
Security Analyst – Tier 2
Posted Aug 8

Posted Aug 8
This is a fully remote position, open to applicants in District of Columbia, +2 more states.
• Evaluate and verify the investigations conducted by AI Agents for precision, thoroughness, and risk assessment.
• Integrate data from cloud, endpoint, identity, network, and various other sources to comprehend malicious activities.
• Examine harmful activities addressed by AI Agents and evaluate the complexity of attacks and the risk mitigated for customers.
• Conduct hunts in customer environments utilizing AI Agents to identify and resolve emerging threats.
• Support customers with threat monitoring, alert prioritization, and triage, particularly during incidents.
• Detect potential threats and irregularities by analyzing logs and malicious findings.
• Interact with a range of customers, from SOC analysts to CISOs.
• Design scalable operational processes while ensuring consistent quality.
• Collaborate with Engineering and Product teams to enhance customer experience and optimize the AI platform.
• Keep abreast of the latest trends in cybersecurity, vulnerabilities, attack methods, and AI-driven threats.
• Minimum of 2 years of experience in cybersecurity operations.
• Ability to be on-call for weekend shifts as necessary.
• Practical experience in investigating alerts across endpoint, network, identity, email, cloud, and other platforms.
• In-depth knowledge of security monitoring tools such as XDR, SIEM, IDS/IPS, and IDP.
• Understanding of log and telemetry concepts.
• Experience in analyzing and investigating alerts from intrusion detection, network monitoring, and endpoint protection systems.
• Familiarity with common attack techniques, MITRE ATT&CK framework, and methodologies for incident triage.
• Strong analytical skills and problem-solving capabilities, with the ability to validate AI-generated analysis and make independent security decisions.
• Proficient in data querying using SPL, KQL, FQL, SQL, or similar SIEM query languages.
• Knowledge of malware analysis techniques.
• Excellent interpersonal skills and a customer-oriented approach.
• Demonstrated success in collaborative team environments.
• Previous experience in Managed Services is preferred.
• Experience in incident handling is preferred.
• Certifications such as Security+, GSEC, or GCIH are preferred.
• Must be legally authorized to work in the US.
• Availability to work a shift from 3AM to 11AM ET.
• Equity options available.
• Opportunity to work from home.
Vision Cybersecurity
Stefanini LATAM
Bancorbrás
Kemper
Get handpicked remote jobs straight to your inbox weekly.