
Senior Security Analyst
Posted Aug 27

Posted Aug 27
This is a fully remote position, open to applicants in United States.
• Investigate, manage, respond to, and escalate security alerts originating from platforms like EDR/XDR and SIEM.
• Analyze security events escalated from tier 1, validate potential threats, and take appropriate actions.
• Investigate and address reported phishing emails.
• Analyze, prioritize, and monitor vulnerabilities identified by vulnerability scanners.
• Research emerging threats and conduct global threat hunts utilizing industry data and threat feeds.
• Execute incident response procedures, examine indicators of compromise, determine root causes, gather evidence, and prepare incident response reports.
• Collaborate with security analysts, compliance analysts, Compass engineers, and vCISOs to deliver managed security services.
• Directly interface with clients and end users while investigating threats and managing or troubleshooting managed security tools.
• Assist in deploying the managed security services tool stack for new clients.
• Contribute to internal quality projects, including the development of standards and security services.
• Keep abreast of industry trends, best practices, and regulatory requirements.
• Hunt for emerging threats employing SIEM querying, software testing, sandboxing, and other techniques.
• Convert threat-hunting results into actionable alerts and analysis standard operating procedures.
• Create and maintain internal standard operating procedures.
• Participate in a flexible work schedule that includes after-hours/on-call shifts.
• Over 5 years of experience in a SOC/incident response role.
• Proven experience in conducting alert and incident investigations end-to-end with minimal oversight and sound escalation judgment.
• Capability to perform containment, blocking, isolation, and basic remediation in small to mid-sized business environments.
• Experience in monitoring and responding to threats affecting Windows, Microsoft 365 / Entra ID, and firewalls.
• Familiarity and comfort with EDR, firewall administration, identity and email security consoles, ticketing systems, RMM tools, and security telemetry sources.
• Additional experience in infrastructure recovery and IT engineering is preferred.
• Additional experience in network, cloud, and endpoint recovery is preferred.
• Additional experience in firewall, VPN, and zero-trust environments is preferred.
• Additional experience in backup validation and isolated recovery environments is preferred.
• Additional experience with Active Directory, virtual hosts, domain controllers, migrations, and secure system restoration is preferred.
• Additional experience in endpoint wipe-and-reload and related rebuild activities is preferred.
• Competitive pay.
• Quarterly bonuses.
• Progressive PTO.
• Medical/Dental/Vision/Life/Disability benefits available.
• Tax-deferred retirement plan with company match.
• Career development and coaching opportunities.
• Enjoyable work environment!
• Eligibility for an annual bonus.
Positivo S+
ShorePoint Inc
General Dynamics Information Technology
Gifthealth
Get handpicked remote jobs straight to your inbox weekly.