Demo

Security Analyst (SIEM and SOAR , ATT&ACK and Cyber Kill Chain frameworks)

cloudingest inc
California, CA Full Time
POSTED ON 4/2/2025
AVAILABLE BEFORE 6/2/2025

Job Details

Job-Role/Title: Security Analyst
Job-Type: Long-Term Contract opportunity. The initial contract is for 12 months, with extensions.
Job-Location: Rancho Cucamonga, California, United States.
Work Style: Hybrid Work setting 3 days/week in the office is required.
Position Overview and Responsibilities:
  • Under the direction of the Manager, Information Security Operations, the Security Analyst will use subject matter expertise to give guidance, best practices, and support to business and technology stakeholders during the deployment of critical business and technology initiatives.
  • This role will have a deep understanding of global threat actors and their tactics, techniques, and procedures employed during cyberattacks.
  • The Security Analyst will be subject matter expert in cybersecurity and maintain documentation related to policies, standards, and procedures; mentor team members; and provide consultative services to teams and stakeholders to improve the security posture of their environments and perform general cybersecurity engineering functions.
  • This position will support various Information Technology Security functional areas related to one or more of the following: Application Security, Security Operations and Vulnerability.
Responsibilities and Key Deliverables:
  1. Monitor firewalls, network and host intrusion prevention/detection systems, virtual private networks, threat intelligence platforms, endpoint protection, security training platforms, email security, forensic tools, public/private/hybrid cloud infrastructure, identity and access management systems, and physical security systems.
  2. Monitor security operations center tools and dashboards.
  3. Perform threat hunting activities using security operations center tools across the environment using internal or external threat intelligence sources.
  4. Architect cybersecurity solutions for on premises and cloud computing environments.
  5. Participate in and/or leads cybersecurity engineering projects.
  6. Assist with risk analysis activities.
  7. Assist with designing and implementing controls to mitigate risk.
  8. Identify attack surface reduction opportunities through vulnerability data analysis and/or identify opportunities for process improvements and automation.
  9. Security Operations
    • Monitor security systems and provide early response to potential threats.
    • Manage security incident response; serve as escalation point for conducting investigations into security incidents involving advanced and sophisticated threat actors and TTPs.
    • Design, test, and implement response playbooks, orchestration workflows and automations.
    • Research, recommend and test new security technologies and platforms
    • Analyze technologies and establishes highly effective processes and protocols to ensure comprehensive protection exists to prevent unauthorized entry into company networks and systems.
    • Support automation and orchestration to maximize team talent and reduce routine tasks.
    • Drive creation of countermeasures to protect company personnel and information assets.
    • Document, prioritize, and formally report incidents, root cause analyses, and after-action reviews.
    • Coordinate between internal and external resources protecting enterprise systems.
    • Periodically attend and participate in change management policy discussions and meetings.
    • Understand breach and attack simulation solutions to validate and improve the effectiveness of preventative controls and incident response.
    • Motivate employees to maximize rigorous system security controls, focusing on reducing complexity and maturing security practices.
    • Work as a team to consistently learn and share advanced skills and foster team excellence.
  10. Vulnerability
    • Work analytically to solve both tactical and strategic problems within the vulnerability management program.
    • Plan, develop, configure, and execute vulnerability scans on a wide variety of corporate and business information systems both on prem and cloud based.
    • Establish rapport with other IS teams to mature the vulnerability management program.
    • Respond to tickets and incidents in a proactive manner.
    • Collect and aggregates information from a wide variety of sources and formats for relevance to our environment; monitors and provides metrics on threat level of vulnerabilities.
    • Contribute and participates in team activities and planning regarding improving team skills, awareness, communication, reputation, and quality of work.
    • Collaborate and communicates with Compliance, Internal Audit, the Business teams, and others to identify, analyze, and communicate risk; and provides support around vulnerability management within their business requirements.
    • Identify, develop, and implement mechanisms to detect vulnerabilities and how they may lead to corporate incidents to enhance compliance with and support of security standards and procedures.
    • Respond to tickets and incidents in a proactive manner.
    • Coordinate with the Incident Response team to remediate security incidents as needed.
    • Understand compliance requirements that may impact security and effectively collaborates with business areas and project teams to develop security solutions that address these requirements.
    • Work with information systems owners and administrators to understand their security needs and assists with implementing practices and procedures consistent with security policies.
    • Build and maintains supplier partnerships to further the company mission and goals.
    • Maintain current knowledge of industry trends and standards.
    • Create and maintains environmental documentation, tasks, change records, etc.
    • In a lead capacity, advocate internally and externally for compliance on security measures to protect corporate applications and environments.
  11. Applications Security
    • Perform Static Application Security Testing (SAST) and Dynamic Application Security Testing (DAST).
    • Perform application security testing on various types of applications such as Web, API's, Thick Client's, Mobile, etc., inclusive of the supporting infrastructure components.
    • Leverage application artifacts such as business requirements, user stories, design documents, architecture documents to understand the testing scope and create targeted security user stories or misuse cases.
    • Manage and execute security assessments for multiple projects simultaneously and ensure project timelines are met.
    • Analyze source code to mitigate identified weaknesses and vulnerabilities within the system.
    • Ensure containerization security best practices are maintained and vulnerabilities are addressed.
Qualifications and Key Skillset for this Role
Eight (8) or more years IT experience with at least five (5) years in a cybersecurity role with a focus on protect, detect, and respond in addition to the following:
  • Cyber Security and Enterprise IT Security Certifications
  • Mitre ATT&CK and Cyber Kill Chain frameworks
  • Establishing or participating in Blue Team exercises
  • In-depth knowledge of computer operating systems such as Windows, MacOS and Linux.
  • System development lifecycle.
  • Deploying, managing, and using Security Operations tools such as SIEM, EPM, DLP, Vulnerability Management, Firewalls, WAFs, Antivirus Solutions, Email Protection Solutions, Incident Response and Threat hunting and management.
  • Scripting experience such as PowerShell, JavaScript, or Python.
  • Experience working with Identity and Access Control Management Tools.
  • Associate s degree with a major in computer related field or similar technical field from an accredited institution required.
  • In lieu of the required degree, a minimum of two (2) years of cybersecurity work experience is required. This experience is in addition to the minimum years listed in the Experience Requirements above
Ideal Resource for this Role
  • Strong Knowledge of the following:
    • SIEM and SOAR
    • ATT&ACK and Cyber Kill Chain frameworks
    • Blue Teaming
    • Endpoint protection technologies
    • Cloud technologies
    • OSI Model layers, IP Routing, TCP/IP Operation
    • Scripting experience such as PowerShell, JavaScript, or Python
    • Computer forensics knowledge and experience
    • Security standards such as HIPAA, NIST 800-53, NIST CSF, Zero Trust Architecture, and others
    • Vulnerability scanning technologies
    • Security monitoring and incident response
    • Risk analysis and risk mitigation strategies
    • Networking technologies and networking protocols with an emphasis on TCP/IP
    • Defense in Depth strategies
    • Security Operations Tools such as SIEM, EPM, DLP, Vulnerability scanners, Firewalls, WAFs, Antivirus Solutions, Email Protection Solutions, Incident Response and Threat Management
    • Advanced Persistent Threats (APT) and associated tactics
    • Identifying indicators of compromise and indicators of attack
    • Vulnerability management - Cloud security and/or technologies
    • Computer operating systems such as Windows, MacOS and Linux
    • Strong planning, organization, critical thinking, decision-making and communication (verbal and written) skills.
    • The ability to work as a member of a team, willing to be flexible and adaptable to change in a dynamic work environment, and the ability to learn and apply new concepts.
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.

If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Security Analyst (SIEM and SOAR , ATT&ACK and Cyber Kill Chain frameworks)?

Sign up to receive alerts about other jobs on the Security Analyst (SIEM and SOAR , ATT&ACK and Cyber Kill Chain frameworks) career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$87,093 - $107,335
Income Estimation: 
$111,725 - $147,313
Income Estimation: 
$112,673 - $137,290
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$152,549 - $188,894
Income Estimation: 
$194,072 - $240,547
Income Estimation: 
$135,994 - $168,063
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$70,462 - $84,818
Income Estimation: 
$77,991 - $108,747
Income Estimation: 
$87,093 - $107,335
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$87,093 - $107,335
Income Estimation: 
$111,725 - $147,313
Income Estimation: 
$112,673 - $137,290
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$112,673 - $137,290
Income Estimation: 
$139,945 - $168,577
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at cloudingest inc

cloudingest inc
Hired Organization Address Allen, VA Full Time
Job Details Business Analyst P&C Insurance - Technology Modernization projects / Migration from legacy PAS (Policy Admin...
cloudingest inc
Hired Organization Address California, CA Full Time
Job Details Job-Role/Title : I.T. Business Systems Analyst Job-Type : Long-Term Contract opportunity. The initial contra...
cloudingest inc
Hired Organization Address Rancho Cucamonga, CA Full Time
Job Details Title: Major Incident and Event Manager Job-Location: , California, United States. Work Style: Hybrid Work s...
cloudingest inc
Hired Organization Address Atlanta, GA Contractor
The Americans with Disabilities Act (“ADA”) Accessibility Tester ensures that the Integrated Eligibility Systems meet ac...

Not the job you're looking for? Here are some other Security Analyst (SIEM and SOAR , ATT&ACK and Cyber Kill Chain frameworks) jobs in the California, CA area that may be a better fit.

Senior GRC Analyst

Abnormal Security, Bakersfield, CA

Security Analyst

Serve Robotics Inc, Bakersfield, CA

AI Assistant is available now!

Feel free to start your new journey!