
Cyber Threat Analyst
Posted 2 days ago

Posted 2 days ago
This is a fully remote position, open to applicants in District of Columbia.
• Oversee and react to security incidents while executing response measures, including thorough documentation.
• Handle security events with a focus on swift resolution.
• Continuously track SIEM alerts and optimize identification and response protocols.
• Develop new rules based on emerging cyber-attack trends and the organization’s threat strategy.
• Conduct proactive threat hunting initiatives.
• Produce vulnerability management reports utilizing vulnerability scanning tools.
• Work collaboratively with stakeholders to ensure progress in vulnerability remediation.
• Create reports for IT administrators, business leaders, and security personnel to assess security policies and controls.
• Provide recommendations and implement modifications to counter threats or enhance security standards.
• Streamline and automate security processes.
• Document incidents for incident response and disaster recovery protocols.
• Carry out both internal and external security audits.
• At least 5 years of experience as a Tier 2 Cyber Threat Analyst.
• Security+ or CEH certification is required.
• Demonstrated experience with SIEM, including Rules, Parsing, Correlation, and Investigation.
• Proven track record in Playbook implementation (e.g., Palo Alto XSOAR).
• Established experience in Threat Hunting activities.
• Familiarity with Cyber Kill Chain and MITRE ATT&CK frameworks.
• Experience with multi-cloud environments (Azure, AWS).
• Strong understanding of TCP/IP topology, network protocols, Active Directory, and file permissions.
• Background in network and security systems, endpoint devices, EDR, firewalls, as well as Windows, Linux, and Mac operating systems.
• Experience in drafting incident response reports.
• Knowledge of scripting in PowerShell and Python.
• Exceptional communication skills to engage effectively with stakeholders at all levels.
• Must be team-oriented, organized, structured, and detail-focused.
• Must be a US Citizen with the capability to obtain a security clearance.
• Equal opportunity/affirmative action employment policy.
• Remote work arrangement.
TRM Labs
CrowdStrike
Instituto Hardware BR HBR
Mitiga
Get handpicked remote jobs straight to your inbox weekly.