Cyber Defense Senior Analyst (Remote)
Core
Frontline security operations and monitoring for cybersecurity events impacting Experian, performing in-depth analysis, triage, and response to threats, intrusions, and compromises.
Role type
Senior IC Cyber Defense Analyst (Security Operations Center)
Builds
Global 24x7 security operations and monitoring function
Domain
Cybersecurity / Information Security
Deliverable
production ML models | product features | dashboards & analysis | client delivery | infrastructure | physical/clinical work
Required skills
Incident Response Life Cycle, MITRE ATT&CK Framework, Cyber Kill Chain, threat investigation, malware analysis, network forensics, log analysis, SIEM/EDR/SOAR proficiency, containment/eradication/recovery procedures
Preferred skills
Cloud security (Azure/AWS), use case development, scripting/automation, professional certifications (GCIH, GMON, GCED, GSOC, CEH, GCFE, GCFA, CFCE, ENCE)
Technologies
SIEM (Qradar, Splunk), EDR (FireEye HX, CrowdStrike Falcon, Microsoft Defender), SOAR (Palo Alto XSOAR, Google Chronicle), Windows, Linux, Mac OS, Firewalls, Proxies, NetFlow, AWS, Azure, GCP
Responsibilities
Monitor, triage, and conduct response activities for security events and alerts; Analyze events using security tooling and logging to assess risk/severity; Escalate higher-risk events to incident response teams; Manage assigned caseload throughout the incident response lifecycle; Maintain case documentation and complete shift logs; Collaborate with external teams for incident resolution; Apply expertise to improve playbooks and SOPs; Suggest enhancements to use cases to improve security posture
Seniority
Senior, hands-on IC