Senior Security Analyst
Location
United States
Posted
24 days ago
Salary
$40 - $45 / hour
Seniority
Senior
Job Description
Senior Security Analyst
Goldenpick Technologies LLC
Role Description - Identify and Review Firewall Rule Risks: Evaluate existing firewall rules to identify potential risks and vulnerabilities, ensuring the security of the cloud environment. - Remediate Existing Firewall Rules: Address any identified issues with firewall rules, implementing necessary changes or adjustments to enhance security measures. - Provide Development Support for Firewall Rule Automation: Contribute to the development of automated solutions for firewall rule management, streamlining processes and improving efficiency. - Customer Engagement Related to Firewall Rule Requests: Collaborate with customers to understand their firewall rule requirements and provide timely support and solutions as needed. Qualifications - Palo Alto Firewall experience - AlgoSec experience - Cloud Security experience - Security Architect experience - Firewall rule/policy compliance and governance experience - Firewall rule analysis and remediation experience - Communication skills for team and customer engagement - Team player - Splunk - Leadership skills - Basic coding capabilities
Related Guides
Related Categories
Related Job Pages
More Security Analyst Jobs
Associate Security Analyst
VALCE Talent SolutionsIT Talent, HeadHunting, Nearshore. Helping clients to augment IT delivery capabilities
• Monitor security alerts and analyze suspicious activity • Investigate phishing and impersonation attacks • Collaborate with experienced security professionals • Protect organizations from cyber threats
Cyber Security Analyst
SmartestEnergyA people-powered energy company, empowering a greener generation.
• Act as a Subject Matter Expert in identifying, assessing, and mitigating cyber risk across the organisation’s technology estate. • Conduct security audits and review system architectures. • Investigate incidents and drive remediation plans to ensure security, resilience, and compliance. • Collaborate closely with IT teams and external partners to enhance overall security posture.
• Monitorar, analisar e responder à eventos de segurança cibernética. • Identificação e investigação de potenciais incidentes. • Uso de ferramentas de detecção e análise de ameaças. • Colaboração com equipes globais de TI e Segurança da Informação. • Documentar investigações, incidentes e ações realizadas. • Contribuir para melhoria contínua de regras de detecção e processos de monitoramento.
Role Description Join a highly skilled and motivated team of Cyber Security Professionals tasked with protecting Coretek and its customers. The Cyber Security Analyst Level 1 (SOC Analyst L1) is an entry-level role responsible for the initial detection, triage, and response to security alerts. This includes: - Monitoring security tools - Performing basic analysis to identify false positives - Following predefined playbooks for initial response - Escalating complex or high-priority incidents to Level 2 analysts with detailed documentation Analysts will leverage SIEM/SOAR platforms, cyber case management, and supplementary tools to investigate, contain, and remediate cyber security incidents. The role requires a drive to learn and grow as the industry and Coretek evolve rapidly. Coretek recognizes candidates may lack some skills for this unique service provider role and will train and develop the right fit. Desire to learn and collaborate within a team is essential. Skills from other disciplines demonstrate adaptability and are welcome. Formal education or self-taught backgrounds are valued. Structured training and on-the-job experience will prepare analysts for the complex requirements and fast-paced environment of a service provider. Analysts must adapt to industry changes. Qualifications - Familiarity with SIEM (e.g., Elastic, Splunk, QRadar), firewalls, IDS/IPS, and endpoint tools - Basic knowledge of networking like TCP/IP, DNS, VPN, and protocols (HTTP, FTP) - Awareness of common threats (phishing, malware, DDoS) and attack vectors - Ability to triage alerts, separating false positives from real threats - Skill in following playbooks and SOPs for initial response and remediation - Strong attention to detail for monitoring events and spotting anomalies - Clear documentation of incidents, timestamped for audits or escalations - Effective communication to report findings and escalate to Level 2 - Team collaboration, especially in incident scenarios - Handle multiple tasks in a high-pressure, dynamic environment - Willingness for 24/7 shifts, including nights and weekends - Sense of urgency and duty in incident response - Composure under pressure during active incidents Requirements - Monitor alerts from SIEM, firewalls, IDS/IPS, and other systems to spot incidents - Triage alerts by severity, impact, and urgency using set criteria - Collect initial alert details like source, target, timestamp, and logs - Use playbooks and SOPs for preliminary analysis to check for false positives or escalation needs - Perform containment actions per playbooks, such as blocking IPs or isolating systems - Verify remediation effectiveness and document actions with timestamps - Collaborate with teams to solve blockers innovatively - Escalate advanced incidents based on severity, impact, or complexity thresholds - Provide detailed logs, analysis, and context for smooth handoff to Level 2 - Notify Level 2 or response teams quickly, noting urgency and risks - Document incidents accurately per SOC standards, including alerts and outcomes - Keep records organized, timestamped, and accessible for audits - Update supervisors and Level 2 on status, key findings, and actions needed Benefits - Structured training and on-the-job experience Shift Specifics - 7 a.m. - 7 p.m. Mon-Tues-Wed - 7 a.m. - 7 p.m. Sun-Mon-Tues every third or 4th week Education and Training - Degree in cybersecurity, IT, related field preferred, or equivalent experience - Entry-level certs like CompTIA Security+, Cisco CCNA, or equivalent experience - Security certifications desired


