Remotery

Cybersecurity Analyst

atCherokee FederalRemoteUS flagUnited StatesFull-timeSecurity AnalystMid-levelSenior$153k – $160k/year

Posted Jul 20

This is a fully remote position, open to applicants in United States.

📋 Description

• Oversee and evaluate security events using Splunk Enterprise Security (ES).

• Develop, manage, and optimize Splunk searches, correlation rules, alerts, and dashboards.

• Perform incident response activities from detection to containment, eradication, recovery, and closure.

• Investigate endpoint security incidents using Microsoft Defender for Endpoint.

• Conduct endpoint policy management and incident investigations.

• Evaluate AWS cloud security telemetry through GuardDuty, Security Hub, and other relevant cloud security services.

• Identify threats, vulnerabilities, suspicious behaviors, and cloud misconfigurations.

• Carry out alert triage, incident scoping, and escalation activities in accordance with established playbooks.

• Suggest updates and enhancements to operational procedures and incident response playbooks.

• Assist in threat hunting efforts and detection engineering initiatives aligned with MITRE ATT&CK methodologies.

• Conduct phishing investigations, alert enrichment, and forensic review tasks.

• Execute root cause analysis and document corrective measures post-security incidents.

• Monitor incidents and operational tasks using case management systems.

• Engage in tabletop exercises and operational readiness initiatives.

• Collaborate with Security Operations teams, Incident Response personnel, and federal stakeholders.

• Prepare reports and convey findings to both technical and non-technical audiences.

• Perform additional job-related duties as assigned.


⛳️ Requirements

• Three (3) to five (5) years of experience in cybersecurity operations, SOC analysis, incident response, or related security fields.

• Proven hands-on experience with Splunk Enterprise Security, including search development, dashboard creation, and correlation rule tuning.

• Experience using Microsoft Defender for Endpoint for security investigations and policy management.

• Working knowledge of AWS cloud security technologies, including GuardDuty, Security Hub, or similar tools.

• Demonstrated experience managing incidents across the entire incident response lifecycle.

• Familiarity with the MITRE ATT&CK framework and common tactics, techniques, and procedures employed by threat actors.

• Knowledge of incident response methodologies and frameworks such as NIST 800-61.

• Strong analytical, investigative, and problem-solving skills.

• Exceptional written and verbal communication abilities.

• Experience supporting federal government clients or working in highly regulated environments.

• Capacity to work independently while effectively collaborating with cross-functional teams.


🏝️ Benefits

• Medical

• Dental

• Vision

• 401(k)

• Paid Time Off

• Life Insurance

• Disability Coverage

• Other benefits as provided

People also viewed

The Home Depot9 hours ago

Cybersecurity Analyst – PCI

US flagTexas OnlyFull-timeSecurity Analyst$80k – $120k/year
ApplyView job
Lennar13 hours ago

Senior Workday Analyst – Security Administration, Job Architecture

US flagFlorida OnlyFull-timeSecurity Analyst
ApplyView job
Golden 1 Credit Union1 day ago

Senior Information Security Analyst

US flagCalifornia OnlyFull-timeSecurity Analyst$112.2k – $120k/year
ApplyView job
NuHarbor Security1 day ago

Security Analyst

US flagHawaii OnlyFull-timeSecurity Analyst$90k – $120k/year
ApplyView job
Lennar1 day ago

Workday Analyst – Security Administration, Job Architecture

US flagFlorida OnlyFull-timeSecurity Analyst
ApplyView job
Kocho1 day ago

Security Analyst – Tier 2

ZA flagSouth Africa OnlyFull-timeSecurity Analyst
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers