Cyber Security Analyst

TekWissen LLC
Orlando, FL, United States
1 day ago
Apply on www.careerjet.com
Prepare application

Role details

Contract type
Temporary contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours
Languages
English

Tech stack

Data Analysis Cyber Security Forensics Tools (Digital Forensics Software) IT Management Intrusion Detection and Prevention Red Team (Cyber Security) Security Information and Event Management Web Applications Mitre Att&ck Malware Information Technology Cyber Warfare
+1 more
Splunk

Job description

Gatekeeping tickets and status; not providing updates to the team/management Incapable of reaching containment / lack of understanding of IR process and security threats Soft Skills Professional Communications to management and executives Training downward to event analysts Thorough documentation Responsibilities: The ideal candidate would have a working knowledge of current and relevant security technologies and how to apply them to cyber incident response actions. A clear investigative methodology with a focus on preserving evidence and analyzing data to form conclusions that will steer response directions. Experience responding to multi-faceted security events and incidents and assisting with the coordination of subsequent response efforts prioritizing mission critical elements. The role involves regular interaction with various groups and leadership within the organization to accomplish job responsibilities. Working closely with the Cyber Response Manager the Sr Incident Responder will manage workflows, escalations, and advance technical processes to build program maturity and growth. The successful candidate will be responsible for participating in the following activities: Day-to-day operational tasks related to the ongoing support of Threat Operations. Responsible for triaging escalated security incidents and conducting response actions to detect, contain and remediate identified security incidents. Responsible for overseeing ticket queue triage: prioritization, and escalations. Responsible for analyzing threat data from multiple sources and identifying security alerts and events of importance for direct escalation to response. Incident responders are expected to mitigate risk by taking response actions on either Accounts, Communications, Hosts, Files, Networks, or in some cases Handoffs to partner teams Identify and analyze multiple log sources into a timeline to reach a conclusion Incident Responders must keep detailed notes on all analysis activity, documented in the case management tool to validate process adherence. Responsible for contributing to the strategic creation and updating of new and existing SOAR playbooks and runbooks and response process documentation. On-Call for escalated events for 1 week on a 5-week rotation Work alongside Incident Commanders and Incident Handlers to contain and remediate named incidents True Job Tile: Incident responder Once escalation occurs up to responder to reinforce deposition Conduct DFIR investigation and root cause analysis Security incident response models Security incident handling once getting to a severity level and type of incident response communication for HM Clearly outline the security incident and steps taken and resolution tracking/documenting Providing updates throughout the lifecycle of the ticket Synthesizing work they did into bite size updates that go out to leadership Capable of understanding and updating the technical response plans as needed General understanding of security capabilities in order to recommend controls for containment Take knowledge form how to handle response, how to create plan, security capability outlook able to find out the response action needed TekWissen Group is an equal opportunity employer supporting workforce diversity., Description: Supporting offensive security/red team/adversarial emulation testing Executing Red Team engagements in a variety of networks using real-world adversarial Tactics, T…

  • 2 months ago

Requirements

English needs to be first language Bachelor’s Degree/Masters Degree in an IT related field and/or equivalent work experience Minimum 5 years working in Cyber Defense with experience in Incident Response, Security Operations Center (SOC), detection engineering, or similar functions. Previous experience supporting or leading incident response functions. Experience using industry-standard security toolsets in a layered defense model Working knowledge of core Enterprise IT concepts (web application architectures, networking, etc.) Experience with host-based and network-based forensics tools and analysis Knowledge of the cyber threat landscape to include different types of adversaries, campaigns, and the motivations that drive them Knowledge of industry recognized security and analysis frameworks (Mitre ATT&CK, Kill Chain, Diamond Model, NIST Incident Response, etc.) Exceptional written and verbal communication skills Must be self-motivated and able to work both independently and as part of a team Strong communication (both verbal and written) and client intimacy skills with experience briefing corporate executives and professionals Ability to be on call and provide support during nontraditional working hours Desired: - Degree in Computer Science, or equivalent experience Security Operations Center experience preferred. Customer service experience, working with users over the phone, via email, and in person. Self-motivated with the ability to work independently. Splunk or other SIEM experience creating alerts, reports, dashboards, etc. From Intake Notes Forensic Analysis experience, Malware Analysis Experience Ability to timeline multiple data sources together Successful The ability to perform risk/impact analysis to know when to escalate to a manager Engineer mindset to make the operations better Can Prioritize tickets and solve problems efficiently.

About the company

TekWissen is a global workforce management provider headquartered in Ann Arbor, Michigan that offers strategic talent solutions to our clients world-wide.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.careerjet.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:38 min

Using language models to self-detect and flag software vulnerabilities

Julian Totzek-Hallhuber Julian Totzek-Hallhuber · World Congress 2026 Europe

6:01 min

Handling container constraints and fileless malware

Dimitrij Klesev +1 · LIVE

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

14:14 min

Addressing audience inquiries on analytical implementation and career growth

Julian Joseph · LIVE

4:19 min

Introduction to network security and endpoint monitoring architectures

Christoph Ruggenthaler · LIVE

6:18 min

Architecting asynchronous malware scanning for uploaded file contents

Austin Gil · LIVE

Videos

See all

Related articles

See all