> Markdown version of [/jobs/ext/1918331-information-security-analyst-sr](https://www.wearedevelopers.com/jobs/ext/1918331-information-security-analyst-sr). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information Security Analyst Sr - **Company:** Ventura Foods - **Location:** Irvine, CA, United States - **Experience:** Expert - **Salary:** $99,800.0 - $128,892.0 - **Contract:** Permanent contract - **Skills:** Bash Shell, Cyber Security, Data Transformation, Intrusion Detection and Prevention, Python (Programming Language), Log Analysis, Performance Tuning, Windows PowerShell, Phishing, Security Information and Event Management, Scripting, Mitre Att&ck, Cybercrime - **Published:** August 4, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=b6b99f495a8c0a95 ## About the Role Required: * 5+ years of hands-on experience in information security, security operations, incident response, or threat detection roles. * Bachelor's degree in a security-related discipline or equivalent practical experience supported by formal security training or industry-recognized certifications. * Demonstrated experience performing alert triage, threat investigation, and incident response activities using enterprise security tools (e.g., SIEM, EDR, email security platforms). * Working knowledge of security operations processes, including incident lifecycle management, escalation procedures, and stakeholder communication. Preferred: * Experience working in a Security Operations Center (SOC) or similar 24x7/enterprise monitoring environment. * One or more industry-recognized security certifications such as CompTIA CySA+, GCIH, GCED, OSDA, CEH, or equivalent. * Experience with detection engineering, threat hunting, or tuning security controls to reduce false positives and improve detection fidelity. * Hands-on scripting or automation experience (e.g., PowerShell, Python, Bash, Vibe coding) used to support investigations or operational efficiency. * Familiarity with the MITRE ATT&CK framework and applying adversary TTPs to investigations or detection logic. * Experience contributing to security tools deployments, process improvements, or cross-functional security initiatives., * Working knowledge of security operations concepts, including alert triage, incident investigation, escalation, and response workflows. * Hands-on experience using enterprise security tools such as SIEM, EDR, and email security platforms for detection and investigation activities. * Strong analytical and problem-solving skills, with the ability to assess security alerts, identify root cause, and recommend appropriate mitigation actions. * Ability to clearly document and communicate security findings, risks, and remediation guidance to both technical and non-technical audiences. * Foundational experience or working capability with scripting or automation tools (e.g., PowerShell, Python, or Bash) to support security operations. Preferred: * Working knowledge of the MITRE ATT&CK framework and experience applying adversary tactics, techniques, and procedures (TTPs) to detection and investigation activities. * Experience tuning detections or detection logic within SIEM or EDR platforms to reduce false positives and improve detection fidelity. * Strong hands-on experience with endpoint detection and response (EDR) tools for investigation, containment, and remediation. * Experience performing email security analysis, including phishing investigation, header analysis, and email-based threat identification. * Demonstrated experience developing scripts or automation workflows to improve operational efficiency and response consistency. * Ability to confidently present security risks, incident findings, and mitigation strategies to technical teams and senior leadership. ## Description The Senior Information Security Analyst plays a hands-on role in helping protect the organization from cybersecurity threats. In this role, you'll help identify, investigate, and respond to security incidents, work with team members to prioritize issues, communicate findings clearly, and support efforts to reduce risk as incidents arise., Threat Monitoring, Alert Triage & Investigation: * Monitor and triage alerts across security platforms, validating true security incidents and eliminating false positives. Investigate confirmed threats to determine scope, severity, and business impact using log analysis, endpoint telemetry, and threat context. Prioritize and escalate security incidents in accordance with established incident response procedures. Detection Engineering & Tuning: * Develop and tune security detections to improve accuracy, reduce alert noise, and increase visibility into malicious activity. Apply MITRE ATT&CK techniques and threat intelligence to enhance detection logic and investigative workflows. Identify detection gaps and recommend improvements based on investigative findings and emerging threats. Scripting, Automation & Tooling: * Develop scripts and automation to streamline alert triage, investigations, and response activities. Automate repetitive operational tasks to improve consistency, efficiency, and response times. Support integration and optimization of security tools through scripting and data transformation. Security Project Contribution: * Contribute to security operations projects that improve program maturity, detection capabilities, and operational resilience. Collaborate with IT and engineering teams to implement and enhance security controls and workflows. Provide operational and investigative input to support successful deployment of security initiatives. Incident Response & Reporting: * Provide hands-on support during security incidents, including containment, remediation guidance, and recovery activities. Produce clear, accurate incident reports detailing findings, root cause, and corrective actions. Participate in post-incident reviews to identify lessons learned and recommend preventive improvements. Additional responsibilities as assigned: * Support ad hoc security operations tasks, audits, and operational readiness activities. Provide backup coverage and operational support during incidents or peak workload periods. Participate in training, documentation, and continuous improvement initiatives. ## Related Videos - [Passkeys: Truly Phishing-Resistant? Implementation and Pitfalls](https://www.wearedevelopers.com/videos/100156-passkeys-truly-phishing-resistant-implementation-and-pitfalls) - [JavaScript? No. Java Scripts! - Scripting with Java](https://www.wearedevelopers.com/videos/2094-javascript-no-java-scripts-scripting-with-java) - [Old tools, new tricks](https://www.wearedevelopers.com/videos/1916-old-tools-new-tricks) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [MCP doesn’t suck — your agent does](https://www.wearedevelopers.com/videos/100202-mcp-doesn-t-suck-your-agent-does) - [Intermediate Bitcoin Script](https://www.wearedevelopers.com/videos/25-intermediate-bitcoin-script) ## Related Articles - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy)