
Senior Cyber Security Analyst
Posted 2 days ago

Posted 2 days ago
This is a fully remote position, open to applicants in Germany, +1 more country.
• Oversee and investigate potential security threats utilizing Kibana/OpenSearch and Snowflake.
• Examine security logs and probe into suspicious or atypical activities, such as traffic spikes, alterations in attack patterns, and the emergence or disappearance of attack signals.
• Ascertain if detected activities are malicious or benign and determine suitable responses.
• Create, refine, and implement detection rules based on traffic behavior, HTTP request attributes, headers, device fingerprints, and other indicators.
• Observe existing detections and recognized attack patterns for fluctuations in volume, sources, IP addresses, domains, and other indicators.
• Assist with customer onboarding by analyzing web application traffic flows and setting up baseline detection and protection rules.
• Investigate incidents reported by customers and missed detections, analyze attack traffic, and apply mitigations.
• Document newly identified threats and attacks, including evidence, findings, and indicators.
• Relay findings to Engineering and stakeholders to facilitate remediation and enhancements.
• Collaborate with counterparts through ticketing and support portals to examine issues, provide updates, and resolve security-related requests.
• 3–5 years of experience in Cybersecurity, Threat Research, or Threat Intelligence.
• Bachelor’s degree in Computer Science, Cybersecurity, Information Security, or a related discipline.
• Solid understanding of web technologies and networking fundamentals, including HTTP/HTTPS, TCP/IP, DNS, authentication, cookies, and browser-server interactions.
• Background in web security research, bot management, fraud detection, or associated fields.
• Practical experience with threat investigations, IOC analysis, and threat intelligence research.
• Familiarity with log analysis and investigation platforms such as Kibana/OpenSearch, Snowflake, Datadog, or similar tools.
• Proficient SQL skills, including handling large datasets and UDFs.
• Basic knowledge of JavaScript for web and client-side analysis.
• Strong analytical and problem-solving abilities.
• Capability to work autonomously and manage investigations with minimal oversight.
• Excellent communication and collaboration skills.
• Enthusiasm for cybersecurity and a commitment to continuous learning.
• Understanding of MITRE ATT&CK, malware analysis, vulnerabilities, and adversary TTPs.
• Experience in OSINT and cyber threat intelligence research.
• Familiarity with Python and Jupyter Notebook for investigations and automation.
• Experience with GitHub and version control workflows.
• Remote work opportunities available.
• Full-time employment.
Cooperativa Central Ailos
NBCUniversal
BDR Solutions LLC
Sigma Software Group
Get handpicked remote jobs straight to your inbox weekly.