Senior Cyber Threat Analyst
Core
Develops and maintains detection rules, use cases, and threat models for the SOC technology stack to identify and respond to cyber threats, including AI-related risks.
Role type
Senior Threat Detection Engineer (Detection Engineering)
Builds
Detection content (rules, playbooks, threat models) for SIEM, SOAR, and EDR platforms
Domain
Cyber Security Operations / Threat Intelligence
Deliverable
production ML models | product features | dashboards & analysis
Required skills
Detection Engineering, SIEM expertise, Threat Modelling, Threat Intelligence, Incident Response Automation, AI Security Monitoring, Playbook Development, Scripting (Python/Bash)
Preferred skills
Sigma Rule Development, Advanced AI Security Knowledge, EDR Platform Expertise, Industry Certifications (CISSP, GCIA, GCIH)
Technologies
Splunk, Microsoft Sentinel, QRadar, Elastic, CrowdStrike, Microsoft Defender for Endpoint, Carbon Black, SOAR, EDR, SIEM
Responsibilities
Develop use cases based on threat models and intelligence; Develop detection rule syntax for SIEM and EDR; Develop playbooks for alert validation; Maintain threat intelligence integrations; Conduct research for new detection content; Collaborate on detection rule tuning; Assist in incident response and onboarding new data sources.
Seniority
Senior, hands-on IC