Job Description:
The Security Analyst role provides candidates with hands-on experience performing analysis and remediation of information security events. In addition to investigating events, candidates will be responsible for making improvements to existing detection and prevention controls through process and technology improvements, including the use of automation platforms. Candidates are expected to question the status quo to identify opportunities for continuous improvement and are enabled to take action to ensure the effectiveness of a distributed security program operating within DevOps centric workflows.
Your Responsibilities:
- Drive continuous improvement across all aspects of Security Operations
- Perform daily event and incident triage (e.g., malware triage, network analysis, live response, etc.)
- Develop and maintain security operations processes & documentation (e.g., runbooks, operating procedures, etc.)
- Assist with the analysis and remediation of security incidents
- Enhance detection and prevention controls (e.g., logic updates, exclusions, etc.)
- Collaborate on design, architecture, and threat models to incorporate detection and monitoring requirements
- Collaborate on response, containment, and remediation for confirmed security incidents
- Work with different operating systems and cloud hosting providers (e.g., AWS, GCP, Azure, OCI)
- Develop automation playbooks to improve the efficiency of operation processes
- Seek opportunities for continuous improvement and drive efficiency
- Maintain working knowledge of attacker tactics, techniques, and procedures (TTPs)
- Maintain event collection environment through health monitoring
US Located Required: Yes
Location: Remote
Schedule: Full time
Salary: USD 60K – 100K