TAXWELL

Senior Security Ops Analyst – Incident Response

TAXWELL

full-time

Posted on:

Location Type: Remote

Location: Remote • 🇺🇸 United States

Visit company website
AI Apply
Apply

Job Level

Senior

Tech Stack

AWSAzureCloudEC2KubernetesPythonVMware

About the role

  • Receive incident escalations from monitoring team and assist with real-time advanced analysis, response, and reporting
  • Mentor and assist in training analysts to aid in their skills development and analytical capabilities
  • Proactively hunt for threats and enacting identification, containment, and eradication measures while supporting recovery efforts
  • Point person for coordination with appropriate parties during a security incident – client, management, legal, security, operations, etc
  • Create thorough reports and documentation of all incidents and procedures, presenting findings to team and leadership on a routine basis
  • Supports detection capabilities and refines process through alert validation
  • Performs threat hunting and proactive incident response
  • Completes follow-through to ensure quality forensic materials are captured, preserved and documented along with details and timelines of events and recommendations to avoid future occurrences
  • Assist in the general maintenance and improvement of processes and/or playbooks
  • Conduct research regarding the latest methods, tools, and trends in digital forensics analysis
  • Conduct analysis using logs, previous alerts, etc. to identify trends to identify and prevent potential incidents
  • Ingest data from multiple sources and aggregate client metrics

Requirements

  • Bachelor's degree or equivalent combination of CISSP certification and prior experience
  • Five or more years of experience in information systems security
  • Good communication skills to interact with clients, team members, management, and support personnel
  • Good analytical and problem-solving skills
  • Ability to work independently and as part of a team, be highly self-motivated
  • Experience with cloud environments, such as Microsoft Azure and Amazon Web Services; Container services and Kubernetes; Azure Monitor and/or Sentinel
  • Experience with AD and Entra ID; Mimecast and Microsoft Purview; Microsoft OpenAI Services; AWS technologies such as EC2, ECS, Lambdas, LightSail, and VMware Cloud
  • Ability to script in PowerShell, Python
Benefits
  • Health insurance
  • Competitive salary
  • Flexible working hours
  • Professional development
  • Paid time off
  • Remote work options

Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard skills
incident responsethreat huntingdigital forensics analysisdata aggregationscripting in PowerShellscripting in Pythonalert validationforensic documentationanalytical capabilitiesproblem-solving
Soft skills
communication skillsmentoringteam collaborationself-motivationanalytical thinking
Certifications
CISSP
Hoplite Group

Senior Cyber Operations Strategy and Policy Subject Matter Expert

Hoplite Group
Seniorcontract🇺🇸 United States
Posted: 2 days agoSource: hoplitegroup.applytojob.com
Cyber Security
Strada

SOC Analyst

Strada
Juniorfull-timeWashington · 🇺🇸 United States
Posted: 8 days agoSource: strada.wd12.myworkdayjobs.com
Cyber SecurityFirewalls
Saffire, LLC

Director of Cybersecurity Operations

Saffire, LLC
Leadfull-timePennsylvania · 🇺🇸 United States
Posted: 9 days agoSource: asmglobal.wd1.myworkdayjobs.com
AzureCloudCyber SecurityPHPPythonSQL
Agile Defense

Mid SOC Analyst

Agile Defense
Junior · Midfull-time$67k–$124k / yearWashington · 🇺🇸 United States
Posted: 9 days agoSource: jobs.lever.co
Cyber SecurityDNSLinuxSMTPSplunkSQL