
Security Operations Analyst – Weekend 4x10 Shift
Posted Sep 11

Posted Sep 11
This is a fully remote position, open to applicants in United States.
• Triage, investigate, and respond to alerts generated by the Huntress platform.
• Conduct a tactical review of EDR telemetry, log sources, and forensic artifacts to identify the root cause of attacks and suggest remediations.
• Execute tactical malware analysis during the investigation and triage of alerts.
• Investigate suspicious activities within Microsoft M365 and propose remediation strategies.
• Support the Product Support team with escalations that involve threat-related and SOC-relevant inquiries.
• Contribute to the development and tuning of detection engineering.
• Engage in projects aimed at enhancing outcomes for analysts and partners.
• Be part of a collaboratively mentored team.
• Safeguard businesses globally from cyber threats through Huntress’s managed cybersecurity solutions.
• A minimum of 2 years of experience in a SOC or Digital Forensics (DFIR) role.
• Proven experience with Windows, Linux, and MacOS as potential attack surfaces.
• Familiarity with essential Threat Actor tools and techniques, including MITRE ATT&CK, PowerShell, Command Prompt, WMIC, Scheduled Tasks, SCM, Windows Domain and host Enumeration Techniques, lateral movement, persistence, defense evasion, and other offensive/Red Team TTPs.
• Demonstrated understanding of both static and dynamic malware analysis concepts.
• Practical knowledge of Windows Administration or Enterprise Domain Administration, including Active Directory, Group Policy, and Domain Trusts.
• Understanding of core networking principles, such as common ports/protocols, NAT, public/private IPs, and VLANs.
• Knowledge of web technologies and concepts, including web servers/applications and the OWASP Top 10.
• Strong communication skills with the ability to convey complex events to less technical audiences.
• Capacity to prioritize and address customer needs and concerns effectively.
• A sense of curiosity and genuine enthusiasm for learning.
• Preferred: prior experience in MSP/MSSP/MDR environments.
• Preferred: investigative experience with Linux and MacOS.
• Preferred: scripting proficiency in PowerShell, Python, Bash, PHP, JavaScript, or Ruby.
• Preferred: experience with platforms such as HackTheBox, TryHackMe, Blue Team Labs Online, or similar.
• Preferred: cloud-based investigative experience using M365, Azure, AWS, or GCP.
• Preferred: participation in cybersecurity competitions.
• Preferred: familiarity with MSP tools like RMMs.
• Following training, ability to work a 4x10 schedule: Wednesday-Saturday or Sunday-Wednesday, from 7am to 5pm PST for weekend shifts; initial training occurs Monday-Friday.
• A generous paid time off policy that includes vacation, sick leave, and paid holidays.
• 12 weeks of paid parental leave.
• Highly competitive and comprehensive medical, dental, and vision benefits plans.
• 401(k) plan with a 5% contribution from the company, regardless of employee contributions.
• Life and Disability insurance options.
• Stock options available for all full-time employees.
• A one-time reimbursement of $500 for setting up or upgrading a home office.
• An annual allowance for education and professional development support.
• A monthly digital reimbursement of $75 USD.
• Access to the BetterUp platform for coaching and personal and professional growth.
• Bonus opportunities and potential on-call/call-in pay in addition to base salary.
Talan
Pragmatike
Supply Chimp
Pragmatike
Get handpicked remote jobs straight to your inbox weekly.