SBA - Cyber Defense Analyst - Lead
USD 130K-155K (estimate) Senior-level Full Time
Tasks
- Analyze cybersecurity alerts
- Conduct cyber threat hunting
- Conduct triage and investigation
- Coordinate incident response with stakeholders
- Coordinate vulnerability remediation activities
- Correlate threat intelligence with security events
- Ensure compliance with NIST and FISMA
- Operate SIEM and EDR tools
- Perform cloud security monitoring
- Perform containment eradication and recovery
- Perform incident response activities
- Perform malware analysis and forensic investigation
- Provide 24x7 cybersecurity monitoring support
- Provide operational reporting and executive briefings
- Support incident response playbook development
Perks/Benefits
- N/A
Skills/Tech-stack
365 Security | 800-53 | AWS Security | AWS security monitoring | Azure Security | Azure Security Monitoring | CISA Guidance | Cause analysis | Cloud Security | EDR | FISMA | Forensic Investigation | IDSIPS | Incident Response | Malware analysis | Microsoft 365 | Microsoft 365 Security | NIST RMF | NIST SP | NIST SP 800 | NIST SP 800-53 | NIST SP 800-61 | Network Security | Network security monitoring | Root Cause Analysis | Root cause | SIEM | SP 800-53 | Security analytics | Security monitoring | Threat Intelligence | Threat hunting | Vulnerability Management
Related jobs
-
SOC Analyst USD 86K-130KAuthentication Logging | CIS Critical Security | CIS Critical Security Controls | Case management | Critical Security ControlsOn-call support | Remote work | US security clearance supportMid-level Full TimeWork from home, VA, United States R21h ago
-
SOC Analyst (SR.) USD 111K-155KAI | Authentication Monitoring | Automation | Case management | Detection engineeringOn-call support | Remote work | Security clearance supportSenior-level Full TimeWork from home, VA, United States R21h ago
-
Security Analyst/Intern USD 67K-144KAlert analysis | Antivirus | EDR | Event triage | FirewallCareer progression | Flexible arrangements | Hands-on training | MentorshipEntry-level Full Time Internship(DEAI DS) US Remote TX - … R1d ago
-
Staff Threat Intelligence Analyst USD 190K-210KAI | C# | C++ | Cybersecurity | Detection engineering401k match | Coaching platform | Digital reimbursement | Disability insurance | Education allowanceSenior-level Full TimeUnited States of America R1d ago
-
Senior Information Security Analyst USD 70K-80KActive Directory | Antivirus Management | DLP | Data Loss Prevention | Data lossSenior-level Full TimeTexas-Dallas-5323 Harry Hines Blvd R2d ago
-
Threat Intelligence Researcher (Cloud) USD 160K-220KData Sources | Incident Response | Infrastructure hunting | Malware analysis | Open Source401k retirement savings plan | Bereavement leave | Employee assistance program | Flexible paid time off | Flexible spending accountsMid-level Full TimeRemote - USA R2d ago
-
IT Cloud Security Analyst III USD 171K-217KAWS Organizations | AWS accounts | Amazon Web Services | Automation | Build AutomationHybrid work schedule | Occasional travel | On-call availabilitySenior-level Full TimeChandler, AZ, United States R2d ago
-
SIEM Solutions Engineer USD 66K-106KAlerting | Application logs | Bash | Dashboard Development | IndexingPublic trust clearance support | Remote workMid-level Full TimeUnited States R2d ago
-
Incident Responder (Tier 2) USD 105K-135KAlert triage | Android Forensics | Cybersecurity | Digital forensics | IOS401k match | Dental insurance | Disability insurance | Flexible vacation | Health insuranceSenior-level Full TimeUnited States R2d ago
-
Sr. Security Analyst USD 90K-120KAutomation | Cloud Security | Elastic SIEM | Elasticsearch | Endpoint SecurityCustomer training | Remote work | Travel opportunitiesSenior-level Full TimeWork from home, VA, United States R2d ago
-
SOC Analyst USD 80K-110KAlienVault USM A | Cause analysis | CrowdStrike | DNS | EDRTraining and guidanceMid-level Full TimeUnited States - Remote R3d ago
-
API Integration | API Security | Access Management | CASB | Cloud SecurityAfter-hours support | On-call rotation | On-the-job learning | Professional development opportunities | Weekend supportMid-level Full TimeRemote - US, United States R3d ago
-
Security Engineer II - AMZ9675347 USD 159K-202KApplication Security | Data confidentiality | Incident Response | Network Security | Penetration TestingFinancial benefits | Medical benefitsMid-level Full TimeSeattle, Washington, USA R3d ago
-
Cybersecurity Expert - RL USD 130K-200KAWS | Bash | Cloud platform | CrowdStrike | Cyber ThreatHigh autonomy | Hybrid work | In person Bangalore officeSenior-level Full TimeRemote R3d ago
-
Antivirus | Cisco Firewall | HIPAA | Incident Response | Intrusion DetectionMid-level Full TimeUniversity Health Truman Medical Center, United … R4d ago
-
Incident Handler USD 89K-133KAWS | Azure | Cause analysis | Command and control | Data exfiltration24 7 365 monitoring | Remote workMid-level Full TimeRemote - Virginia, United States R4d ago
-
Threat Hunter, VP USD 123K-194KAI Agents | Automation | Bash | Data Parsing | Detection engineeringEducational assistance | Health and wellness benefits | Hybrid work schedule | Paid Holidays | Paid Maternity LeaveExecutive-level Full TimeNew Jersey Office - 210 Hudson … R4d ago
-
Cyber Security Threat Analyst (Onsite Hybrid) USD 87K-120KCVE | CVSS | Case management | Credential theft | Cyber Kill ChainHybrid work | Onsite work | Professional developmentMid-level Full TimeCharlotte, NC, US R8d ago
-
APIs | Civil Unrest Risk | Civil unrest | Crisis management | Data dashboards401k match | Catered lunch | Disability insurance | Employee stock purchase program ESPP | Flexible PTOSenior-level Full TimeLivingston, NJ / New York, NY … R8d ago
-
Senior Specialist, Compliance USD 90K-110KAccess Management | Access reviews | Audit documentation | Automation | Cause analysisSenior-level Full TimeRemote, United States R9d ago
-
Artificial Intelligence | Authentication | Data Quality | Databricks | Fraud Detection100 percent remoteEntry-level Full TimeAlexandria, VA, United States R9d ago
-
SOC Security Analyst L2 USD 125K-180KActive Directory | Artifact analysis | Authentication attacks | BEC | CrowdStrike FalconRemote work | Rotating shift scheduleSenior-level Full TimeUnited States - Remote R9d ago
-
Information Systems Security Officer (ISSO) USD 75K-158K800-53 | ATO/authorization | Continuous Monitoring | DOD RMF | EMASSFlexible time off | Learning resourcesMid-level Full Time999 REMOTE, United States R9d ago
-
Cybersecurity Specialist 3 or 4 USD 110K-175KAccess Management | Bash | DNS | Email Security | Endpoint SecurityEmployee resource groups | Flexible work arrangements | Health insurance | Hybrid work schedule | Paid HolidaysSenior-level Full TimePortland, OR, US R9d ago
-
Senior Cyber Security Analyst (Remote within WA, ID, OR) USD 117K-154KAccess Controls | Access Management | Active Directory | Automation | Azure401k match | Dental insurance | Life insurance | Long-term disability | Medical insuranceSenior-level Full TimeWashington R9d ago