Security Analyst: Incident Response & Threat Hunting

Gravity Payments

Boise (ID)

On-site

USD 90,000 - 168,000

Full time

5 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

Profit sharing
Medical coverage
Dental coverage
Vision coverage
401(k) retirement plan
Open PTO after year
Training & mentorship
Disability coverage
Wellness resources

Job summary

Gravity Payments in Boise, Idaho is seeking a Security Analyst to build and operate security across cloud, endpoints, identity, SaaS, and corporate environments. You will triage alerts, respond to incidents on a 24x7 rotation, and hunt for threats that automated detections miss.

This hands-on role emphasizes operational excellence, threat investigations, and building next-gen security tooling, with opportunities to influence SIEM, SOAR, and incident reporting across the organization.

Qualifications

  • Bachelor's degree in cybersecurity, computer science, information technology, or a related field, or an equivalent combination of practical experience, training, and certification.
  • At least 3 years of hands-on experience in security operations, incident response, vulnerability management, systems administration, or related role.
  • Hands-on experience with SIEM and EDR/XDR platforms and with security telemetry from cloud, endpoint, identity, email, and SaaS systems (e.g., CrowdStrike NG-SIEM, AWS CloudTrail, CloudWatch, Security Hub, Okta, Microsoft Entra, Google Workspace).
  • Ability to query, interpret, and correlate logs using SIEM languages; proficient in Python, PowerShell, and shell scripts.
  • Advanced knowledge of Windows, macOS, Linux internals; patching, endpoint hardening, networks, and IAM concepts.
  • Experience with incident triage, containment, threat hunting, phishing analysis, and incident documentation; working knowledge of MITRE ATT&CK.
  • Familiarity with vulnerability management, CVSS, remediation tracking, and SLTs; cloud security practices and PCI DSS/SOC 2 familiarity.
  • On-call rotation experience and strong communications; relevant certifications (e.g., Security+, CySA+, GCIA) preferred.

Responsibilities

  • Monitor, triage, investigate, and disposition security alerts across SIEM, endpoint, cloud, identity, email, SaaS, network, DLP, and FIM sources; participate in 24/7 on‑call rotation.
  • Engineer automation and integrations across the security stack; develop code to orchestrate tools and enhance SOAR playbooks; apply agentic AI with auditability.
  • Investigate incidents, malicious email, fraud signals, insider threats, and data loss; conduct proactive threat hunts and produce incident reports.
  • Build and maintain SaaS, endpoint, and application security posture; support phishing simulations, penetration tests, and remediation tracking.
  • Support PCI DSS and SOC 2 compliance through evidence collection automation and audit interviews.
  • Maintain weekly and quarterly leadership reporting and publish investigation guidance to security channels.
  • Lead investigations end-to-end; advance detections, reduce false positives, and influence future automation.

Job description

Gravity Payments in Boise, Idaho is seeking a Security Analyst to build and operate security across cloud, endpoints, identity, SaaS, and corporate environments. You will triage alerts, respond to incidents on a 24x7 rotation, and hunt for threats that automated detections miss.

This hands-on role emphasizes operational excellence, threat investigations, and building next-gen security tooling, with opportunities to influence SIEM, SOAR, and incident reporting across the organization.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Security Operations Analyst: Incident Response & Detection
Security Operations Analyst: Incident Response & Detection

Nscale • Seattle (WA)

On-site
USD 100,000 - 130,000
Base + bonus + equity
Equity
Flexible paid time off
+2
Security analyst
Security analyst

Gravity Payments • Boise (ID)

On-site
USD 90,000 - 168,000
Profit sharing
Medical coverage
Dental coverage
+6
Senior Threat Detection Engineer
Senior Threat Detection Engineer

CVS Health • Boise (ID)

On-site
USD 171,000 - 284,000
Bonus potential
Equity award program
Comprehensive benefits
+1
Senior Security Analyst: Threat Detection & Response
Senior Security Analyst: Threat Detection & Response

001 Brown & Brown, Inc • Daytona Beach (FL)

On-site
USD 110,000 - 165,000
Health Benefits
ESPP
401k
+3
SOC Analyst: Incident Response & Threat Signals (Hybrid)
SOC Analyst: Incident Response & Threat Signals (Hybrid)

Velocity Technologies • Phoenix (AZ)

Hybrid
USD 71,000 - 126,000
SOC Analyst II - Threat Detection & Incident Response
SOC Analyst II - Threat Detection & Incident Response

LPL Financial LLC • Tempe (AZ)

Hybrid
USD 100,747,000 - 167,998,000
Senior Security Ops Analyst: Incident Response & Threats
Senior Security Ops Analyst: Incident Response & Threats

Solomon Page • Village of Great Neck (NY)

On-site
USD 120,000 - 140,000
Threat Detection & Response Engineer (Remote-friendly)
Threat Detection & Response Engineer (Remote-friendly)

OnePay • United States

Remote
USD 140,000 - 190,000
Stock options
Health benefits from Day 1
401(k) plan with company match
+3
Incident Response Analyst — SOC & Threat Hunting Pro
Incident Response Analyst — SOC & Threat Hunting Pro

Thrive • United States

Remote
USD 70,000 - 100,000
Security Ops Analyst: Incident Response & Threat Hunting
Security Ops Analyst: Incident Response & Threat Hunting

Saronic • San Diego (CA)

On-site
USD 90,000 - 120,000