Source Job

Global

  • Act as a senior member of the Security Operations Center (SOC), independently managing and resolving security incidents end-to-end.
  • Lead incident investigations, perform root cause analysis, and drive lessons learned and continuous improvement initiatives.
  • Collaborate with global security teams to develop and improve processes, tooling, and operational best practices.

SIEM Cybersecurity Incident Response Threat Hunting

20 jobs similar to Security Analyst II

Jobs ranked by similarity.

US

  • Manage event and information intake, including intelligence reports and monitoring ticket queues.
  • Triage alerts and correlate and analyze events to determine the scope of cybersecurity incidents.
  • Provide 24x7 on-call support and monitor and manage security incidents using SIEM, SOAR, and DLP tools.

Brightspeed provides fast, reliable internet connections and an awesome customer experience in twenty states throughout the Midwest and South. Backed by funds managed by Apollo Global Management, they are accelerating the upgrade of copper to fiber optic technologies.

India

  • Investigate intrusion attempts and perform in-depth analysis of exploits
  • Monitor and analyze network traffic and alerts
  • Provide network intrusion detection expertise to support timely and effective decision making of when to declare an incident

AHEAD builds platforms for digital business. By weaving together advances in cloud infrastructure, automation and analytics, and software delivery, they help enterprises deliver on the promise of digital transformation. At AHEAD, they prioritize creating a culture of belonging, where all perspectives and voices are represented, valued, respected, and heard.

Europe

  • Lead high-severity incident response
  • Improve detection logic and workflows
  • Contribute to metrics and reporting

Atlas Technica provides IT management, user support, and cybersecurity for hedge funds and investment firms. Founded in 2016, they value ownership, execution, growth, intelligence, and camaraderie, and offer competitive salaries and comprehensive benefits.

$120,000–$160,000/yr

  • Lead complex security investigations and drive automated response workflows.
  • Perform host-based triage and forensic analysis across Windows, Linux, and macOS, and conduct cloud-native IR across AWS and Azure.
  • Integrate threat intelligence into active investigations and operationalize it proactively.

VERSANT is a leading force in news, sports and entertainment and is home to iconic and trusted brands. As an independent, publicly traded company, VERSANT brings together powerhouse cable networks with dynamic digital and direct-to-consumer brands, fueled by innovation.

$100,000–$130,000/yr
US

  • Monitor client environments performing Incident Detection, Validation, and Reporting.
  • Responsible for the implementation and maintenance of cloud-based SIEM Solutions.
  • Partner with client Security to continuously improve and enhance Managed Security support.

AHEAD builds platforms for digital business. By weaving together advances in cloud infrastructure, automation and analytics, and software delivery, they help enterprises deliver on the promise of digital transformation. They prioritize creating a culture of belonging, where all perspectives and voices are represented, valued, respected, and heard.

South America

  • Monitor security events through SIEM and other security tools, performing initial triage and correlating signals across multiple sources.
  • Execute Incident Response activities, including detection, investigation, containment, remediation, and documentation of security incidents.
  • Analyze alerts and security anomalies to identify legitimate threats, false positives, and areas requiring escalation.

Pismo provides a comprehensive processing platform for banking, card issuing and financial market infrastructure and helps customers innovate and build the next generation of banking and payment solutions. Pismo’s 500+ employees are located in more than 10 countries around the world.

US

  • Play a key role in the strategic and hands-on protection of our enterprise systems.
  • Responsible for hardening infrastructure and integrating security systems into deployments.
  • Manage SIEM operations, incident response, and vulnerability reviews.

CBN Secure Technologies Inc. is an award-winning provider of secure Driver & Vehicle solutions to US States. They are a subsidiary of Canadian Bank Note (CBN) Company, Limited, designing and developing industry-leading solutions for various domains like Driver & Vehicle and Border Security.

US

  • Monitor security alerts and events from SIEM, XDR/EDR, and other security tools.
  • Perform initial triage and analysis of alerts to determine severity, scope, and required escalation.
  • Assist with containment, investigation, and recovery activities under supervision.

Kinaxis is a global leader in modern supply chain orchestration, powering complex global supply chains and supporting the people who manage them. The company has over 2000 employees around the world and is known for its culture, technology and customer focus.

$85,000–$85,000/yr
US

  • Detect and respond to security threats across network, systems, and cloud environments.
  • Troubleshoot and resolve complex technical issues, performing root cause analysis to prevent future incidents.
  • Act as an escalation point for unresolved alerts/issues.

DYOPATH is committed to a work environment free of all forms of discrimination, recruiting and hiring without regard to age, color, disability, gender, gender identity, genetic information, marital status, military status, national origin, race, religion, sexual orientation, veteran status, or any other legally protected characteristic. For more information about DYOPATH, please visit their website.

US Unlimited PTO

  • Serve as the primary Incident Commander for critical security events.
  • Orchestrate response efforts across multiple teams.
  • Conduct post-incident reviews and drive improvements.

GitLab is the intelligent orchestration platform for DevSecOps. They enable organizations to increase developer productivity, improve operational efficiency, reduce security and compliance risk, and accelerate digital transformation. GitLab has more than 50 million registered users and is trusted by more than 50% of the Fortune 100*, which reflects a high-performance culture driven by their values and continuous knowledge exchange.

  • Proactively hunt down, analyze, and patch system weak spots before they become a problem.
  • Act as the calm, collected, and decisive first responder when the digital alarms ring, leading security investigations.
  • Turn mountains of raw data logs into digestible, actionable insights to keep our defenses sharp.

Miovision is unlocking transportation networks that move people and enable smart, fast, safe communities. They are backed by advanced traffic AI and their innovations in traffic signal planning and operations improve the transportation experience for drivers, cyclists and pedestrians.

US

  • Investigates and responds to cyber incidents within the network environment.
  • Collects data from a variety of security monitoring tools to analyze events that occur within the environment.
  • Determines and documents information security requirements and controls necessary for the protection of information resources.

Emory University is a leading research university that fosters excellence and attracts world-class talent to innovate today and prepare leaders for the future. They welcome candidates who can contribute to the excellence of their academic community.

Europe

  • Monitor alerts from SIEM and endpoint tools.
  • Perform initial triage and validation.
  • Escalate incidents per procedures.

Atlas Technica provides IT management, user support, and cybersecurity for hedge funds and investment firms with a focus on service. Founded in 2016, they value ownership, execution, growth, intelligence, and camaraderie, fostering a professional yet friendly environment with career development opportunities.

$85,000–$90,000/yr
Canada

  • Continuously monitor security systems to detect and respond to any security incidents.
  • Take the lead in investigating security breaches and developing prevention strategies.
  • Conduct assessments of security risks and evaluate third-party vendor security measures.

Numeris is Canada’s trusted source for broadcast measurement and consumer behavior data, and a provider of intelligence to broadcasters, advertisers, and agencies. They have been recognized for 75 years as providing the gold standard in audience intelligence with a collaborative, curious, and dedicated culture.

$125,000–$145,000/yr
US

  • Own end-to-end security operations including SOC, monitoring, and detection capabilities.
  • Act as technology incident commander for security events and incidents.
  • Own the operational lifecycle of vulnerability management including scanning, prioritization, and remediation tracking.

Best Egg is a tech-enabled financial platform that helps people build financial confidence through lending solutions and financial health tools. They foster an inclusive and flexible workplace with top-tier benefits and growth opportunities, employing collaborative and innovative team players.

Europe 5w PTO 12w maternity

  • Own and oversee enterprise security monitoring capabilities, including SIEM, EDR/XDR, and alerting platforms.
  • Act as senior incident manager for significant security incidents, coordinating technical teams, IT operations, and business stakeholders.
  • Lead and develop Genus’s security operations capability, establishing clear roles, responsibilities, and expectations.

Genus is an agricultural biotechnology pioneer and a global FTSE 250 company headquartered in the UK. They are a worldwide leader in porcine and bovine animal genetics, partnering with farmers to transform how we nourish the world, employing over 3,000 employees.

US

  • Lead complex DFIR investigations end-to-end: scope, evidence strategy, analysis, and findings validation across endpoint, identity, cloud, and network telemetry.

Cyber Advisors (CA) is a Cybersecurity and IT managed services provider (MSP) business with a customer-focused approach to designing, managing, and maintaining our customer's IT environment. They have invested a tremendous amount of time to develop their technology, processes, and support platform and are steadily growing.

US

  • Investigating security events across the organization using your experience and knowledge in multiple security domains.
  • Creating, deploying and maintaining high signal threat detections based on your understanding of threat actor TTPs.
  • Architecting a highly scalable incident response process by developing, applying and refining automation for steps of the Incident Response life cycle

Benchling is the AI platform for biotech R&D. Scientists use Benchling to design experiments, capture structured data, and run AI agents and models directly in their workflows. They have over 200,000 scientists around the world and they trust Benchling to power their most important work.

Global 5w PTO

  • Helping define the security operations roadmap by designing and implementing long term strategies
  • Improve and maintain processes, tooling, documentation and training to mature and enhance cybersecurity incident response
  • Design, implement and maintain security events monitoring systems

Docplanner empowers patients by giving them access to leave and read reviews about their visit and also provides doctors with the technology to manage bookings easily and save time. They are leaders in 13 countries with over 2,500 employees globally, maintaining a startup-mindset.

Europe 6w PTO 18w maternity 4w paternity

  • Design, implement, and improve security controls across our entire fleet.
  • Lead the technical direction for cyber security defense, covering enterprise posture management, threat detection, and vulnerability management.
  • Partner with ITOps, SysOps, DevOps and XOps to embed security into the core of our architecture and change management processes.

Wrike is a powerful work management platform designed to facilitate collaboration, enhance productivity, and enable teams to concentrate on meaningful work. They foster a hybrid work environment and value innovation, customer focus, collaboration, creativity, and commitment.