
Staff Security Analyst
Posted Aug 13

Posted Aug 13
This is a fully remote position, open to applicants in United States.
• Oversee intricate incident response initiatives, encompassing containment, eradication, recovery, and enhancements post-incident
• Create, implement, and elevate enterprise threat detection capabilities utilizing SIEM analytics, endpoint detection, cloud monitoring, behavioral analytics, and automated response workflows
• Execute proactive threat hunting to detect advanced attacker behaviors, emerging threats, and indicators of compromise
• Formulate and sustain enterprise detection engineering standards, playbooks, tuning methodologies, and quality practices
• Collaborate with Security Engineering, Infrastructure, Cloud Engineering, Identity, and Application Security teams to fortify security controls and mitigate organizational risk
• Direct forensic investigations across endpoint, network, cloud, identity, and application environments
• Assess emerging threats, adversary techniques, threat intelligence, and detection technologies to enhance monitoring and response capabilities
• Create automation and orchestration workflows to boost operational efficiency and responsiveness
• Establish and report on operational metrics related to detection effectiveness, incident response performance, and the maturity of security operations
• Provide guidance to technology teams on monitoring strategies, logging requirements, incident readiness, and detection coverage
• Mentor Security Analysts through technical guidance, investigation reviews, and knowledge sharing
• Contribute to the enterprise security strategy, architecture assessments, and long-term cybersecurity planning
• Work with Risk, Compliance, Internal Audit, and Legal teams to facilitate regulatory, customer, and audit compliance
• Investigate emerging attack techniques, AI-enabled threats, and evolving security operations technologies to continuously improve security capabilities
• Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or a related field, or an equivalent combination of education and relevant experience
• 6–10 years of experience in security operations, threat detection, incident response, digital forensics, cybersecurity engineering, or a related information security discipline
• Extensive experience leading complex enterprise security investigations and detection engineering projects across various technology domains
• Proficient in incident response leadership and threat detection engineering
• Expertise in SIEM, endpoint detection and response, cloud security monitoring, identity monitoring, and email security platforms
• Advanced skills in threat hunting, digital forensics, malware analysis, and adversary behavior analysis
• In-depth knowledge of MITRE ATT&CK, threat intelligence, detection engineering, and incident response frameworks
• Experience in security automation, orchestration, and operational workflow optimization
• Capability to lead complex cross-functional security investigations and influence technical stakeholders
• Strong analytical, investigative, and executive communication abilities
• Capacity to independently address highly complex operational security challenges
• Must be eligible to work in the US for full-time employment
• GCIA, GCIH, GCFA, SC-200, CISSP, or other comparable advanced cybersecurity certification preferred
• Experience in supporting regulated financial services environments preferred
• Familiarity with Microsoft Sentinel, Microsoft Defender, Splunk, CrowdStrike, Chronicle, or other comparable enterprise security platforms preferred
• Experience in developing enterprise detection engineering standards and security automation preferred
• Background in leading major incident response activities and enhancing security operations maturity preferred
• Remote-first work environment
• Unlimited paid time off
• 401(k) plan with employer matching
• Diverse and inclusive workplace
• Enjoyable company culture
Rimini Street
Rimini Street
Get handpicked remote jobs straight to your inbox weekly.