Security Operations Analyst

Anduril Industries

Seattle (WA)

On-site

USD 129,000 - 171,000

Full time

3 hours ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Equity grants
Comprehensive benefits
Health coverage

Job summary

Anduril Industries is seeking a Senior SecOps Analyst to monitor and respond to threats against critical defense technologies. You will lead detections, respond to security events, and mentor junior analysts within the Detection and Response team.

Strong collaboration with stakeholders and incident command experience are key components of the role. The position requires experience with security monitoring, Python automation, SIEMs, and cloud/workload security across Windows, Linux, and MacOS,

Qualifications

  • Experience in security monitoring, log analysis, and detection engineering within large data sets across endpoint, network, and various log sources.
  • Experience in Python development, contributing to a shared codebase for SOC automation.
  • Must have experience with one or more SIEM languages (SPL, KQL, SQL).
  • Experience conducting analysis in a data lake environment.
  • Broad security knowledge across endpoint, network, identity, app, and cloud.
  • Knowledge of attacker TTPs across Windows, Linux, MacOS, AWS/Azure, etc.

Responsibilities

  • Triage and respond to alerts/incidents across phishing, endpoints, cloud infrastructure and SaaS apps.
  • Build and optimize detection signatures, playbooks, and automation using detection-as-code.
  • Lead the feedback loop to reduce false positives and tune alerts.
  • Participate in threat modeling with cross-functional partners for cloud, mobile, endpoints, etc.
  • Conduct threat hunting and data baselines to identify anomalous patterns.
  • Participate in on-call rotations and incident response investigations for senior leadership alignment.

Skills

Python development
SIEM languages
Threat hunting
Data lake analysis
Incident response
Communication

Job description

Anduril Industries is a defense technology company with a mission to transform U.S. and allied military capabilities with advanced technology. By bringing the expertise, technology, and business model of the 21st century’s most innovative companies to the defense industry, Anduril is changing how military systems are designed, built and sold. Anduril’s family of systems is powered by Lattice OS, an AI-powered operating system that turns thousands of data streams into a realtime, 3D command and control center. As the world enters an era of strategic competition, Anduril is committed to bringing cutting-edge autonomy, AI, computer vision, sensor fusion, and networking technology to the military in months, not years.

About The Team

Anduril's Detection and Response team is looking for a Security Operations Analyst to be the watchtower for Anduril's critical defense technologies. As a SecOps Analyst on the detection and response team, you'll be responsible for monitoring and responding to adversarial activity while helping incorporate key detection feedback loops with the detection engineering team. As a Senior SecOps Analyst, you will serve as an incident commander alongside other senior analysts. When not responding to threats, you'll be asking questions of our data sets, conducting threat hunting and data normalization operations across the organization to understand user behavior and identify anomalies.

What You'll Do
  • Triage and respond to alerts / incidents covering multiple disciplines including, but not limited to, phishing, endpoints, cloud infrastructure and services, and SaaS applications
  • Build and optimize tailored detection signatures, response playbooks, and response automation using detection-as-code principles
  • As the frontline of DNR, you will lead the feedback loop for detections, ensuring alerts are fine tuned to reduce false positives
  • Participate in threat modeling scenarios with cross-functional partners to understand weaknesses across Cloud, Mobile, Endpoints, and other environments incorporating findings into security controls and/or detection signatures
  • Organize and conduct threat hunting and data baselines to identify anomalous patterns in data
  • Participate in an on-call rotation responding to security events and conducting incident response investigations while effectively communicating findings to key stakeholders. As a Senior SecOps Analyst, you will serve as an incident commander as necessary.
  • Proactively collaborate with a wide range of stakeholders, guiding detection and response maturity of key worlds, leading incidents and large-scale data baselines, and being responsible with mentoring and guiding junior analysts.
Required Qualifications
  • Experience in security monitoring, log analysis, and detection engineering within large data sets across endpoint, network, and a wide variety of application log sources
  • Experience in Python development, specifically contributing to a shared codebase used for automating SOC operations
  • Must have experience with one or more SIEM languages (SPL, KQL, SQL)
  • Experience conducting analysis in a data lake environment
  • Broad range of practical security knowledge across the spectrum of endpoint, network, identity, application, and cloud infrastructure
  • Knowledge of attacker tactics, techniques, and procedures (TTPs) across Windows, Linux, MacOS, AWS/Azure, etc.
  • Strong communication skills and experience collaborating with internal and external stakeholders
  • Must be able to obtain and hold a U.S. Top Secret security clearance
Preferred Qualifications
  • Experience conducting incident response in the Cloud (AWS, Azure, GCP)
  • Digital Forensics and/or reverse engineering experience is a plus!
US Salary Range

$129,000—$171,000 USD

Benefits

The salary range for this role is an estimate based on a wide range of compensation factors, inclusive of base salary only. Actual salary offer may vary based on (but not limited to) work experience, education and/or training, critical skills, and/or business considerations.

  • Highly competitive equity grants are included in the majority of full time offers; and are considered part of Anduril's total compensation package.
  • Additionally, Anduril offers top-tier benefits for full-time employees, including:
  • At Anduril, we invest in our people.
  • Our comprehensive, competitive benefits package (available at little to no cost to employees) ensures you’re supported in health, recovery, and whatever comes next.
  • For more information, Explore Our Benefits.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Operations Analyst
Security Operations Analyst

Anduril Industries • Boston (MA)

On-site
USD 129,000 - 171,000
Equity grants
Comprehensive benefits
Security Operations Analyst
Security Operations Analyst

Slope • Seattle (WA)

On-site
USD 129,000 - 171,000
Security Operations Analyst
Security Operations Analyst

Slope • Boston (MA)

On-site
USD 129,000 - 171,000
Top-tier benefits
Equity grants
Security Operations Analyst
Security Operations Analyst

Slope • Washington

On-site
USD 129,000 - 171,000
Equity grants
Comprehensive benefits
Security Operations Analyst
Security Operations Analyst

Slope • Costa Mesa (CA)

On-site
USD 129,000 - 171,000
Equity grants
Comprehensive benefits
Health benefits
Security Operations Analyst
Security Operations Analyst

AI Chopping Block • Costa Mesa (CA), Northern (KY)

Hybrid
USD 129,000 - 171,000
Security Operations Analyst
Security Operations Analyst

Anduril Industries • Washington

On-site
USD 129,000 - 171,000
Equity grants
Competitive benefits
Security Operations Analyst
Security Operations Analyst

Anduril Industries • Costa Mesa (CA)

On-site
USD 129,000 - 171,000
Equity incentives
Comprehensive benefits package
Senior Insider Threat Analyst
Senior Insider Threat Analyst

Anduril Industries • Reston (VA)

On-site
USD 166,000 - 220,000
Equity grants
Full benefits
Equal opportunity employer
Senior Insider Threat Analyst
Senior Insider Threat Analyst

Slope • Reston (VA)

On-site
USD 166,000 - 220,000
Comprehensive benefits package