
Cybersecurity Incident Response, Threat Detection Analyst
Posted 2 days ago

Posted 2 days ago
This is a fully remote position, open to applicants in United States.
• Engage in continuous 24x7x365 monitoring of SIEM platforms along with various cybersecurity monitoring tools.
• Identify, investigate, and address cybersecurity threats within the enterprise network environment.
• Execute cybersecurity measures to safeguard, monitor, detect, analyze, and react to unauthorized or potentially harmful activities.
• Utilize cybersecurity capabilities and strategic response actions to manage security alerts, incidents, and evolving threats.
• Assess and scrutinize logged security events to pinpoint trends, patterns, and signals of potential attacks, compromises, or malicious activities.
• Observe network logs and traffic to detect indicators of Advanced Persistent Threats (APTs), “low and slow” attacks, and other advanced attack methodologies.
• Stay informed of current and emerging cyber threats through intelligence resources, including Open Source Intelligence (OSINT).
• Conduct technical analysis, troubleshooting, and ongoing support for enterprise cybersecurity tools, technologies, and applications.
• Assist in the implementation and upkeep of Defense-in-Depth strategies, including cybersecurity signatures, detection capabilities, and perimeter defense measures.
• Adapt responsibilities over time to align with team and organizational objectives within the overall framework of the role.
• A Bachelor’s degree (BS or BA) in a technical discipline from an accredited institution.
• A minimum of five (5) years of pertinent cybersecurity experience in security operations, threat detection, incident response, or other related cybersecurity functions.
• At least two (2) years of experience performing root cause analysis of cybersecurity events and incidents, including identifying contributing factors, attack vectors, and remediation strategies.
• Proven experience with a minimum of two types of cybersecurity tools or technologies, such as firewalls, intrusion detection/prevention systems (IDS/IPS), host-based antivirus/endpoint protection, data loss prevention (DLP), vulnerability management, digital forensics, malware analysis, or device hardening solutions.
• Practical knowledge of Defense-in-Depth principles and their application to cybersecurity architecture, threat prevention, detection, and response.
• Experience in developing scripts, tools, or automation to improve threat detection and incident response capabilities, preferably using SPL, Python, and/or PowerShell.
• Must hold an active IT-I (Critical-Sensitive) security designation or Tier 5 (T5) investigation at the time of proposal submission.
• Must possess an active DoD Top Secret security clearance.
• Must be eligible for IT-I designation.
• Must be eligible for access to Sensitive Compartmented Information (SCI).
• Paid time off and holidays.
• Medical, dental, and vision insurance.
• Paid parental leave.
• Employer-paid short-term disability, long-term disability, and life insurance!
• 401(k) plan.
• Additional voluntary life insurance options.
• Tuition reimbursement.
• Reasonable accommodations during the hiring process for individuals with disabilities.
• Veteran’s preference where permitted by law.
Cloudiax
BLUVIT GmbH
Eli Lilly and Company
S + S Regeltechnik GmbH
Get handpicked remote jobs straight to your inbox weekly.