Lead Threat Response Operations Analyst
Core
Lead the investigation and response to sophisticated cyber threats, coordinating global incident response and providing technical guidance to analysts.
Role type
Senior individual contributor threat response operations analyst
Builds
Cyber resilience and incident response capabilities for Pfizer's digital assets
Domain
Cybersecurity / Threat Intelligence / Incident Response
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Adversary TTPs analysis, SIEM correlation, EDR investigation, malware analysis, network forensics, incident severity assessment, cross-functional coordination, technical project leadership
Preferred skills
Python or PowerShell scripting, red team/blue team simulation experience
Technologies
CrowdStrike Falcon, Splunk, Google SecOps, Wireshark, Snort, Kali Linux, SIFT Workstation, REMnux, Volatility, Microsoft Defender for Endpoint, VMware Carbon Black
Responsibilities
Correlate and analyze security telemetry from multiple sources to identify and respond to malicious activity; Reconstruct attack lifecycles and develop strategic detection recommendations; Lead assessment of security incidents determining severity and response actions; Guide containment, eradication, and remediation of threats; Drive continuous improvement of threat response processes and playbooks; Provide technical coaching and knowledge sharing to analysts; Participate in on-call rotation for incident response
Seniority
Senior, hands-on IC