Cyber Defense Analyst

Jobtailor

Cambridge (MA)

On-site

USD 150,000 - 190,000

Full time

7 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Jobtailor in Cambridge, MA seeks an experienced cybersecurity operations professional to administer the SentinelOne EDR platform and monitor endpoints for threats. You will triage alerts, respond to incidents, and coordinate vendor support while supporting GxP-regulated systems across clinical, manufacturing, and laboratory environments.

You will also monitor cloud and identity platforms (Microsoft 365, Azure, AWS, AD, Entra ID), perform threat hunting, and contribute to incident response

Qualifications

  • Strong senior-level experience administering, optimizing, and operationally managing the SentinelOne EDR platform.
  • Experience with Azure Sentinel and Cyber Threat Intelligence Services.
  • Proficient in EDR, threat hunting, and cloud security tooling.

Responsibilities

  • Administer, optimize, and operationally manage the SentinelOne EDR platform.
  • Monitor endpoints and detect and respond to cybersecurity threats.
  • Troubleshoot security incidents and coordinate vendor support cases.
  • Monitor and respond to ZeroFox alerts.
  • Perform alert triage, validation, investigation, risk assessment, documentation, and escalation.
  • Support cybersecurity operations for GxP-regulated Clinical, Quality, Manufacturing, and Laboratory systems.
  • Monitor and investigate security events across Microsoft 365, Azure, AWS, AD, Entra ID, and cloud apps.
  • Perform threat hunting using EDR, SIEM, threat intelligence, and cloud security tools.
  • Review and respond to incidents affecting laboratory, manufacturing, research, and business systems.
  • Collaborate with Infrastructure, Cloud, Manufacturing, QA, Compliance, and Applications teams to remediate risks.
  • Assist with vulnerability management activities.
  • Develop and maintain Incident Response Playbooks, SOPs, Disaster Recovery, and Cybersecurity Runbooks.
  • Support cybersecurity audits, vendor risk assessments, and compliance reviews.

Tools

SentinelOne EDR
Azure Sentinel
Microsoft 365
Azure
AWS
Active Directory
Entra ID
SIEM
Threat Intelligence
Vulnerability Management
Incident Response

Job description

  • Administer, optimize, and operationally manage the SentinelOne EDR platform
  • Monitor endpoints and detect and respond to cybersecurity threats
  • Troubleshoot security incidents and coordinate vendor support cases
  • Monitor and respond to ZeroFox alerts
  • Perform alert triage, validation, investigation, risk assessment, documentation, and escalation
  • Support cybersecurity operations for GxP-regulated Clinical, Quality, Manufacturing, and Laboratory systems
  • Monitor and investigate security events across Microsoft 365, Azure, AWS, Active Directory, Entra ID, and cloud-based applications
  • Perform threat hunting using EDR, SIEM, threat intelligence, and cloud security tools
  • Review and respond to incidents affecting laboratory, manufacturing, research, and business systems
  • Collaborate with Infrastructure, Cloud, Manufacturing, Quality Assurance, Compliance, and Application teams to remediate security risks
  • Assist with vulnerability management activities
  • Develop and maintain Incident Response Playbooks, SOPs, Disaster Recovery, and Cybersecurity Runbooks
  • Support cybersecurity audits, vendor risk assessments, and compliance reviews
Requirements
  • Strong senior-level experience administering, optimizing, and operationally managing the SentinelOne EDR platform
  • Azure Sentinel
  • Cyber Threat Intelligence Services
  • EDR
  • Framework design
  • SentinelOne
  • Endpoint Protection
  • Experience monitoring and investigating security events across Microsoft 365, Azure, AWS, Active Directory, Entra ID, and cloud-based applications
  • Experience with threat hunting using EDR, SIEM, threat intelligence, and cloud security tools
  • Experience analyzing phishing attempts, business email compromise (BEC), malware, ransomware, insider threats, and suspicious user activities
  • Experience supporting GxP-regulated systems, validated systems, electronic records, and regulated data environments
  • Experience with vulnerability management, risk assessment, remediation tracking, and security exception reviews
  • Experience developing and maintaining Incident Response Playbooks, SOPs, Disaster Recovery, and Cybersecurity Runbooks
  • Ability to support cybersecurity audits, vendor risk assessments, and compliance reviews
Core Competencies

Demonstrates expertise in administering and optimizing the SentinelOne EDR platform, along with strong capabilities in threat hunting, incident response, and compliance within GxP-regulated environments. Proficient in monitoring security events across various cloud platforms and conducting vulnerability management activities.

Highest-signal resume keywords
  • SentinelOne EDR Administration
  • Cyber Threat Intelligence Services
  • Threat Hunting Using EDR and SIEM
  • GxP-Regulated Systems Support
  • Incident Response Playbook Development
ATS Optimization Keywords
Hard Skills
  • SentinelOne EDR
  • Azure Sentinel
  • Endpoint Protection
  • Vulnerability Management
  • Risk Assessment
  • Incident Response
  • Threat Intelligence
  • Cloud Security Tools
  • Security Incident Troubleshooting
  • Phishing Analysis
Industry Keywords
  • GxP-Regulated
  • Validated Systems
  • Electronic Records
  • Regulated Data Environments
  • Cybersecurity Audits
  • Vendor Risk Assessments
Tools & Technologies
  • Microsoft 365
  • Azure
  • AWS
  • Active Directory
  • Entra ID
  • SIEM
  • Cybersecurity Runbooks
  • Disaster Recovery Plans
  • SOPs
  • Compliance Reviews
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Defense Analyst
Cyber Defense Analyst

TechDigital Group • Cambridge (MA)

On-site
USD 140,000 - 190,000
Senior Information Technology Security Analyst
Senior Information Technology Security Analyst

Jobtailor • Philadelphia

On-site
USD 110,000 - 160,000
Senior Incident Response Analyst
Senior Incident Response Analyst

Jobtailor • Colorado

On-site
USD 120,000 - 180,000
Security Operations Lead
Security Operations Lead

Jobtailor • Pennsylvania

On-site
USD 120,000 - 160,000
Network Security Engineer
Network Security Engineer

Jobtailor • Town of Florida (NY)

Hybrid
USD 90,000 - 130,000
Network Security Engineering
Network Security Engineering

Jobtailor • Town of Florida (NY)

Hybrid
USD 120,000 - 160,000
Staff Corporate Security Engineer
Staff Corporate Security Engineer

Jobtailor • Lehi (UT)

On-site
USD 120,000 - 180,000
Lead, Incident Response – Global CSIRT
Lead, Incident Response – Global CSIRT

Jobtailor • United States

On-site
USD 150,000 - 190,000
Health insurance
Cybersecurity Analyst II
Cybersecurity Analyst II

Jobtailor • Reading

On-site
USD 90,000 - 120,000
Cybersecurity Manager I
Cybersecurity Manager I

Jobtailor • Colorado

On-site
USD 150,000 - 210,000