
Analyst, Falcon Complete
Posted 4 days ago

Posted 4 days ago
This is a fully remote position, open to applicants in New Zealand.
• Triage, investigate, and respond to security alerts across endpoint, identity, email, network, and cloud platforms.
• Conduct tactical analysis of EDR telemetry, log sources, and forensic artifacts to ascertain the root cause and extent of compromise.
• Formulate targeted remediation strategies.
• Examine suspicious Microsoft 365 activities, including business email compromise and adversary-in-the-middle attacks.
• Contain threats and provide actionable recommendations to customers.
• Execute basic malware analysis to assist in security incident investigations and triage.
• Enhance and refine processes for incident detection and countermeasure execution.
• Act as the primary liaison during incident response operations.
• Create high-quality written and verbal communications, recommendations, and findings for customers and internal stakeholders.
• Practical experience in conducting and coordinating incident response across a diverse array of security events.
• Capability to manage multiple simultaneous incidents across various hosts and customer environments.
• Experience in investigating host/user compromises, network breaches, organized crime, and advanced persistent threats.
• Robust working knowledge of attack vectors and the tactics, techniques, and procedures (TTPs) of threat actors.
• Proven experience applying frameworks such as MITRE ATT&CK to ongoing investigations.
• Hands-on experience utilizing forensic analysis tools in incident response investigations.
• Demonstrated ability to perform basic static and dynamic malware analysis.
• Strong understanding of Windows, Mac, and/or Linux operating systems.
• Knowledge of Windows internals, including the file system, registry, scheduled tasks, and running processes.
• Hands-on experience managing networks and resolving connectivity, authentication, and configuration issues across enterprise environments.
• Strong working knowledge of network protocols and analysis tools.
• Experience analyzing network traffic to support incident investigations.
• Proven experience leveraging AI technologies to enhance decision-making, streamline workflows and processes, improve efficiency, and drive business outcomes.
• Clear and professional communication abilities.
• Candidates with Japanese written and verbal skills are strongly encouraged to apply.
• Market leader in compensation and equity awards.
• Comprehensive physical and mental wellness programs.
• Competitive vacation and holiday packages for recharging.
• Paid parental and adoption leave.
• Professional development opportunities available to all employees, regardless of level or role.
• Employee networks, geographic neighborhood groups, and volunteer opportunities to foster connections.
• Vibrant office culture with world-class amenities.
• Great Place to Work Certified™ globally.
Highmark Health
Brown & Brown Insurance
ASRC Federal
Rithum
Get handpicked remote jobs straight to your inbox weekly.