Job Summary
The Sr Analyst Information Security will support Cyber Defense Operations Center (CDOC) activities, including security monitoring, threat detection, incident investigation and response, threat hunting, and continuous improvement of the organization s security posture.
The role will work with technologies including SIEM, EDR/XDR, security posture management and vulnerability management platforms, while helping improve CDOC operations through automation, orchestration and AI-enabled security capabilities.
Essential Responsibilities
- Monitor, investigate and respond to cybersecurity events and incidents, including advanced and emerging threats.
- Perform SIEM and EDR/XDR analysis, threat hunting, incident investigation and remediation.
- Support security posture and vulnerability management, including identification, prioritization and tracking of security risks and remediation.
- Develop and improve automation and orchestration of repetitive security monitoring, investigation and response activities.
- Explore and leverage AI-enabled cybersecurity capabilities to improve detection, investigation and operational efficiency.
- Continuously evaluate security processes, use cases and toolsets and recommend improvements.
- Maintain operational SLAs, metrics, procedures, documentation and reporting.
- Provide technical support and escalation for complex security incidents.
- Work with internal technical teams and third-party providers during security investigations and remediation.
- Collaborate with architecture, network, cloud, infrastructure and application teams to improve security controls and visibility.
- Support ongoing cybersecurity projects and the continued maturity of CDOC capabilities.
- Provide technical guidance and mentoring to other cybersecurity team members.
- Support evaluation, testing and implementation of new and existing security technologies and initiatives.
Other Responsibilities
- Perform all activities in a safe and responsible manner and support all Environmental, Health, Safety & Security requirements and programs.
Required Qualifications
- Bachelor s Degree in Information Security, Cybersecurity, Computer Science or related discipline.
- Bachelor s Degree with 2-4 years of relevant experience, or Master s Degree with 0-3 years of relevant experience.
- Good understanding of network technologies, security concepts and protocols.
- Hands-on experience with SIEM, EDR/XDR, IDS/IPS, firewalls and related security technologies.
- Knowledge of security incident handling, investigation and threat hunting.
- Relevant knowledge of vulnerability management and security posture management.
- Understanding of security automation, scripting, orchestration and AI applications in cybersecurity.
- Strong analytical, troubleshooting and communication skills.
- Ability to prioritize and manage multiple security activities and operational deadlines.
- Fluency in English, written and verbal.
Preferred Qualifications
- Experience working in a SOC/CDOC or similar cybersecurity operations environment.
- Knowledge of cloud security and identity security concepts.
- Experience with security automation, scripting or SOAR technologies.
- Relevant cybersecurity certifications such as GSEC, Security+, CySA+, PenTest+ or equivalent.
- Excellent technical documentation, planning and organizational skills.
- Semiconductor industry knowledge is a plus.