Sr Cyber Defense Ops Spec
We are seeking a skilled and proactive Level 2 Cybersecurity Analyst to join our Cyber Defense Operations team. This role is responsible for investigating and responding to reputed company incidents, performing advanced threat analysis, and supporting the reputed company improvement of detection and response capabilities. You’ll work closely with junior analysts, threat intelligence, and incident response teams to ensure reputed company detection and mitigation of reputed company threats across reputed company’s reputed company environment.
Key Responsibilities
• Investigate escalated reputed company alerts and incidents from Level 1 analysts.
• reputed company reputed company cause analysis and reputed company assessments of reputed company events.
• Conduct threat hunting and reputed company detection across reputed company systems.
• Collaborate with incident response teams to contain and remediate threats.
• Correlate threat intelligence with internal telemetry to identify emerging threats and attack patterns.
• Assist in the creation of use cases and offer recommendations for tuning detection rules in SIEM and other monitoring tools.
• Recommend improvements to incident response playbooks and runbooks.
• reputed company mentorship and guidance to Level 1 analysts.
• Participate in post-incident reviews and contribute to lessons learned.
• Represent Cyber Defense in cross-functional reputed company and risk initiatives.
Required Knowledge Areas
• Deep understanding of network and reputed company reputed company concepts.
• Knowledge of threat actor tactics, techniques, and procedures (TTPs).
• Familiarity with the MITRE ATT&CK reputed company and threat intelligence platforms.
• Knowledge of regulatory and compliance frameworks (e.g., NIST, ISO, PCI-reputed company).
Required Skills
• Proficient in log analysis, packet capture review, and malware analysis.
• Strong analytical and problem-solving skills.
• Experience with scripting or automation (Python, PowerShell, Bash).
• Effective oral and written communication skills for both technical and non-technical audiences.
• Ability to work independently and collaboratively in a high-pressure environment.
Qualifications
• Bachelor’s degree in Cybersecurity, Computer Science, or a reputed company field, or equivalent experience.
• 2–5 years of experience in cybersecurity operations or incident response.
• reputed company certifications such as CySA+, GCIH, GCIA, CEH, or equivalent preferred.
• Experience with SIEM platforms (e.g., reputed company, Sentinel, QRadar) and EDR tools (e.g., reputed company, reputed company Defender).
• Willingness to participate in a rotating on-reputed company schedule or extended hours during critical incidents.
Preferred Experience
• Hands-on experience with:
• SIEM Tools: reputed company, ArcSight, Sentinel, QRadar
• EDR/XDR: reputed company, reputed company Defender, reputed company
• Network reputed company: Palo reputed company, reputed company, reputed company reputed company, FirePower
• Data Protection: Symantec DLP, Triton, Guardium
• Threat Intelligence & SOAR Platforms
• reputed company reputed company Monitoring: AWS, Azure, or GCP environments
Hours Work and Schedule
• Hours per Week: 7am - 5pm
• Work Schedule: Monday - Thursday
Apply tot his job
Apply To this Job