Cyber Information Systems Analyst - Senior - Tier 2/3, Threat Hunting

QBE LLC
Chicago, IL, United States
6 days ago
Apply on www.jofdav.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
8 years minimum
Compensation
$108,000.0 - $124,000.0
Working hours
Regular working hours
Job source

Tech stack

CompTIA Security+ Cyber Security Information Systems Network Security Security Information and Event Management Cyber Threat Analysis Information Technology Cybercrime Cyber Warfare Security Orchestration, Automation & Response

Job description

  • Perform advanced analysis and investigation of escalated cybersecurity events.

  • Conduct proactive threat hunting across network, endpoint, identity, and cloud telemetry.

  • Analyze indicators of compromise, attacker behavior, and anomalous activity.

  • Develop investigative hypotheses and identify previously undetected threats.

  • Correlate data from multiple security technologies and intelligence sources.

  • Support containment, eradication, and recovery during cybersecurity incidents.

  • Develop and refine detection logic, signatures, and analytic use cases.

  • Map adversary behavior to established attack frameworks.

  • Provide technical guidance to Tier 1 and junior analysts.

  • Produce detailed investigation reports and threat-hunting findings.

qf

qg

Requirements

  • Associate degree in cybersecurity, information technology, computer science, information systems, business, communications, or a related field, or an additional two or more years of relevant experience in place of the degree requirement.

  • At least 8 years of relevant experience aligned to the responsibilities of this position.

  • Significant experience with incident analysis, threat hunting, or advanced SOC operations.

  • Experience analyzing endpoint, network, identity, and security telemetry.

  • Knowledge of attacker tactics, techniques, and procedures.

  • Strong investigative and analytical capabilities.

  • CompTIA Security+ certification.

  • GIAC Certified Incident Handler (GCIH) certification.

  • Ability to obtain and maintain the required federal background investigation, Public Trust determination, or security clearance associated with the position.

Preferred Qualifications

  • Experience in a federal SOC or cyber defense environment.

  • Experience with SIEM, EDR, SOAR, network security monitoring, and threat intelligence platforms.

  • Experience developing custom threat-hunting queries and detection logic.

Physical Requirements

  • Ability to remain in a stationary position for extended periods while working at a computer.

  • Ability to communicate effectively through virtual and in-person meetings.

  • Ability to perform duties in an office, remote, or hybrid environment based on program requirements.

  • Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions of the position.

Benefits & conditions

The projected compensation range for this position is $100,000.00 - $115,000.00. There are differentiating factors that can impact a final salary/hourly rate, including, but not limited to, Contract Wage Determination, relevant work experience, skills and competencies that align to the specified role, geographic location (for remote opportunities), education and certifications as well as Federal Government Contract Labor categories. In addition, QBE invests in its employees beyond just compensation. QBE’s benefits offerings include, dependent upon position, Health Insurance, Life Insurance, Paid Time Off, Holiday Pay, short-term and long-term Disability, Retirement and Savings, Learning and Development opportunities, wellness programs as well as other optional benefit elections., $100,000.00

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.jofdav.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

4:34 min

Motivational categories behind modern cybercriminal activities

Mauro Verderosa · LIVE

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

2:11 min

Securing heterogeneous legacy payment infrastructure against AI

Michele Zuccala Michele Zuccala +4 · World Congress 2026 Europe

Videos

See all

Related articles

See all