Senior Security Analyst
Core
Lead complex security investigations and act as incident commander across endpoint, identity, cloud, and production environments to protect customers and systems.
Role type
Senior Security Analyst (Incident Response & Threat Hunting)
Builds
Telemetry, detections, and automation to improve alert quality and reduce manual work.
Domain
Cybersecurity, Cloud Security, Threat Intelligence
Deliverable
production ML models | product features | dashboards & analysis | client delivery | infrastructure | physical/clinical work
Required skills
Incident response, forensics, threat hunting, root-cause analysis, triage, containment, eradication, attacker framework analysis (MITRE ATT&CK, Diamond Model, kill chain), SIEM/EDR/NDR/CSPM tooling, cloud environment monitoring (AWS/Azure/GCP), scripting (Python/PowerShell), query languages (YARA-L/Sigma/KQL/SPL)
Preferred skills
AI-assisted intrusion analysis, supply-chain compromise investigation, post-incident hardening, mentoring analysts
Technologies
SIEM, EDR, NDR, CSPM, AWS, Azure, GCP, Python, PowerShell, YARA-L, Sigma, KQL, SPL
Responsibilities
Lead security investigations covering triage, root-cause analysis, containment, and eradication; Act as incident commander coordinating cross-functional teams; Investigate cases without existing playbooks and build analysis tools; Write and peer-review incident reports and timelines; Hunt for novel threats like AI-assisted intrusions; Drive post-incident hardening and mentor analysts
Seniority
Senior, hands-on IC with mentorship responsibilities