Senior Cyber Security Ops Analyst | Remote | Contract

Other Jobs To Apply

No other job posts for this day.

Spartan Technologies, Inc. - null, United States

Senior Cyber Security Ops Analyst

Applicants Need To Know

  • 6+ Month Contract
  • Work Status: USC, GC
  • Sponsorship: No, Sponsorship provided.
  • Office Type: Remote
  • Location: Eastern OR Central time zones
  • Hourly Rate: $75 to $85 W2 Only
  • No Corp-to-Corp

Please note that only candidates who are authorized to work in the United States without sponsorship will be considered for this position.

We seek a Senior Cyber Security Ops Analyst for our client. This is a contract position lasting 6+ months. The role is remote and requires availability in the Eastern or Central time zones.

As a Sr Cyber Security Ops Analyst, you will be responsible for security monitoring and incident response for both internal and external threats. You will collaborate with internal IT teams and MSSP to ensure effective security monitoring and response. Additionally, you will implement advanced security monitoring techniques to identify malicious behavior and develop automation response scripts to remediate commodity threats. Your role will also involve performing threat analysis utilizing industry standard frameworks and conducting threat research to improve detection and response capabilities. You will have the opportunity to propose and review security plans and policies to enhance the overall security environment.

The Work:

  • Conduct investigations and respond to internal and external security threats.
  • Oversee, respond to, and remediate DLP (data loss prevention) and SIEM events from on-premise and cloud systems.
  • Implement advanced security monitoring techniques to identify malicious behavior on SaaS, cloud systems, network, servers, and endpoints.
  • Manage, administer, and improve security monitoring products for DLP, SIEM, EDR, AV, Cloud Security products, IDS, and other industry-standard security technologies.
  • Develop automation response scripts to remediate commodity threats.
  • Perform threat hunting activities to identify compromised resources.
  • Understand and perform threat analysis utilizing industry-standard frameworks (kill chain and diamond model).
  • Perform threat research and intelligence gathering to improve detection and response capabilities.
  • Propose and review security plans and policies to improve the security environment.
  • Maintain operational playbooks, process diagrams, and documentation for security monitoring and response.
  • Review proposed Security deployments to ensure security monitoring requirements are met.
  • Provide off-hour support as needed for security monitoring and response activities.
  • Work closely with MSSP services, external forensic providers, and in-house IT teams to respond to and remediate security incidents both internal and external.
  • Review compromised systems to identify the root cause of security incidents.

Qualifications:

  • Minimum of 5 years of experience in security monitoring and incident response
  • Strong knowledge of DLP (data loss prevention) and SIEM events
  • Experience with advanced security monitoring techniques on SaaS, cloud systems, network, servers, and endpoints
  • Proficiency in managing and administering security monitoring products for DLP, SIEM, EDR, AV, Cloud Security products, IDS, and other industry standard security technologies
  • Ability to develop automation response scripts for commodity threats
  • Familiarity with threat hunting activities to identify compromised resources
  • Understanding of threat analysis utilizing industry standard frameworks (kill chain and diamond model)
  • Experience in threat research and intelligence gathering to improve detection and response capabilities
  • Knowledge of reviewing security plans and policies to enhance the security environment
  • Strong documentation skills for operational playbooks, process diagrams, and security monitoring/response documentation
  • Ability to review proposed Security deployments to ensure compliance with security monitoring requirements
  • Willingness to provide off-hour support for security monitoring and response activities

Nice to Have:

  • Experience with cloud security technologies such as CASB, Cloud Access Security Brokers
  • Knowledge of scripting languages such as Python or PowerShell
  • Familiarity with industry compliance standards (e.g., PCI DSS, HIPAA, GDPR)
  • Certifications in relevant areas such as CISSP, CISM, or CEH
  • Experience working with incident response tools and processes

#CyberSecurity #SecurityOps #IncidentResponse #ThreatAnalysis #SecurityMonitoring #DataLossPrevention #SIEMEvents #CloudSecurity #EndpointSecurity #ITSecurity



Job # 1047
Back to blog

Common Interview Questions And Answers

1. HOW DO YOU PLAN YOUR DAY?

This is what this question poses: When do you focus and start working seriously? What are the hours you work optimally? Are you a night owl? A morning bird? Remote teams can be made up of people working on different shifts and around the world, so you won't necessarily be stuck in the 9-5 schedule if it's not for you...

2. HOW DO YOU USE THE DIFFERENT COMMUNICATION TOOLS IN DIFFERENT SITUATIONS?

When you're working on a remote team, there's no way to chat in the hallway between meetings or catch up on the latest project during an office carpool. Therefore, virtual communication will be absolutely essential to get your work done...

3. WHAT IS "WORKING REMOTE" REALLY FOR YOU?

Many people want to work remotely because of the flexibility it allows. You can work anywhere and at any time of the day...

4. WHAT DO YOU NEED IN YOUR PHYSICAL WORKSPACE TO SUCCEED IN YOUR WORK?

With this question, companies are looking to see what equipment they may need to provide you with and to verify how aware you are of what remote working could mean for you physically and logistically...

5. HOW DO YOU PROCESS INFORMATION?

Several years ago, I was working in a team to plan a big event. My supervisor made us all work as a team before the big day. One of our activities has been to find out how each of us processes information...

6. HOW DO YOU MANAGE THE CALENDAR AND THE PROGRAM? WHICH APPLICATIONS / SYSTEM DO YOU USE?

Or you may receive even more specific questions, such as: What's on your calendar? Do you plan blocks of time to do certain types of work? Do you have an open calendar that everyone can see?...

7. HOW DO YOU ORGANIZE FILES, LINKS, AND TABS ON YOUR COMPUTER?

Just like your schedule, how you track files and other information is very important. After all, everything is digital!...

8. HOW TO PRIORITIZE WORK?

The day I watched Marie Forleo's film separating the important from the urgent, my life changed. Not all remote jobs start fast, but most of them are...

9. HOW DO YOU PREPARE FOR A MEETING AND PREPARE A MEETING? WHAT DO YOU SEE HAPPENING DURING THE MEETING?

Just as communication is essential when working remotely, so is organization. Because you won't have those opportunities in the elevator or a casual conversation in the lunchroom, you should take advantage of the little time you have in a video or phone conference...

10. HOW DO YOU USE TECHNOLOGY ON A DAILY BASIS, IN YOUR WORK AND FOR YOUR PLEASURE?

This is a great question because it shows your comfort level with technology, which is very important for a remote worker because you will be working with technology over time...