Senior Security Analyst: Threat Hunting & DFIR Lead

Blacksky Holdings LLC

Seattle (WA)

Remote

USD 80,000 - 90,000

Full time

3 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Medical, dental, vision
401(k) and Roth
Employee stock purchase program
Flexible Spending Accounts
Paid time off

Job summary

BlackSky is seeking a Senior Security Analyst to monitor, analyze, and respond to security events across our enterprise. You will perform continuous monitoring, DFIR, and threat hunting using SIEM, CTI, and a range of security tools.

The role supports compliance and security maturity across Linux, Windows, and cloud environments, with a focus on detecting adversaries, reducing risk, and enabling secure product development. Remote work within the US is possible.

Qualifications

  • Seven years of security analyst and DFIR experience is required.
  • Experience with security monitoring, forensics, and incident response.
  • Ability to document processes and results for peer review.
  • Experience with Windows/Linux security environments.

Responsibilities

  • Perform security monitoring and DFIR across enterprise environments.
  • Review CTI and apply insights to secure the environment.
  • Conduct threat hunting and document procedures.
  • Analyze data from logs, network traffic, and SaaS security tools.
  • Support vulnerability management and remediation with product owners.

Skills

Security analysis
DFIR
Threat hunting
Documentation
Linux security

Education

CISSP
GCIH
CHFI
GCFE
GCFA
GCSA
GCPN

Tools

EDR
Nessus
CrowdStrike XDR
OpenSCAP
Cisco Duo

Job description

BlackSky is seeking a Senior Security Analyst to monitor, analyze, and respond to security events across our enterprise. You will perform continuous monitoring, DFIR, and threat hunting using SIEM, CTI, and a range of security tools.

The role supports compliance and security maturity across Linux, Windows, and cloud environments, with a focus on detecting adversaries, reducing risk, and enabling secure product development. Remote work within the US is possible.

Get your free, confidential resume review.

or drag and drop your file here.