Cyber Threat Analyst

Cellebrite

Washington (District of Columbia)

Hybrid

USD 120,000 - 160,000

Full time

4 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Cellebrite in the Greater Washington, DC area is seeking a Cyber Threat Analyst to join our Threat Ops team. You will monitor security events, respond to incidents, tune SIEM alerts, and develop detection rules to strengthen our defensive posture.

The role involves threat hunting, vulnerability management, and reporting to IT administrators and security leaders, with exposure to multi-cloud environments (Azure, AWS) and a focus on automation and incident response plans.

Qualifications

  • Minimum 5 years experience as a Tier 2 Cyber Threat Analyst.
  • Certifications: Security+ or CEH.
  • Proven experience with SIEM (Rules, Parsing, Correlation, Investigation).
  • Proven experience with Playbook implementation (e.g. Palo Alto XSOAR).
  • Proven experience with Threat Hunting.
  • Familiarity with Cyber Kill Chain and MITRE ATT&CK.
  • Experienced with multi-cloud platforms (Azure, AWS).
  • Strong knowledge of the TCP/IP topology, network protocols, active directory, and File permissions.
  • Experienced with network and security systems (network device, security device, endpoint devices, EDR, FW, OS- Windows, Linux, Mac).
  • Scripting: PowerShell, Python.

Responsibilities

  • Monitor and respond to security events, execute response related actions including documentation, manage the event to its fast resolution.
  • Continuously monitor SIEM alerts to improve and tune the identification and response rule.
  • Create new rules based on trending cyber-attack methods and business threats strategy.
  • Threat Hunting – perform hunting activities.
  • Vulnerability Management – Generate reports using vulnerability scanning tools and collaborate with stakeholders to ensure progress.
  • Generate reports for IT administrators, business managers, and security leaders to evaluate the efficiency of the security policies and controls.
  • Advise and implement necessary changes required to counter the attack or improve security standards.
  • Document incidents to contribute to incident response and disaster recovery plans.
  • Perform internal and external security audits.

Skills

Cybersecurity expertise
Strong communication
Team player
Attention to detail
US Citizenship

Education

Security+ or CEH

Tools

SIEM
Palo Alto XSOAR
Playbooks
Threat Hunting tooling
Azure
AWS
EDR

Job description

Company Overview:Cellebrite’s (Nasdaq: CLBT) mission is to enable its global customers to protect and save lives by enhancing digital investigations and intelligence gathering to accelerate justice in communities around the world. Cellebrite’s AI-powered Digital Investigation Platform enables customers to lawfully access, collect, analyze and share digital evidence in legally sanctioned investigations while preserving data privacy. Thousands of public safety organizations, intelligence agencies and businesses rely on Cellebrite’s digital forensic and investigative solutions—available via cloud, on-premises and hybrid deployments—to close cases faster and safeguard communities.To learn more, visit us at www.cellebrite.com, https://investors.cellebrite.com/investors and find us on social media @Cellebrite.Position Overview:We are expanding our Threat Ops team and looking for a Cyber Threat Analyst to join our first line of defense. Our team investigates and responds to security incidents, creates alerting rules, administrates various security products and is responsible for integration and automation security projects.Responsibilities:Monitor and respond to security events, execute response related actions including documentation, manage the event to its fast resolution.Continuously monitor SIEM alerts to improve and tune the identification and response rule. Create new rules based on trending cyber-attack methods and business threats strategy.Threat Hunting – perform hunting activitiesVulnerability Management – Generate reports using vulnerability scanning tools and collaborate with stakeholders to ensure progressGenerate reports for IT administrators, business managers, and security leaders to evaluate the efficiency of the security policies and controls. Advise and implement necessary changes required to counter the attack or improve security standards. This to include automating processes.Document incidents to contribute to incident response and disaster recovery plans.Perform internal and external security audits.Requirements:Minimum 5 years experience as a Tier 2 Cyber Threat AnalystCertifications: Security+ or CEHProven experience with SIEM (Rules, Parsing, Correlation, Investigation) - MUST.Proven experience with Playbook implementation (e.g. Palo Alto XSOAR) - MUST.Proven experience with Threat Hunting - MUST.Familiarity with methodologies, such as Cyber Kill Chain and MITRE ATT&CK. – MUSTExperienced with multi-cloud platforms (Azure, AWS) – MUST.Strong knowledge of the TCP/IP topology, network protocols, active directory, and File permissions.Experienced with network and security systems (network device, security device, endpoint devices, EDR, FW, OS- Windows, Linux, Mac) - AdvantageExperience with writing incident response reports.Scripting: Powershell, Python -AdvantageExcellent communication skills to engage with stakeholders at all levels.Team player, very organized and structured, attention to detailMust be a US Citizen with the ability to obtain a clearance.This is a Remote position, but prefer candidates in the Eastern timezoneCellebrite is an equal opportunity/affirmative action employer. All qualified applicants will receive consideration for employment without regard to sex, gender identity, sexual orientation, race, color, religion, national origin, disability, protected Veteran status, age, or any other characteristic protected by law.Office Location:Greater Washington, DC Area
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Threat Analyst - SIEM & Threat Hunting
Cyber Threat Analyst - SIEM & Threat Hunting

Cellebrite • Tysons (VA)

On-site
USD 120,000 - 170,000
Remote Cyber Threat Analyst — SIEM & Threat Hunting
Remote Cyber Threat Analyst — SIEM & Threat Hunting

Cellebrite • Washington

Hybrid
USD 120,000 - 160,000
Technical Support SaaS Representative
Technical Support SaaS Representative

Cellebrite • Tysons (VA)

On-site
USD 65,000 - 90,000
Remote work
Federal Account Executive - USAF & Army
Federal Account Executive - USAF & Army

Cellebrite • Tysons (VA)

On-site
USD 100,000 - 150,000
Senior MDR Analyst
Senior MDR Analyst

Blackpoint Cyber • United States

On-site
USD 110,000 - 170,000
Health insurance
Vision insurance
Dental insurance
+2
Cyber Threat Analyst
Cyber Threat Analyst

CACI International Inc • Chantilly (VA)

On-site
USD 113,000 - 238,000
Cyber Threat Analyst II
Cyber Threat Analyst II

NewGen Technologies • Arlington (VA)

On-site
USD 90,000 - 120,000
Cyber Threat Intelligence Analyst
Cyber Threat Intelligence Analyst

Check Point Software Technologies • Dallas (TX)

On-site
USD 65,000 - 90,000
Senior Security Analyst
Senior Security Analyst

Yardi Systems • Santa Barbara (CA)

Hybrid
USD 97,000 - 110,000
Flexible work arrangements
100% paid employee medical premiums
Company profit-sharing plan
Threat Analyst
Threat Analyst

Cymertek Corporation • San Antonio (TX)

On-site
USD 90,000 - 130,000
Excellent Salaries
Flexible Schedule
Paid Leave
+1