Cyber Threat Hunter & Incident Response Analyst

Comunidade Metodista

Oceanside (CA)

On-site

USD 90,000 - 100,000

Full time

47 hours ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Kellermeyer Bergensons Services, LLC in Oceanside, CA is seeking a Cyber Security Analyst to monitor, investigate, and respond to security threats across networks, endpoints, and cloud environments. The role emphasizes proactive threat hunting, analytics, and automation to strengthen defenses and improve the security posture.

The position requires hands-on CQL, EDR/XDR, Python/PowerShell scripting, and cloud security experience across Microsoft 365, Azure, and AWS.

Qualifications

  • Hands-on experience using CQL to build queries and dashboards is required
  • EDR/XDR, SIEM, SOAR platforms (CrowdStrike, Microsoft Defender, and similar)
  • Experience with Python or PowerShell scripting for automation and incident enrichment
  • Threat intelligence, vulnerability management, and incident response methodologies
  • Understanding of common threat frameworks (MITRE ATT&CK, Cyber Kill Chain)
  • Knowledge of cloud security operations across Microsoft 365, Azure, and AWS
  • Computer systems, hardware, networks, and modern cloud infrastructures.
  • Analytical and detail-oriented with strong problem-solving ability
  • Self-motivated and dependable, working effectively with minimal supervision
  • Collaborative communicator with cross-departmental awareness
  • Curious and proactive, committed to continuous learning and process improvement
  • Proactive threat hunter, identifying anomalies and emerging risks before escalation
  • Agile and adaptable, adjusting quickly to evolving priorities and threat landscapes

Responsibilities

  • Actively hunt for indicators of compromise (IOCs), suspicious activities, and adversarial behavior across environments using CrowdStrike Falcon and other EDR/XDR platforms.
  • Develop and execute CQL queries and build dashboards to analyze telemetry from Microsoft Defender, CrowdStrike, and related tools.
  • Automate detection, log analysis, and incident response workflows using Python, PowerShell, and SOAR integrations.
  • Monitor environments, endpoints, networks, and cloud services for potential breaches, escalating or remediating as appropriate.
  • Work cross-functionally to investigate incidents, perform root-cause analysis, and implement corrective actions.
  • Collaborate to identify vulnerabilities; validate remediation and patch/configuration compliance to ensure issues are fully resolved.
  • Participate in red/blue team exercises, simulations, and post-incident reviews to identify and reduce areas of vulnerability/exposure and improve readiness.
  • Create and improve security baselines, detection rules, and playbooks to enhance threat visibility and reduce response time.
  • Prepare reports and documentation on incidents, improvements, and overall security posture.
  • Ensure alignment with internal policies, industry standards, and relevant security frameworks.
  • Continuously research and stay informed on emerging attack vectors, vulnerabilities, and adversary techniques to anticipate and mitigate evolving cyber threats.
  • Maintain a proactive, inquisitive, and analytical mindset, actively hunting for anomalies and threats that standard controls may overlook.
  • Collaborate with agile teams to adapt to evolving priorities and threat landscapes.

Skills

CQL queries
EDR/XDR
Python
PowerShell
Threat intel
Vulnerability mgmt
Incident response
MITRE ATT&CK
Cloud security
Analytical mindset
Team collaboration
Threat hunting
Agile mindset

Education

Bachelor's degree in computer-related field
Educational equivalent

Tools

CrowdStrike
Microsoft Defender
SIEM
SOAR platforms
Python
PowerShell

Job description

Kellermeyer Bergensons Services, LLC in Oceanside, CA is seeking a Cyber Security Analyst to monitor, investigate, and respond to security threats across networks, endpoints, and cloud environments. The role emphasizes proactive threat hunting, analytics, and automation to strengthen defenses and improve the security posture.

The position requires hands-on CQL, EDR/XDR, Python/PowerShell scripting, and cloud security experience across Microsoft 365, Azure, and AWS.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cyber Security Analyst at KBS - Kellermeyer Bergensons Services, LLC Oceanside, CA
Cyber Security Analyst at KBS - Kellermeyer Bergensons Services, LLC Oceanside, CA

Comunidade Metodista • Oceanside (CA)

On-site
USD 90,000 - 100,000
Cyber Defense Analyst — Incident Response & Threat Hunting
Cyber Defense Analyst — Incident Response & Threat Hunting

Erias Ventures, LLC • Fort Meade (MD)

On-site
USD 210,000 - 232,000
Above market pay
401k with vesting
Spot bonuses
+12
Threat Hunter & Cybersecurity Incident Response Lead
Threat Hunter & Cybersecurity Incident Response Lead

ELECTROSOFT • Columbus (OH)

On-site
USD 150,000 - 160,000
Cyber Threat Hunter: Proactive Defense & Analytics
Cyber Threat Hunter: Proactive Defense & Analytics

ASM Research, An Accenture Federal Services Company • Providence (RI)

On-site
USD 94,000 - 150,000
Cybersecurity Incident Response Analyst
Cybersecurity Incident Response Analyst

MFI Technologies Incorporated • New York (NY)

On-site
USD 75,000 - 100,000
Cyber Threat Response & Detection Specialist
Cyber Threat Response & Detection Specialist

Age-Solutions • Columbus (OH)

On-site
USD 99,000 - 121,000
26 Days Paid Leave
Performance Bonuses
401(k) with Match
+6
Cyber Threat Detection & Incident Response Analyst
Cyber Threat Detection & Incident Response Analyst

Esmcorp • Columbus (OH)

On-site
USD 90,000 - 130,000
Cyber Defense Analyst — Incident Response & Threat Hunting
Cyber Defense Analyst — Incident Response & Threat Hunting

Kyndryl • Dallas (TX)

Hybrid
USD 63,000 - 114,000
Be Well program
Hybrid work model
Learning and certification support
Remote SOC Analyst: Threat Hunting & Incident Response
Remote SOC Analyst: Threat Hunting & Incident Response

Huntress • United States

On-site
USD 100,000 - 125,000
Remote work
Paid time off
Parental leave 12 weeks
+8
Senior Cyber Defense Analyst — Automation & Threat Hunting
Senior Cyber Defense Analyst — Automation & Threat Hunting

CME Group • Chicago (IL)

On-site
USD 104,000 - 173,000