Cyber Threat Analyst III jobs in United States
cer-icon
Apply on Employer Site
company-logo

GuidePoint Security · 6 hours ago

Cyber Threat Analyst III

GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk. They are seeking a Cyber Threat Analyst III responsible for monitoring cybersecurity events, performing triage on security escalations, and implementing automation use cases leveraging AI/ML capabilities.

Cyber SecurityInformation TechnologySecurity
check
Comp. & Benefits
badNo H1BnoteU.S. Citizen Onlynote

Responsibilities

Responsible for performing triage on all security escalations and detections to determine scope, severity, and root cause
Monitor cyber security events, detecting incidents, and investigating incidents
Identify, recommend strategies, develop, and implement automation use cases leveraging AI/ML capabilities
Support deploying, configuring, testing, and maintaining Security Orchestration, Automation, and Response (SOAR) platform, and tools integrated with AI/ML capabilities to enhance threat detection, analysis and response
Provide support to contract Program Manager, as necessary
Effectively communicates technical information to non-technical audiences
Influence others to comply with policies and conform to standards and best practices

Qualification

CISSPCISACISMGIACRHCESecurity OperationsThreat HuntingIncident ResponseSOARAI/ML Security ToolsNetwork Traffic AnalysisCommunication SkillsTeam Collaboration

Required

MUST have one or more of the following Certification(s): CISSP, CISA, CISM, GIAC, RHCE
7+ years of experience with security operations, threat hunting, and incident response
Experience in analyzing alerts from Cloud, SIEM, EDR, and XDR tools, and alerts tuning process with preference on SentinelOne, Armis, and Splunk
Experience in configuring network devices and analyzing network traffic
Experience with Artificial Intelligence and Machine Learning (AI/ML) based security tools
Experience in researching, developing, and implementing SOAR use cases
Familiar with Security Orchestration, Automation, and Response (SOAR) platform
Familiarity with cybersecurity operation center functions
Experience configuring and re-configuring security tools, including SentinelOne and Splunk
Experience implementing Security frameworks, such as MITRE ATT&CK and NIST, and can interpret use cases into actionable monitoring solutions
Strong working knowledge of Develop, test and Implement dynamic Risk-Based Alerting (RBA)
Identifying and developing RBA and identifying use cases for SOAR and AI/ML
Monitor and analyze alerts from various sources such as IDS/IPS, Splunk, Tanium, MS Defender, SentinelOne and Cloud security tools leveraging SOAR and AI/ML capabilities, and provide recommendation for further tuning of these alerts when necessary
Analyze network traffic utilizing available tools and provide recommendations
Perform vulnerability assessments of recently discovered CVEs against USPS systems and network
Assist in the process of configuring or re-configuring the security tools
Perform analysis on hosts running on a variety of platforms and operating systems, to include, but not limited to, Microsoft Windows, UNIX, Linux, as well as embedded systems and mainframes
Assist in the construction of signatures which can be implemented on cyber defense network tools in response to new or observed threats within the network environment or enclave
Test, evaluate, and verify hardware and/or software to determine compliance with defined specifications and requirements
A minimum of eight (8) to twelve (12) years' relevant experience
A degree from an accredited College/University in the applicable field of services is required
If the individual's degree is not in the applicable field then four additional years of related experience is required
Pass a client mandated clearance process to include drug screening, criminal history check and credit check
All candidates must be a US Citizen or permanent status Green Card holder
Cannot have more than 6 months travel outside the United States within the last five years. Military Service excluded

Benefits

Group Medical Insurance options: Zero Deductible PPO Plan (GuidePoint pays 90% of the premium for employees and 70% for family plans (spouse/children/family) or High Deductible Health Plan with HSA (GuidePoint pays 100% of the employees premiums and 75% for family plans (spouse/children/family) and GPS will contribute in one lump sum: ($500 per EE annually / $1000 per family annually (includes spouse/children/family options)
Group Dental Insurance: GuidePoint pays 100% of the premium for employees and 75% of family plans
12 corporate holidays and a Flexible Time Off (FTO) program
Healthy mobile phone and home internet allowance
Eligibility for retirement plan after 2 months at open enrollment
Pet Benefit Option

Company

GuidePoint Security

twittertwittertwitter
company-logo
GuidePoint Security provides customized, innovative & valuable Information Security solutions that enable commercial federal organizations.

Funding

Current Stage
Late Stage
Total Funding
unknown
Key Investors
Audax Private Equity
2023-10-10Private Equity

Leadership Team

leader-logo
Michael Volk
Chairman & CEO
linkedin
J
Joe Leonard
CTO & VP Security Strategy
linkedin
Company data provided by crunchbase