
Senior Cybersecurity Analyst
Posted 1 day ago

Posted 1 day ago
This is a fully remote position, open to applicants in Washington.
• Actively evaluate the security program and propose or implement enhancements.
• Provide guidance to Executive Leadership regarding present and future risks.
• Facilitate communication between various SOC teams.
• Create security solutions and processes while considering operational budget limitations.
• Oversee alerts and events from SIEM, IDS/IPS, EDR, and additional security tools.
• Conduct advanced threat hunting and proactive security investigations.
• Assess complex security incidents to determine their scope, impact, and root cause.
• Correlate data from various sources to uncover sophisticated attack patterns.
• Lead the incident response for high-severity security incidents.
• Contain, eliminate, and assist in recovering from security incidents.
• Record incidents and produce comprehensive reports.
• Conduct post-incident reviews and derive lessons learned.
• Collaborate with IT teams and stakeholders during the incident response process.
• Investigate emerging threats, vulnerabilities, and attack methods.
• Develop and refine detection rules and use cases.
• Minimize false positives and enhance alert quality.
• Develop and maintain playbooks and standard operating procedures.
• Participate in threat intelligence sharing and analysis.
• Mentor and train junior and mid-level SOC analysts.
• Provide expert guidance on complex investigations and escalations.
• Engage in on-call rotation as necessary for surge support or incident investigation.
• Contribute to SOC process enhancements and automation initiatives.
• Prepare technical reports and executive summaries.
• Present findings to management and technical teams.
• Maintain precise documentation of procedures and investigations.
• Communicate effectively with stakeholders across the organization.
• Minimum of 5 years of experience in cybersecurity or a SOC environment.
• At least 3 years of hands-on experience with SIEM platforms, specifically Microsoft Sentinel.
• Demonstrated experience in incident response and threat hunting.
• Familiarity with endpoint detection and response (EDR) tools.
• In-depth knowledge of network protocols, architecture, and security.
• Expertise in log analysis and security event correlation.
• Understanding of malware analysis techniques and tools.
• Familiarity with the MITRE ATT&CK and Cyber Kill Chain frameworks.
• Strong understanding of Windows, Linux, and cloud environments.
• Proficiency in Python, PowerShell, and Bash.
• Knowledge of forensic tools and methodologies.
• Certifications such as GSEC, GCIH, CISSP, GCTI, or CEH are preferred.
• Experience in managing SOC or providing cybersecurity consultation services is preferred.
• Familiarity with SOAR platforms and security automation is preferred.
• Experience with threat intelligence platforms is preferred.
• Project management experience is preferred.
• Strong analytical and problem-solving skills.
• Excellent written and verbal communication abilities.
• Capability to work effectively under pressure during security incidents.
• Self-motivated with a keen attention to detail.
• Team-oriented with a collaborative mindset.
• Commitment to continuous learning in response to evolving threats.
• Equal Opportunity/Affirmative Action Employer.
• Collaborative and teamwork-oriented environment.
• Opportunity to work alongside skilled cybersecurity and intelligence professionals.
• Chance to contribute to innovation and tackle complex challenges.
Xcelerate Solutions
Xcelerate Solutions
Kryptus SA
Centene Corporation
Get handpicked remote jobs straight to your inbox weekly.