Security Analyst II
New
C
CyderesCybersecurity
Listing location: United States; Workplace type: RemoteFull-TimeMiddle
Salary68,000 - 75,000 USD per year
Apply NowOpens the employer's application page
Job Details
- Required Skills
- AWSPythonGCPMicrosoft Azure
Requirements
- Have experience working in a Security Operations Center (SOC), Managed Security Service Provider (MSSP), or Managed Detection & Response (MDR) environment.
- Have experience with SIEM and log-management platforms such as Splunk, Elastic Stack, Microsoft Sentinel, or Google Security Operations.
- Have experience with Endpoint Detection and Response (EDR) technologies such as CrowdStrike, Microsoft Defender, or SentinelOne.
- Have experience with AWS, Microsoft Azure, and Google Cloud Platform environments and technologies.
- Have experience supporting Microsoft 365, Entra ID/Azure AD, Proofpoint, or other enterprise security platforms.
- Have scripting or development experience with Python, PowerShell, or JavaScript.
- Have advanced system administration experience with Windows PowerShell, Ansible, SaltStack, Chef, Puppet, or similar technologies.
- Have experience with SOAR technologies such as Cortex XSOAR or Splunk SOAR.
- Be familiar with incident response, threat hunting, digital forensics, or malware analysis.
- Understand the MITRE ATT&CK framework and common adversary behaviors.
- Relevant cybersecurity certifications are a plus.
Responsibilities
- Monitor security alerts and events across the Cyderes security platform and customer environments.
- Analyze, investigate, and respond to security events.
- Triage incidents and determine their severity, scope, and potential impact.
- Investigate suspicious activity across endpoints, networks, identity systems, cloud environments, and security technologies.
- Escalate confirmed or high-risk incidents to incident response or senior security resources.
- Assist with incident containment and remediation activities.
- Review security telemetry, logs, alerts, and other data sources for malicious or abnormal behavior.
- Document investigations, findings, actions taken, and customer communications.
- Communicate security events and recommended actions to customers and internal stakeholders.
- Identify opportunities to improve detection capabilities, operational processes, automation, and platform effectiveness.
View Full Description & ApplyYou'll be redirected to the employer's site