AgreeYa Solutions - New Hyde Park, NY

posted 8 days ago

Full-time
New Hyde Park, NY
Professional, Scientific, and Technical Services

About the position

The Sr. Cyber Security Analyst is responsible for overseeing security monitoring and incident response to both internal and external threats. This role involves advanced threat analysis, collaboration with internal IT teams and Managed Security Service Providers (MSSP), and leading security monitoring projects to enhance the organization's security posture.

Responsibilities

  • Conduct investigations and respond to internal and external security threats.
  • Oversee, respond to, and remediate DLP (data loss prevention) and SIEM events from on-premise and cloud systems.
  • Implement advanced security monitoring techniques to identify malicious behavior on SaaS, cloud systems, network, servers, and endpoints.
  • Manage, administrate, and improve security monitoring products for DLP, SIEM, EDR, AV, Cloud Security products, IDS, and other industry-standard security technologies.
  • Develop automation response scripts to remediate commodity threats.
  • Perform threat hunting activities to identify compromised resources.
  • Understand and perform threat analysis utilizing industry-standard frameworks (kill chain and diamond model).
  • Perform threat research and intelligence gathering to improve detection and response capabilities.
  • Propose and help review security plans and policies to improve the security environment.
  • Maintain operational playbooks, process diagrams, and documentation for security monitoring and response.
  • Review proposed security deployments to ensure security monitoring requirements are met.
  • Provide off-hour support as needed for security monitoring and response activities.

Requirements

  • Bachelor's degree in Computer Science or related field, or equivalent combination of industry-related professional experience and education.
  • Working experience with Information Security, Network Security, and Security Monitoring and Incident Response.
  • Working experience with industry-standard security technologies and services such as Firewalls, VPN, IDS, Endpoint Security, DLP, AV, Proxy, SIEM.
  • Strong experience with SIEM event/log analysis.
  • GSEC, GCIA, GFE, GCFA, CISA, CISSP, CISM, or CIA certification(s).
  • Network/System Administration experience/background.
  • Minimum of 5 years of experience.

Nice-to-haves

  • Experience with DLP, Policy Development, EDR, and SIEM.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service