Sr. Cyber Security Analyst
REMOTE, REMOTE, US
Leggett & Platt
We, at Leggett & Platt Inc., are searching for a Sr. Cyber Security Analyst within our Corporate IT team to help support our business. As a global-diversified manufacturing company, it’s sometimes hard to explain all the different things we do. We like to say, “we’re the biggest company no one has ever heard of.” We are confident you interact with one of our products in your daily life without knowing it. Whether it’s the mattress you sleep on, the car you drive, the plane you fly on, or the furniture you sit on, our high-quality components are there supporting you. If you join our team, your work will ensure people across the world have a little more comfort in their lives.
As a Sr. Cyber Security Analyst, you will report to and partner with the Sr. Manager, Cyber Security Operations and be part of a high-performing team that will consist of a Security Operation Center (SOC) and Security Analyst. This role will monitor and respond to alters and threats throughout the company regarding IT and Manufacturing technology.
The Sr. Cyber Security Analyst will have vast technical expertise and experience in security operations, security incident response, and digital forensics (DFIR). They will have significant experience in configuring and using cyber security tools such as SIEM, EDR, SOAR, and Vulnerability Management platforms. This person will draft SOP’s and playbooks and be part of a high performing team that works to continually mature the SOC and improve operational excellence.
So, what will you be doing as a Sr. Cyber Security Analyst?
- Support the cyber security incident response process from detection and containment through the forensic investigation and remediation
- Identify attack vectors, threat tactics and attacker techniques and exploits
- Create incident reports that follow a common format like Kill Chain or MITRE
- Configure and tune alerting and monitoring of events that occur within the near real time environment
- Configure technologies such as SIEM, SOAR, Vulnerability Management tools, WAF, EDR, Secure DNS, and other operational technologies to detect and or prevent cyber intrusion
- Create reporting and metrics using the previously mentioned technologies
- Coordinate internal and external security assessments and penetration tests
- Mentor and provide training and knowledge to all levels of Cyber Security Analysts
- Stay informed of current events in the security industry including the latest exploits and threats as well as preventative measures, remediation, and restoration techniques
- Manage wide range of incidents (Phishing, Malware, Ransomware, etc.) using proven best practices for incident response
- Utilize industry best practices for forensic analysis of computer equipment and malware
- Coordinate with existing MSP’s
To be successful in this role, you’ll need:
- 5+ years of Information Security, network security, or related field
- Associate or bachelor’s degree in computer science, information security, or related field and 5 years equivalent experience in a cyber security role
- Ability to respond effectively to cyber security incidents
- Demonstrated operating proficiency in multiple security platforms and layers including Anti-virus, Active Directory and Operating Systems
- Willingness to learn and adapt to new trends in Cyber Security
- Ability to drive and execute improve of current processes, think outside the box and constantly evaluate better more efficient
- Work with limited supervision
- Experience with forensic tools such as Purview, FTK, Sleuthkit, etc.
- Experience identifying and triaging malware
- Experience with forensic processes and procedures (chain of custody, computer acquisition techniques, and memory acquisition techniques)
- Knowledge of extant vulnerabilities and threat landscape
- Experience using Security Information Event Management tools
- Experience using EDR solutions to identify and contain cyber threats
- Knowledge of TCP/IP, computer networking, routing, and switching
- Experience with PCAP analysis
- Strong troubleshooting, reasoning, and problem-solving skills
- Interest in learning and mastering unfamiliar tools, new vulnerabilities to understand how they work
- Understanding common network/web/app attacks, attack methods, and network defense architectures
- Effectively manage several projects and priorities in parallel
- Ability to speak and communicate effectively with management
- Ability to collaborate across all functional groups within IT and external to IT globally
- Ability and experience in writing clear and concise technical documentation
- Ability to speak and write fluently in English
- Ability and flexibility to provide afterhours support (on-call)
- Flexibility to travel as needed
Things we consider a plus:
- Familiarity with cybersecurity frameworks, such as NIST and ISO
- One or more Security Certifications such as (Security +, Network +, CISSP, CEH, GCIA, GCIH, GPEN, GSOC, CISM)
- Experience with Linux/Unix
- Networking or Application Development or Enterprise Application experience
- Understanding and experience with the MITRE ATT&CK Framework
What to Do Next
Now that you’ve had a chance to learn more about us, what are you waiting for! Apply today and allow us the opportunity to learn more about you and the value you can bring to our team. Once you apply, be sure to create a profile, and sign up for job alerts, so you can be the first to know when new opportunities become available.
Our Values
Our values speak to our shared beliefs, and describe how we approach working together.
- Put People First reflects our commitment to safety and care of each other, learning and development, and creating an inclusive environment of mutual respect, empathy and belonging.
- Do the Right Thing focuses us on acting with honesty and integrity, delivering the results the right way, taking pride in our work, and speaking the truth – good or bad.
- Do Great Work…Together occurs when we engage without hierarchy, collaborate as a team, embrace challenges, and work for the good of all of us.
- Take Ownership and Raise the Bar demonstrates our responsibility to add value and make a difference, challenge the status quo and biases to make things better, foster innovative and creative solutions to drive impact, and explore new perspectives and embrace change.
Our Commitment to You
We're actively taking steps to make sure our culture is inclusive and that our processes and practices promote equity for all. Leggett & Platt is comprised of people of all abilities, gender identities and expressions, ages, ethnicities, sexual orientations, veteran status, and more. Join us!
We welcome and encourage applications if you meet the minimum qualifications. Even if you do not meet the preferred qualifications, we’d love the opportunity to consider you.
Equal Employment Opportunity/Veterans/Disability Employer
For more information about how we handle your personal data in connection with our recruiting processes, please refer to the Recruiting Privacy Notice on the “Privacy Notice” tab located at http://privacy.leggett.com
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Active Directory CEH CISM CISSP Computer Science DFIR DNS EDR Exploits Forensics GCIA GCIH GPEN Incident response Linux Malware MITRE ATT&CK Monitoring Network security NIST PCAP Privacy Security assessment SIEM SOAR SOC TCP/IP UNIX Vulnerabilities Vulnerability management
Perks/benefits: Career development Team events
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.