PitchMeAI
Jobs via Dice

Security Analyst

Jobs via Dice · United States

  • Hybrid
  • Full-time
  • $95,000 / year
  • United States
Tailored resumekeyword-matched to this role.
Hiring managerwe find who's hiring.
Intro emaildrafted to reach them directly.

Job highlights

  • Analyze security events across multiple platforms.
  • Investigate and report on security incidents.
  • Improve threat detection and reduce false positives.
  • Hunt for threats using TTPs.
  • Collaborate with engineering and SOC teams.

About the role

Security Analyst

Refulgent Technologies Inc. is seeking a Security Analyst to join their team. This is a remote position. In this role, you will be responsible for continuously reviewing and correlating security event data from various sources like SIEM, EDR, IDS/IPS, and threat intelligence to identify complex attack patterns, emerging threats, and security incidents. You will perform deep-dive analysis of suspicious activity, validate incidents, determine root cause and impact, and escalate critical incidents with detailed context to Tier 3 when necessary. Your responsibilities will also include creating detailed incident reports, timelines, and post-incident summaries, contributing to lessons-learned documentation and recommendations for remediation and preventative measures. You will investigate user-reported phishing, malware infections, and potential policy violations, advising users and teams on containment and recovery actions. Additionally, you will recommend updates to SOC playbooks and workflows based on investigations, fine-tune detection rules, alert thresholds, and correlation logic to reduce false positives and improve threat coverage. Collaboration with engineering teams to ensure monitoring tools are properly configured and tuned, and integration of new threat intelligence feeds into workflows will be key. You will proactively hunt for threats using up-to-date tactics, techniques, and procedures (TTPs). The role also involves serving as a customer-facing SME, demonstrating capabilities, resolving issues, and selling the value of DIS services. You will document processes, runbooks, and troubleshooting steps related to SOC operations and coordinate with engineering, SOC, and agency staff as needed to meet goals. Other duties as assigned. **Required Skills:**
  • Experience with Security Monitoring and Incident Response.
  • Experience with MITRE ATT&CK framework.
  • Experience with dashboard creation and reporting.
**Preferred Skills:**
  • Experience with the Palo Alto Cortex XSIAM/XDR platform.
  • Knowledge of Linux, network administration, and network design.
  • Experience in administration of firewalls, VPN technology, Active Directory, Intrusion Detection Systems (IDS), and Intrusion Prevention Systems (IPS).
Key skills/competency:
  • Security Analyst
  • Incident Response
  • Security Monitoring
  • MITRE ATT&CK
  • SIEM
  • EDR
  • Threat Intelligence
  • Phishing Investigation
  • SOC Playbooks
  • Palo Alto Cortex XSIAM/XDR

Skills & topics

  • Security Analyst
  • Incident Response
  • Security Monitoring
  • SIEM
  • EDR
  • MITRE ATT&CK
  • Threat Intelligence
  • Cybersecurity
  • Remote
  • Tech Jobs

How to get hired

  • Tailor your resume: Highlight your experience in Security Monitoring, Incident Response, and the MITRE ATT&CK framework.
  • Showcase your skills: Emphasize your experience with SIEM, EDR, and IDS/IPS in your application.
  • Prepare for technical questions: Be ready to discuss your experience with Palo Alto Cortex XSIAM/XDR, Linux, and network administration.
  • Understand the role: Familiarize yourself with SOC operations and incident reporting procedures.
  • Apply through Dice: Ensure your profile is up-to-date on Dice for this opportunity with Refulgent Technologies Inc.

Technical preparation

Practice SIEM and EDR analysis.,Study MITRE ATT&CK TTPs.,Learn Palo Alto Cortex XSIAM/XDR.,Review Linux and network fundamentals.

Behavioral questions

Describe a complex security incident you resolved.,How do you prioritize competing security alerts?,How do you communicate technical findings to non-technical people?,Discuss a time you improved a security process.

Frequently asked questions

What are the primary responsibilities of a Security Analyst at Refulgent Technologies Inc.?
The primary responsibilities of a Security Analyst include reviewing security event data, performing deep-dive analysis of suspicious activity, investigating incidents, creating reports, and recommending improvements to SOC playbooks and detection rules.
Is this a remote Security Analyst position with Refulgent Technologies Inc.?
Yes, the job description explicitly states that this Security Analyst position with Refulgent Technologies Inc. is a remote role.
What specific security tools and frameworks are important for this Security Analyst role?
Key tools and frameworks mentioned include SIEM, EDR, IDS/IPS, threat intelligence sources, and the MITRE ATT&CK framework. Experience with Palo Alto Cortex XSIAM/XDR is preferred.
How does the Security Analyst role contribute to reducing false positives?
The Security Analyst contributes by fine-tuning detection rules, alert thresholds, and correlation logic based on real-world investigations to improve threat coverage and reduce unnecessary alerts.
What are the required versus preferred skills for this Security Analyst job?
Required skills include Security Monitoring, Incident Response, MITRE ATT&CK, and dashboard/reporting experience. Preferred skills include Palo Alto Cortex XSIAM/XDR, Linux, network administration, and firewall/VPN experience.
What kind of reporting is expected from the Security Analyst at Refulgent Technologies Inc.?
The Security Analyst is expected to create detailed incident reports, timelines, post-incident summaries, and contribute to lessons-learned documentation and recommendations.
Does this Security Analyst role involve customer-facing responsibilities?
Yes, the Security Analyst will serve as a customer-facing SME, demonstrating capabilities, resolving issues, and selling the value of DIS services.