
Analyst, Falcon Complete
Posted 4 days ago

Posted 4 days ago
This is a fully remote position, open to applicants in Australia.
• Manage, investigate, and respond to security alerts across endpoint, identity, email, network, and cloud platforms.
• Perform tactical analysis of EDR telemetry, log sources, and forensic artifacts to identify root causes and the extent of compromises.
• Create focused remediation strategies.
• Examine suspicious Microsoft 365 activities, including business email compromise and adversary-in-the-middle incidents.
• Mitigate threats and provide actionable advice to clients.
• Conduct basic malware analysis to aid in the investigation and triage of security incidents.
• Enhance and refine processes for incident detection and the execution of countermeasures.
• Act as the main point of contact for clients during incident response operations.
• Generate written and oral reports, recommendations, and findings for clients and internal stakeholders.
• Practical experience in conducting and coordinating incident responses across a wide array of security events.
• Capability to manage multiple incidents concurrently across various hosts and client environments.
• Background in investigating host/user compromises, network breaches, organized crime, and advanced persistent threats.
• Solid understanding of attack vectors and the tactics, techniques, and procedures (TTPs) employed by threat actors.
• Proven experience in applying frameworks like MITRE ATT&CK to ongoing investigations.
• Hands-on experience with forensic analysis tools during incident response inquiries.
• Demonstrated ability to conduct basic static and dynamic malware analysis.
• Strong comprehension of Windows, Mac, and/or Linux operating systems.
• Knowledge of Windows internals, such as the file system, registry, scheduled tasks, and active processes.
• Practical experience in managing networks and resolving connectivity, authentication, and configuration challenges across enterprise environments.
• In-depth knowledge of network protocols and analysis tools.
• Experience in analyzing network traffic to assist with incident investigations.
• Proven ability to leverage AI technologies to enhance decision-making, streamline processes, improve efficiency, and drive business results.
• Excellent and professional communication skills.
• Proficiency in Japanese, both written and verbal, is highly preferred.
• Competitive compensation and equity awards, positioning us as a market leader.
• Comprehensive wellness programs focused on both physical and mental health.
• Generous vacation and holiday allowances for relaxation and recharge.
• Paid parental and adoption leave.
• Opportunities for professional development for all employees, regardless of their position.
• Employee Networks, community groups, and volunteer opportunities to foster connections.
• Dynamic office culture with world-class amenities.
• Recognized as a Great Place to Work Certified™ globally.
Highmark Health
Brown & Brown Insurance
ASRC Federal
Rithum
Get handpicked remote jobs straight to your inbox weekly.