Defensive Security Analyst
Core
Manage SOC systems and infrastructure to detect, contain, and eradicate security threats for Palantir's global people and infrastructure.
Role type
Defensive Security Analyst (SOC)
Builds
SOC systems, alerting strategies, and defensive techniques
Domain
Cybersecurity / Information Security
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
SIEM operations, cloud architecture (AWS), penetration testing, scripting (PowerShell, Python, Bash), forensic analysis, incident response, malware triage, log analysis, network forensics, host forensics
Preferred skills
ability to train others on forensic tools, rapid learning of new technologies
Technologies
SIEM, AWS, PowerShell, Python, Bash
Responsibilities
Build and own infrastructure automation for threat detection and eradication; Develop alerting and detection strategies for malicious behavior; Create reports for technical and executive audiences; Dissect network, host, and memory artifacts; Perform enterprise-wide operations to uncover undetected threats; Partner with the Information Security team to lead network defense changes; Support incident response and digital forensics state preservation; Conduct host forensics, network forensics, log analysis, and malware triage.
Seniority
Mid-level to Senior, hands-on IC