SIGN IN
Lead CyberSecurity Insider Risk Analyst jobs in United States
info-icon
This job has closed.
company-logo

IS3 Solutions · 20 hours ago

Lead CyberSecurity Insider Risk Analyst

IS3 Solutions is a company focused on cybersecurity solutions, and they are seeking a Lead CyberSecurity Insider Risk Analyst to manage escalated incident management and drive remediation efforts. The role involves developing incident response processes, contributing to threat intelligence, and providing executive-level communication while mentoring team members in cybersecurity practices.
Cyber SecurityData CenterInformation TechnologyIT Infrastructure

Responsibilities

Manage all cases as Lead Handler for escalated cybersecurity incidents
Oversee all tasks related to escalated cases as Lead Investigator
Investigate all escalated security events, ensuring comprehensive analysis and response
Assist with "Micro-hunts” to Client, analyze, and report on actionable threat intelligence
Support the development and continuous improvement of incident response processes
Drive remediation efforts for all cybersecurity incidents assigned to the team
Perform skilled triage of threats using advanced technical and business knowledge
Mentor team members in triage, leveraging business knowledge and incident response frameworks
Assist with scenario development for tabletop exercises across the Incident Response team
Document and communicate findings and after-action reports in formats required by leadership
Function as a mentor and subject matter expert to other Incident Responders
Serve as a scribe when requested, maintaining accurate records of incidents
Provide executive-level communications to leadership and stakeholders
Utilize case management tools, host/network analysis, and threat intelligence platforms for incident response
Apply strong knowledge in incident handling processes, lifecycle, and attack frameworks
Conduct in-depth analysis of threats, exploits, vulnerabilities, and malware families
Perform investigations across Windows, OSX, and Lenox operating systems
Leverage Endpoint Dectection and Response (EDR) technologies and conduct cloud security analysis
Use SPLUNK and other analytics tools for advanced investigations and reporting
Understand company infrastructure, including VPNs, AVPNs, and business partner connectivity
Demonstrate expert familiarity with networking, internet communication methods, and general computing protocols
Design and implement new security detection methods in response to emerging threats
Collaborate with other Threat Analytic teams, understanding their functions and interactions
Mentor team members in skilled triage and advanced practices
Generate reports and documentation related to incident response activities
Maintain knowledge of SaaS services, mobility threats, and security in cloud environments
Exhibit strong understanding of scripting languages (e.g., Python, PowerShell, Bash) for automation and analysis
Assist with algorithm development and advanced threat intelligence analysis

Qualification

Incident ResponseThreat IntelligenceHost/Network AnalysisEDR TechnologiesSPLUNKCloud Security AnalysisScripting LanguagesAnalytical SkillsBusiness CommunicationProfessional IntegrityProblem-Solving SkillsCollaboration Skills

Required

4+ years of technical cybersecurity experience in Incident Response, Security Operations, or related functions
Demonstrated experience in managing escalated incidents and driving remediation in complex environments
Working knowledge of at least four of the following: incident management technologies, OS hardening, cloud environments, host analysis, network forensics, UEBA, malware reversing, intrusion detection, anomaly detection, threat research, threat intelligence, security alert design, data analysis
Strong knowledge of incident handling, lifecycle, and attack frameworks
Advanced proficiency in incident response, triage, and remediation
Expertise in host and network analysis, EDR technologies, and SPLUNK
Good understanding of cloud security analysis, internet-based threats, and SaaS services
Strong familiarity with company infrastructure (VPNs/AVPNs), mobility threats, and networking
Expert familiarity with general computing protocols and malware/network attack vectors
Experience designing and implementing security detection methods
Understanding of scripting languages for automation and analysis
Ability to mentor and train others at a senior level
Excellent analytical and problem-solving skills, with the ability to perform core root cause analysis
Quick learner, able to absorb and teach new technologies and concepts
Highly effective collaborator, especially in remote or distributed teams
Excels in business communication methods and general soft skills
Strong understanding of the business, its entities, and how cybersecurity impacts the broader organization
Professional integrity and discretion in handling sensitive information
Commitment to continuous learning and staying current with emerging cybersecurity threats and best practices

Company

IS3 Solutions

twittertwittertwitter
company-logo
IS3 Solutions is an IT company that provides data centers, cloud, cyber security, IT infrastructure, and IT financing solutions.

Funding

Current Stage
Growth Stage

Leadership Team

leader-logo
John Marshall
CEO/Managing Partner
linkedin
Company data provided by crunchbase