Security Analyst - Project Lead - 26-06745
Navitas, Inc.
Columbia, SC, United States
2 months ago
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Contract type
Temporary contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
2 years minimum
Working hours
Regular working hours
Job source
Tech stack
Active Directory
ARM Architecture
CompTIA Security+
Cyber Security
Intrusion Detection and Prevention
Intrusion Detection Systems
Linux System Administration
Network Architecture
Network Administration
Remote Access Technology
Phishing
Runbook
+6 more
Security Information and Event Management
Mitre Att&ck
Cyber Threat Analysis
Firewalls (Computer Science)
Information Technology
Cybercrime
Job description
- Monitor and analyze security events across SIEM, EDR, IDS/IPS, and threat intelligence platforms to identify potential threats and security incidents.
- Conduct detailed investigations of suspicious activities, determine root cause and business impact, and escalate critical incidents when necessary.
- Prepare incident reports, timelines, post-incident analyses, and recommendations for remediation and prevention.
- Investigate phishing attempts, malware infections, and policy violations while providing guidance on containment and recovery efforts.
- Enhance SOC operations by recommending improvements to detection rules, alert thresholds, playbooks, and workflows.
- Collaborate with engineering teams to optimize monitoring tools, integrate threat intelligence feeds, and conduct proactive threat hunting activities.
- Serve as a subject matter expert for security operations and support stakeholder engagement.
- Maintain documentation, runbooks, standard operating procedures, and troubleshooting guides.
- Coordinate with security, engineering, and operational teams to support organizational objectives.
- Perform additional duties as assigned.
Requirements
Do you have experience in Reporting and dashboarding tools?, Do you have a Associateās degree?, * Associate degree in Information Technology, Information Security, or a related field.
- Four years of relevant professional experience may be substituted for the degree requirement.
- Minimum 2 years of experience in Security Monitoring and Incident Response.
- Minimum 2 years of experience utilizing the MITRE ATT&CK framework.
- Minimum 2 years of experience creating security dashboards and operational reports.
- Strong analytical, investigative, and problem-solving skills.
- Excellent written and verbal communication abilities., * Experience with Palo Alto Cortex XSIAM/XDR.
- Knowledge of Linux systems, network administration, and network architecture.
- Experience administering firewalls, VPN technologies, Active Directory, and Intrusion Detection/Prevention Systems (IDS/IPS).
- Experience with threat hunting and advanced cybersecurity operations.
- Local candidates from South Carolina preferred.
Preferred Certifications
- CISSP, CISA, CISM, or equivalent advanced cybersecurity certification.
- CEH, OSCP, GPEN, or other relevant security certifications.
- Vendor-specific cybersecurity certifications., * Security Information and Event Management (SIEM)
- Endpoint Detection and Response (EDR)
- Intrusion Detection/Prevention Systems (IDS/IPS)
- Threat Intelligence Platforms
- MITRE ATT&CK Framework
- Incident Response & Threat Hunting
- Dashboard Development & Security Reporting
- Active Directory
- Firewalls & VPN Technologies
- Linux Administration
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on indeed.comGood distractions
Talks and stories from around this role ā technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
LM
Luis Minvielle
about 2 years ago
CH
Chris Heilmann
Dev Digest 134 - Where pixels sing?
almost 2 years ago
DC
Daniel Cranney
Dev Digest 191: Malware interviews, EU ā¤ļø Open Source and Skilled Agents
10 months ago
LM
Luis Minvielle
Is Software Engineering Over-Saturated?
over 2 years ago
DC
Daniel Cranney
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
6 months ago
KD
Krissy Davis
Best Paying Jobs in Technology
about 3 years ago