Tier 2 Cyber Threat Analyst (CTA)
FAIRFAX, VA, United States
USD 85K-104K (estimate) Mid-level Full Time
Tasks
- Analyze indicators of compromise
- Conduct threat hunting
- Create dashboards and reports
- Develop and tune SIEM correlation rules
- Develop incident response playbooks
- Develop scripts and automation
- Investigate security incidents
- Maintain incident response SOPs
- Monitor and analyze security alerts
- Participate in cyber exercises tabletop exercises after action reviews
- Perform digital forensic analysis
- Perform malware analysis
- Perform security event triage
- Preserve evidence chain of custody
- Produce incident reports forensic reports weekly SOC reports
- Provide on-call escalation support
- Support DDoS investigations
- Support Data Breach investigations
- Support incident containment eradication and recovery
- Support insider threat investigations
- Support phishing investigations
- Support ransomware investigations
Perks/Benefits
Skills/Tech-stack
DDoS | Digital forensics | Enterprise Security | Evidence Preservation | Incident Response | Indicators of compromise | Insider Threat | Malware analysis | Microsoft 365 | Microsoft Office | Netflow | Network Forensics | Packet Inspection | Phishing | Ransomware | SIEM | Splunk Enterprise | Splunk Enterprise Security | TCP/IP | Threat hunting
Education
N/A
Related jobs
-
Staff Security Engineer, Office of the Finance CISO USD 207K-300KComputer Security | Design reviews | Enterprise Security | GDPR | Network SecuritySenior-level Full TimeNew York, NY, USA3h ago
-
Information Systems Security Manager (ISSM) USD 120K-200K800-171 | 800-37 | 800-53 | ACAS | Access ManagementContinuous learning and development | Health and wellness benefits | Optional legal services | Paid Holidays | Paid time offSenior-level Full TimeArlington, TX10h ago
-
Staff Security Engineer, Detection and Response USD 200K-250KAWS | Access Management | Cloud Security | Detection engineering | EDR401k company match | Annual Holiday Shutdown | Equipment provisioning | Flexible time off | Medical, dental & vision coverageSenior-level Full TimeSan Francisco13h ago
-
Associate Director, Information Security USD 156K-190K21 CFR | 21 CFR Part 11 | AWS Security | Access Management | AppSec401k matching | Dining | Flexible spending accounts | Health insurance | Hybrid workMid-level Full TimeSan Diego HQ16h ago
-
Security Engineer II USD 90K-115KAzure Sentinel | Bash | Cause analysis | DHCP | DNS401k match | Company paid life insurance | Company-paid disability insurance | Dental insurance | Flexible spending accountMid-level Full TimeMilford, DE16h ago
-
Cybersecurity Analyst II USD 81K-121KAccess Management | Analytics | Automation | Awareness Training | Cloud SecurityEntry-level Full TimeRemote (United States) R18h ago
-
Lead, Security Detection & Response Team USD 170K-190KAutomation | Cloud Security | Cloud infrastructure | Cloud infrastructure security | Cybersecurity401k retirement plan | Dental insurance | Flexible paid time off | Life insurance | Long-term disability insuranceSenior-level Full TimeMountain View, CA, United States19h ago
-
Security Engineer USD 113K-173KAI for security | AI-assisted Security | AWS | Automation | Azure401k match | Disability insurance | Employee assistance programs | Flexible spending account | Health savings accountMid-level Full TimeBellevue, WA (Hybrid) R19h ago
-
Security Engineer USD 113K-173KAWS | Azure | CI/CD | Cloud Security | Data Ingestion401k matching | Disability insurance | Employee assistance program | Flexible spending account | Health savings accountMid-level Full TimeEmeryville, CA (Hybrid) R19h ago
-
Security Engineer USD 113K-173KCI/CD | Cortex XSOAR | Detection and Response | EDR | Elastic401k match | Health savings account | Medical, dental, and vision plans | Volunteer time offMid-level Full TimeAddison, TX (Hybrid) R19h ago
-
Manager, Detection Engineering & Threat Hunting USD 160K-190KAdversary Emulation | Adversary Tradecraft | Automation | Data Science | Datadog401k match | Coaching platform access | Digital reimbursement | Disability insurance | Education reimbursementMid-level Full TimeUnited States of America R19h ago
-
Cyber Security Analyst I USD 65K-75KAlert investigation | Azure Sentinel | Google Chronicle | Incident Response | Microsoft DefenderMid-level Full TimeUnited States - Remote R21h ago
-
SOC Analyst Senior USD 120K-130KCrowdStrike | Cyber Kill Chain | Digital forensics | Enterprise Security | FirewallsRemote work scheduleSenior-level Full TimeWindsor Mill, MD, United States22h ago
-
Security Engineer, Application Security USD 109K-114KABAC | AES | AWS Security | Angular | Application SecurityTelecommutingEntry-level Full TimeBoston, MA, United States R23h ago
-
Cloud Security Analyst USD 112K-179KAWS | Azure | Cloud Compliance | Cloud Governance | Cloud SecuritySenior-level Full TimeArlington, VA23h ago
-
Corporate Security Engineer USD 116K-130KAccess Management | Application control | Bash | BitLocker | CIS Benchmarks401k | Flexible time off | Home office stipend | Medical, dental, and vision insurance | Paid Company HolidaysMid-level Full TimeRemote, US R1d ago
-
Information Security Analyst USD 90K-90KApplication Firewall | CrowdStrike | Event Correlation | Incident Response | LinuxReasonable accommodations | Teleworking optionsMid-level Full TimeQ - Z, Richmond (City), Virginia1d ago
-
Access Control | Application Security | Applied cryptography | Artificial Intelligence | Artificial Intelligence SecuritySenior-level Full TimeSunnyvale, CA, USA; Kirkland, WA, USA1d ago
-
Application Security | Attack Vectors | CNAPP | CVE | CVSSMid-level Full TimeNew York, NY, USA1d ago
-
Forensics / Incident Response SME USD 155KAWS | Alert triage | Chain of Custody | Device Forensics | Digital forensics100 percent remote work | 401k matching | FSA programs | Health coverage contribution | Online education and training portalSenior-level Full TimeRemote / Telework, United States R1d ago
-
Intrusion Analyst USD 130K-180KComputer Network Defense | Computer network | Malware analysis | Metadata analysis | Network DefenseMid-level Full TimeColumbia, MD, US1d ago
-
Security Engineer (Infrastructure) USD 124K-161K800-53 | AIX | Amazon DynamoDB | Automated vulnerability scanning | Azure SQLSenior-level Full TimeArlington, Virginia, United States1d ago
-
Senior-level Full TimeArlington, Virginia, United States1d ago
-
Information Security Analyst (Onsite) USD 69K-103KCIS Benchmarks | CIS Critical Controls | Configuration auditing | Critical controls | DLP401k matching | Career development | Dental insurance | Employee assistance program | Flexible spending accountMid-level Full TimeOceanside, CA, United States1d ago
-
Security Administrator USD 88K-112KAudit Log | Audit Log Review | Azure | DLP | Data GovernanceOn-call coverage | On-site workMid-level Full TimeNorthbrook, Illinois, United States1d ago