Web ServicesAzureCommunication SkillsAnalytical SkillsCollaborationProblem SolvingAttention to detailOrganizational skillsPresentation skillsTime ManagementWritten communication

Posted 5 months ago
Apply