Cyber Defense Senior Analyst

1 Month ago • 6 Years + • Cyber Security

Job Summary

Job Description

As a Cyber Defense Senior Analyst at Mandiant, you'll enable efficient incident response within a Cyber Defense Center (CDC). You'll collaborate with cross-functional teams to define requirements and deliver recommendations for incident response, analyzing security events using SIEM and endpoint technologies. Responsibilities include improving CDC/CSIRT/SOC management, leveraging cybersecurity intelligence, and collaborating with clients to resolve security issues. This role demands real-time analysis, threat hunting expertise, and proactive improvements to incident detection and response capabilities within a fast-paced environment.
Must have:
  • Bachelor's degree in related field or equivalent experience
  • 6+ years SOC analyst, malware research, or threat hunting experience
  • Experience with EDR and SIEM technologies
  • Incident response leadership experience
Good to have:
  • Security certifications (CompTIA, SANS-GIAC, CISCO, EC-Council)
  • Scripting languages (PowerShell, Python)
  • Understanding of Windows and Linux operating systems
  • Excellent communication skills

Job Details


Minimum qualifications:

  • Bachelor's degree in Computer Science, Information Systems, Cybersecurity, related technical field, or equivalent practical experience.
  • 6 years of experience in SOC analyst, malware research, threat hunting, or similar roles, working with EDR and SIEM technologies.
  • Experience using multiple operating systems, directory service software, and document, spreadsheet, and presentation software.
  • Experience leading incident response activities.

Preferred qualifications:

  • Certification in one or more of the following: CompTIA Security+, CompTIA Network+, ISC2 (CISSP), SANS-GIAC certification (GSEC, GCIH, GCED, GCFA, GCIA, GNFA, GPEN, GWAPT), CISCO (CCNA), EC-Council (CEH, LPT).
  • Knowledge of scripting languages (i.e., PowerShell and Python).
  • Understanding of operating systems, including Windows and Linux.
  • Understanding of security controls for common platforms and devices, including Windows, Linux and network equipment.
  • Ability to engage and collaborate with client stakeholders and other groups within the customer environment to drive resolution for security issues.
  • Excellent written and verbal communication skills.

About the job

As a Cyber Defense Analyst, you will be responsible for enabling efficient and accurate incident response activities and daily tasks within a Cyber Defense Center (CDC). You will collaborate with multiple cross-functional teams like Security Architects, Security Engineers, Client Information Technology (IT) resources, and other business resource owners, to define requirements and deliver recommendations focused on incident response activities to support the client's CDC. In addition, you may be responsible for the analysis, response, containment, remediation, and long-term improvement of a client's Security Operation Center (SOC) in order to maintain and transform incident detection and response capabilities.

In this role, you will work as a member of a highly technical team in a rapidly changing environment, administer a variety of information security technologies, learn new emerging technologies, and be passionate about protecting customer data and corporate assets from the threats facing multiple industries.

Part of Google Cloud, Mandiant is a recognized leader in dynamic cyber defense, threat intelligence and incident response services. Mandiant's cybersecurity expertise has earned the trust of security professionals and company executives around the world. Our unique combination of renowned frontline experience responding to some of the most complex breaches, nation-state grade threat intelligence, machine intelligence, and the industry's best security validation ensures that Mandiant knows more about today's advanced threats than anyone.

Responsibilities

  • Identify challenges in customer Cyber Defense Centers and formulate strategies for improvement, plan implementation of improvements, and execute/oversee plans to completion.
  • Conduct real-time analysis using SIEM, endpoint, and network based technologies with a focus on identifying security events and false positives.
  • Advise on CDC, CSIRT, and SOC management activities.
  • Research and leverage cybersecurity intelligence sources, attacker techniques, containment methodologies, and remediation processes to improve Security Operation Center (SOC) incident detection and response capabilities.
  • Engage and collaborate with client stakeholders and other groups within the customer environment to drive resolution for security issues.

Similar Jobs

Palo Alto Networks - Principal Consultant

Palo Alto Networks

Japan (On-Site)
1 Week ago
Google - Senior Digital Forensics Incident Response Consultant

Google

Los Angeles, California, United States (On-Site)
1 Month ago
Trend Micro - Automotive Research Engineer - Threat Intelligence & Content Creation (VicOne)

Trend Micro

Taipei City, Taiwan (On-Site)
8 Months ago
Threat connect - Account Executive

Threat connect

California, United States (Remote)
1 Month ago
Google - Red Teaming and Threat Emulation Consultant

Google

New South Wales, Australia (On-Site)
1 Month ago
PwC - Internship program - Risk Consulting

PwC

Bangkok, Bangkok, Thailand (On-Site)
8 Months ago
PwC - Sr. Data Engineer

PwC

Makati, Metro Manila, Philippines (On-Site)
5 Months ago
GLG - Senior Security Operations Engineer

GLG

Gurugram, Haryana, India (Remote)
7 Months ago
PwC - Cloud & IT Transformation Senior Associates

PwC

Makati, Metro Manila, Philippines (On-Site)
8 Months ago
ION - Security Architect, Italy

ION

Italy (Hybrid)
7 Months ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

ByteDance - Software Engineer, Security Operation Center

ByteDance

San Jose, California, United States (On-Site)
1 Month ago
Opendoor - Detection Engineer - Security (SIEM, Go or Python) B2B

Opendoor

Kraków, Lesser Poland Voivodeship, Poland (Hybrid)
2 Weeks ago
SingleStore - AI Security Engineer

SingleStore

Hyderabad, Telangana, India (Remote)
1 Week ago
Google - Strategic Security Consultant

Google

Toronto, Ontario, Canada (On-Site)
1 Month ago
Google - Instructional Designer

Google

Dubai, Dubai, United Arab Emirates (On-Site)
1 Month ago
Google - Senior Red Team Security Consultant

Google

Atlanta, Georgia, United States (On-Site)
1 Month ago
ByteDance - Senior Security Tech Lead Manager - Security Engineering

ByteDance

San Jose, California, United States (On-Site)
3 Months ago
Google - Red Teaming and Threat Emulation Consultant

Google

New South Wales, Australia (On-Site)
1 Month ago
Netflix - Security Engineer L5, Incident Response

Netflix

Warsaw, Masovian Voivodeship, Poland (On-Site)
3 Months ago
ByteDance - Full-Stack Software Engineer - 2025 Start

ByteDance

Singapore (On-Site)
7 Months ago

Get notifed when new similar jobs are uploaded

Jobs in London, England, United Kingdom

Tesla - Used Car Sales Advisor

Tesla

Dartford, England, United Kingdom (On-Site)
3 Months ago
Just wont die - Senior Concept Artist

Just wont die

Cambridge, England, United Kingdom (Remote)
3 Weeks ago
Netflix - Senior Manager, Import & Studio Relations - EMEA

Netflix

London, England, United Kingdom (On-Site)
7 Months ago
Reddit - Director, Global Channel Partnerships

Reddit

London, England, United Kingdom (On-Site)
2 Weeks ago
Rebellion - Lead Environment Artist

Rebellion

Oxford, England, United Kingdom (Hybrid)
2 Months ago
Alphasense - Associate Account Executive, Financial Services

Alphasense

London, England, United Kingdom (On-Site)
1 Week ago
Nium - Staff Product Manager - Card Processing

Nium

London, England, United Kingdom (Hybrid)
2 Weeks ago
DraftKings - Senior Python Developer

DraftKings

London, England, United Kingdom (On-Site)
1 Month ago
Cirrus Logic - ESD Engineer

Cirrus Logic

Edinburgh, Scotland, United Kingdom (Hybrid)
6 Months ago
Cirrus Logic - Silicon Development Program Manager

Cirrus Logic

Edinburgh, Scotland, United Kingdom (Hybrid)
1 Month ago

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

ION - Senior Security Architect

ION

Milan, Lombardy, Italy (On-Site)
7 Months ago
Tesla - Security Operations Center (SOC) Operator

Tesla

Milton Keynes, England, United Kingdom (On-Site)
3 Months ago
Seedify - Cyber Security Specialist

Seedify

(On-Site)
12 Months ago
ByteDance - Technical Account Manager (Edge Cloud)

ByteDance

Boston, Massachusetts, United States (On-Site)
2 Months ago
Google - Cyber Engagement Lead

Google

Tokyo, Japan (On-Site)
1 Month ago
PwC - Senior Consultant - RDC TC MSOFT

PwC

Kolkata, West Bengal, India (On-Site)
8 Months ago
PwC - Manager / Senior Manager Cyber Technology and Transformation

PwC

Zürich, Zurich, Switzerland (On-Site)
8 Months ago
Crunchyroll - Principal Technical Product Manager - Application Security

Crunchyroll

Los Angeles, California, United States (On-Site)
2 Months ago
Zazz - Cybersecurity Analyst

Zazz

(Remote)
3 Months ago
ByteDance - Senior Software Engineer - Network Security

ByteDance

San Jose, California, United States (On-Site)
1 Month ago

Get notifed when new similar jobs are uploaded