Host Based Systems Analyst III
Tasks
- Conduct forensic acquisition and analysis from cloud and on-premises platforms
- Coordinate with internal teams to validate alerts and investigate findings
- Correlate cloud control-plane events and network telemetry
- Develop and operationalize detection logic and automation
- Integrate threat intelligence feeds and indicators
- Investigate and respond to cloud and hybrid identity incidents
- Produce incident reports and containment recommendations
- Support incident response playbook development
- Support threat emulation and hunting automation projects
Perks/Benefits
- N/A
Skills/Tech-stack
AWS | AWS CloudTrail | AWS GuardDuty | Active Directory | Activity logs | Automation | Azure Active Directory | Azure Activity Logs | Azure Resource | Azure Resource Manager | Bash | Cloud Forensics | Cloud Identity | Cloud identity security | Cloud platform | CloudFormation | Cyber Forensics | Detection engineering | Digital Evidence | Digital evidence acquisition | Docker | Entra ID | Evidence acquisition | Flow Logs | Forensic analysis | Google Chronicle | Google Cloud | Google Cloud Platform | Hybrid Identity | IaaS security | Identity Security | Incident Response | JavaScript | Kubernetes | Microsoft 365 | Microsoft Defender | Microsoft Entra | Microsoft Entra ID | Microsoft Sentinel | Network telemetry | PaaS Security | Powershell | Privilege escalation | Python | Resource manager | SaaS security | Terraform | Threat Intelligence | VPC Flow Logs | VPC flow
Education
Associate Degree | Bachelor of Engineering | Bachelor of Science | Master of Science
Related jobs
-
Senior DevSecOps Functional Analyst USD 116K-243KAWS | Acceptance criteria | Ansible | Azure | Backlog ManagementSecurity clearance Top SecretSenior-level Full TimeChantilly, VA10h ago
-
Cloud SCA-R, Mid USD 100K-300K800-53 | AWS | Azure | Cloud SRG | Cloud Security401k match | Dental insurance | FSA | HSA | Health insuranceMid-level Full TimeFt. Meade, MD12h ago
-
Senior SOC Analyst USD 80K-110KDetection engineering | EDR | Incident Management | Incident Response | Indicator of CompromiseFinancial education | Life insurance | Matching Pension Contribution | Paid time offSenior-level Full TimeUSA13h ago
-
Mid-level Full TimeFairfax, VA, United States17h ago
-
Computer Network Defense Analyst (EAIRS) USD 87K-130KAntivirus | Cause analysis | Data Loss Prevention | Data loss | Defense in Depth401k | Educational assistance | Gym reimbursement | Healthcare | Paid time offMid-level Full TimeColumbus, OH; Fort Belvoir, VA; or …17h ago
-
Principal Analyst, Responsible AI Strategy USD 171K-248KCybersecurity | Data Transformation | Data Visualization | Data analytics | Data collectionSenior-level Full TimeWashington D.C., DC, USA22h ago
-
Mid-level Full TimeAnnapolis Junction, MD1d ago
-
Economic theory | Empirical finance | Factor models | MATLAB | Machine Learning401k match | Dental insurance | Employee assistance program | Flexible work/life support | Health insuranceExecutive-level Full TimeBOSTON, United States1d ago
-
Data Loss Prevention (DLP) Analyst USD 117K-180KAPI Security | Bash | Behavioral analytics | Browser Security | CASBMid-level Full TimePalo Alto2d ago
-
Capital Markets | Financial Instrument Valuation | Instrument valuation | Liquidity metrics | Market RiskBanking fee exemptions | Indefinite employment contract | Life insurance | Paid vacation | Savings plansSenior-level Full TimeCOL, CO2d ago
-
Cyber Network Defense Analyst II USD 100K-158KCarnegie Mellon SiLK | Cyber Defense | Cyber Defense Monitoring | Event Correlation | Event managementOnsite support | Remote work optionMid-level Full TimeArlington, VA2d ago
-
Senior Cyber Incident Analyst USD 120K-154KComputer Networking | Confluence | Cybersecurity | Encryption | Incident ResponseOn site work Arlington VA | Public Trust Clearance | Top Secret clearanceSenior-level Full TimeARLINGTON, VA, United States3d ago
-
AOUSC - Forensic and Malware Lead USD 107K-166KChain of Custody | Data carving | Digital forensics | Disk analysis | Dynamic analysisSenior-level Full TimeWashington, DC4d ago
-
AOUSC - Threat Hunt Lead USD 104K-183KAdversary tactics | Adversary tactics and techniques | Agile | Behavioral analytics | CrowdStrikeHybrid work | Public trust clearance requiredSenior-level Full TimeWashington, DC4d ago
-
AOUSC - Insider Threat Analyst Lead USD 101K-183KAgile Workflows | Alert Correlation | Audit Records | Behavior analytics | Behavioral analyticsHybrid work | Public Trust ClearanceSenior-level Full TimeWashington, DC4d ago
-
Cybersecurity Analyst USD 95K-166KData Visualization | Endpoint protection | Firewalls | Forensics | IDS/IPSHybrid work | Onsite 3 days per weekMid-level Full TimeWashington, DC, US4d ago
-
Cyber Forensics Analyst Lead USD 110K-179KAutopsy | Chain of Custody | CrowdStrike | Digital forensics | EDRSenior-level Full TimePortland, OR, United States4d ago
-
Mid-level Full TimeWashington DC4d ago
-
Security Analyst, Information Security USD 135K-200KApplication Firewall | Artificial Intelligence | Audit management | Change Management | Data reportingOn-call support | Remote workMid-level Full TimeRemote, United States R4d ago
-
Identity Management Analyst USD 68K-98KAccess Control | Access Management | Access auditing | Access reviews | Active DirectoryMid-level Full TimeDanville, KY, United States4d ago
-
Information Security Analyst USD 87K-108KAccess Control | Application Security | Detection and Response | Endpoint Detection and Response | Endpoint detectionOn site work localityMid-level Full TimeMontgomery, AL4d ago
-
Associate Cybersecurity Analyst - Incident Response USD 103K-141KAccess Control | Agile | Audit | Business Continuity | Cloud Computing401k matching | Bonding leave for new parents | Community service pay | Flexible-hybrid work | Nine company holidaysMid-level Full TimeArlington, TX, United States4d ago
-
Senior Cyber Security Analyst USD 128K-214KCOTS Security Technologies | COTS security | Cyber Security | Cybersecurity Operations Center | Cybersecurity operationsSenior-level Full TimeUSA-VA-Springfield4d ago
-
IT Security Analyst USD 86K-128KCybersecurity | Database Design | Event Correlation | Incident Response | Mission AssuranceOnsite work | Security clearance requiredMid-level Full TimeCoraopolis, PA, United States5d ago
-
Cybersecurity Vulnerability Analyst USD 104K-166KApplication Testing | Automated vulnerability scanning | Bash | Burp Suite | CVSSMid-level Full TimeLinthicum, MD, United States5d ago