Cyber Threat Analyst
Core
Monitor, investigate, and respond to security incidents; tune SIEM rules; perform threat hunting; manage vulnerability reports; and automate security processes.
Role type
Cyber Threat Analyst (Tier 2)
Builds
Alerting rules, incident response playbooks, security reports, and automated security processes.
Domain
Cybersecurity / Threat Operations (via careerplan.io/jobs/C3-00F-9E-F6F-cyber-threat-analyst-at-cellebrite)
Required skills
SIEM (rules, parsing, correlation, investigation), Playbook implementation (e.g., Palo Alto XSOAR), Threat Hunting, Vulnerability Management, Multi-cloud platforms (Azure, AWS), TCP/IP topology, Network protocols, Active Directory, File permissions, Incident response reporting, Scripting (PowerShell, Python)
Preferred skills
Network device configuration, Security device management, Endpoint devices (EDR), Firewall management, OS administration (Windows, Linux, Mac)
Technologies
SIEM, Palo Alto XSOAR, Azure, AWS, PowerShell, Python
Responsibilities
Monitor and respond to security events; Continuously monitor SIEM alerts to improve and tune identification and response rules; Perform threat hunting activities; Generate vulnerability management reports; Generate reports for security leaders to evaluate policy efficiency; Advise and implement changes to counter attacks or improve standards; Document incidents for disaster recovery plans; Perform internal and external security audits.
Seniority
Mid-Senior, hands-on IC