Cherokee Federal logo
Cherokee Federal

Building. Solving. Serving.

Cybersecurity Analyst

Security AnalystSecurity AnalystFull TimeRemoteSeniorTeam 5,001-10,000Since 1969H1B No SponsorCompany SiteLinkedIn

Location

United States

Posted

11 days ago

Salary

$153K - $160K / year

Seniority

Senior

Bachelor Degree3 yrs expEnglishAWSCloudCyber SecuritySplunk

Job Description

Cybersecurity Analyst

Cherokee Federal

• Monitor and analyze security events utilizing Splunk Enterprise Security (ES). • Build, maintain, and tune Splunk searches, correlation rules, alerts, and dashboards. • Conduct incident response activities from detection through containment, eradication, recovery, and closure. • Investigate endpoint security incidents utilizing Microsoft Defender for Endpoint. • Perform endpoint policy management and incident investigations. • Assess AWS cloud security telemetry utilizing GuardDuty, Security Hub, and related cloud security services. • Identify threats, vulnerabilities, suspicious activity, and cloud misconfigurations. • Execute alert triage, incident scoping, and escalation activities according to established playbooks. • Recommend updates and improvements to operational procedures and incident response playbooks. • Support threat hunting activities and detection engineering initiatives aligned to MITRE ATT&CK methodologies. • Perform phishing investigations, alert enrichment, and forensic review activities. • Conduct root cause analysis and document corrective actions following security incidents. • Track incidents and operational tasks utilizing case management systems. • Participate in tabletop exercises and operational readiness activities. • Collaborate with Security Operations teams, Incident Response personnel, and federal stakeholders. • Prepare reports and communicate findings to technical and non-technical audiences. • Perform other job-related duties as assigned.

Job Requirements

  • Three (3) to five (5) years of experience in cybersecurity operations, SOC analysis, incident response, or related security disciplines.
  • Demonstrated hands-on experience with Splunk Enterprise Security, including search development, dashboard creation, and correlation rule tuning.
  • Experience utilizing Microsoft Defender for Endpoint for security investigations and policy management.
  • Working knowledge of AWS cloud security technologies, including GuardDuty, Security Hub, or equivalent tools.
  • Proven experience managing incidents through the complete incident response lifecycle.
  • Working knowledge of MITRE ATT&CK framework and common threat actor tactics, techniques, and procedures.
  • Familiarity with incident response methodologies and frameworks such as NIST 800-61.
  • Strong analytical, investigative, and problem-solving capabilities.
  • Excellent written and verbal communication skills.
  • Experience supporting federal government customers or highly regulated environments.
  • Ability to work independently while collaborating effectively with cross-functional teams.

Benefits

  • Medical
  • Dental
  • Vision
  • 401(k)
  • Paid Time Off
  • Life Insurance
  • Disability Coverage
  • other benefits as provided

Related Job Pages

More Security Analyst Jobs

Deutsche Telekom IT Solutions logo

Security Analyst

Deutsche Telekom IT Solutions

As Hungary’s most attractive employer in 2025 (according to Randstad’s representative survey), Deutsche Telekom IT Solutions is a subsidiary of the Deutsche Telekom Group. The company provides a wide portfolio of IT and telecommunications services with more than 5300 employees. We have hundreds of large customers, corporations in Germany and in other European countries. DT-ITS received the Best in Educational Cooperation award from HIPA in 2019, acknowledged as the Most Ethical Multinational Company in 2019. The company continuously develops its four sites in Budapest, Debrecen, Pécs and Szeged and is looking for skilled IT professionals to join its team.

Security Analyst11 days ago
Full TimeRemoteTeam 5,001-10,000

Role Description You don’t want to cry when you hear about WannaCry? Loki isn’t only a German firegod to you? You know what Meltdown/Spectre are, maybe you even know what cryptojacking is? Then the following position is for you! If you join us, your daily tasks will be as follows: - Detection, analysis and management of security incidents - Making and evaluating reports - Monitoring the customer’s environment - Tracking IT security issues (vulnerabilities, 0day exploits, malware) and making/fitting the rules for detecting them in the client's environment - Change and incident management - Analysis of malicious code in sandbox Qualifications - If you love to learn and you have a need for continuous development - If you know network models (OSI, TCP/IP) - If you know how operating systems work (Windows, Linux) - You speak English on business level - You are fluent in Hungarian - It's not a problem if you have to spend about one-third of your working hours in shifts - You have basic knowledge of script languages: python, bash, JS and so on - You are familiar with the logs of security systems: proxy, AV, WAF, IDS, Webserver, DNS - You've done PCAP analysis Benefits - Please be informed that our remote working possibility is only available within Hungary due to European taxation regulation. Company Description As Hungary’s most attractive employer in 2025 (according to Randstad’s representative survey), Deutsche Telekom IT Solutions is a subsidiary of the Deutsche Telekom Group. The company provides a wide portfolio of IT and telecommunications services with more than 5300 employees. We have hundreds of large customers, corporations in Germany and in other European countries. DT-ITS received the Best in Educational Cooperation award from HIPA in 2019, acknowledged as the Most Ethical Multinational Company in 2019. The company continuously develops its four sites in Budapest, Debrecen, Pécs and Szeged and is looking for skilled IT professionals to join its team.

Hungary
CMG Financial logo

Senior IT GRC Analyst

CMG Financial

Based in San Ramon, California, CMG Financial is a privately held banking and mortgage firm with operations in most U.S. states. An equal housing lender, CMG Fi

Security Analyst11 days ago

Role Description The Senior IT GRC Analyst leads policy development and audit execution within CMG's IT Governance, Risk, and Compliance program, with particular emphasis on CMG's upcoming SOC 2 readiness effort. This role works closely with the GRC team and the broader IT department to plan and execute audit engagements, maintain the policy framework, and manage auditor relationships. The Senior IT GRC Analyst operates with a high degree of autonomy and is expected to navigate ambiguity in a regulated environment. - Lead CMG's SOC 2 readiness assessment, including scope definition, gap analysis, and control design, in partnership with the IT GRC Manager. - Serve as a point of contact during audit engagements and regulatory exams. - Develop, maintain, and update IT policies, standards, and procedures to align with NIST CSF and other applicable regulatory requirements. - Plan and execute audit activities, including scheduling, control walkthroughs, evidence gathering, and findings documentation. - Identify control gaps, coordinate remediation planning with control owners, tracking findings and remediation status through the risk register. - Provide guidance to other GRC team members and IT leadership on audit and policy matters. - Research regulatory and framework changes relevant to mortgage lending and financial services, and translate them into policy updates. - Contribute to the ongoing development and improvement of GRC processes and tooling. Qualifications - Bachelor's degree in Information Technology, Cybersecurity, or a related field (equivalent experience considered). - 5+ years of experience in IT audit, compliance, or GRC in an enterprise IT environment. - Demonstrated experience managing SOC 2 audit cycles (Type I or Type II) from scoping through remediation. - Direct experience in financial services, mortgage lending, or related regulated industries, with working knowledge of applicable regulations (GLBA, CFPB, NYDFS). - Strong working knowledge of relevant IT compliance frameworks, such as NIST CSF, ISO 27001, or SOX. - Strong policy writing and documentation skills. - Ability to work independently amid ambiguity, exercising sound judgment on scope and prioritization. - Excellent written and verbal communication skills, with the ability to explain technical and compliance matters to varied audiences. - Relevant certifications preferred: CISA, CRISC, or GRCP. Requirements - Direct Reports: N/A Benefits - This role is a remote position that is currently allocated for candidates within geographic regions that do not currently require base wage disclosure. - The compensation range for this position will be provided upon request. - Due to their geographic location, residents of the states of CA & CO, and for NY are excluded from this role at this time. Physical and Environmental Conditions This role operates in an ADA compliant office environment, utilizing typical office equipment and tasks including computer work. The position may involve partial stationary positions and moving throughout the day. Flexibility to work overtime to meet project deadlines is required.

United States

Role Description Vigilant is hiring a Security Analyst to join our Security Services team. In this position, you will ensure that our first line of response is assessing information security events and incidents across Vigilant's client environments. In this role, you will collaborate and use problem-solving skills as you work among a team of skilled analysts to address complex problems and add value to the organization and our clients. Security Analysts will be responsible for delivering regular scheduled security briefings to our clients. Primary Responsibilities: - The SOC Analyst provides incident detection and response services for our CyberDNA managed Network Security Monitoring service. - This role performs and participates in proactive hunts to identify anomalous activity indicative of active compromise, previous compromise, misconfigurations, or other notable observations to support the protection of our customers' environments. - When not hunting, this role triages and investigates alerts generated from multiple detection technologies & takes necessary action to identify, scope, and guide customers to a rapid and successful remediation. - You will use your knowledge of Information Security to monitor SIEM and logging environments for security events and alerts to potential (or active) threats, intrusions, and/or compromises. - You will work to understand the global threat landscape by working with Vigilant Cyber Threat Intelligence team to maintain awareness. - You will assist with containment of threats and remediation of environment during or after an incident. - You will leverage your knowledge to write comprehensive reports of incident investigations. - Engage with other teams to ensure detections are working as intended. - Provide feedback to the Threat Detection team regarding the logic of existing detections to reduce false-positive rates, and align them more consistently with their intent. - Ensure that security-relevant data is flowing to appropriate systems. - Collaborate across teams for training, development opportunities, and service improvement. - Ensure that documentation, workflows, and processes remain accurate and up-to-date. Qualifications - Expert at analyzing and dissecting PCAP data to validate security events, interpret network traffic, and extract indicators. - Skilled with data collection, log analysis tools, pattern recognition, and managing dashboards. - Baseline knowledge of network protocols, network analysis tools, and general network architecture. - You have a passion for learning. - You possess a demonstrated ability to speak with people with varying knowledge in IT Security concepts and can tailor your message to the audience. - Excellent interpersonal skills and ability to see things through the customer's eyes. - Tremendous attention to detail. - Eligible to work in the United States without company sponsorship. - Bachelor's degree in computer science, information security or related discipline is required or equivalent work experience. Requirements - Prior SOC/CSIRT experience in a 24x7 watch desk environment preferred. - Experience using industry standard EDR tools and platforms including (SentinelOne, Carbon Black, Crowdstrike, Defender ATP). - Strong knowledge of attacker tools, malware families, and known threat actor/group TTPs. - You have a deep understanding of Incident Response framework, root cause analysis. - Capability to look at a process to identify opportunities for cycle-time reduction. - Experience hunting for unknown threats, as well as tracking existing campaigns and adversaries. - Experience providing managed NSM services to multiple customers is a plus. - Hands-on experience with firewalls, routers, and other security appliances. Benefits - This role leverages a flex-schedule that may involve non-traditional working hours and after-hours on-call as needed. - Must be able to work from a Vigilant office (Cincinnati, OH) or remotely from a home office, depending on the candidate's skills and experience. - This position is eligible to US citizens physically residing in the US; any offer of employment is contingent upon background, drug screen, and reference checks.

United States

Role Description Join a dynamic team as a GRC Analyst, where your expertise in IT compliance and risk management directly contributes to organizational success. This remote opportunity is ideal for professionals driven by curiosity, critical thinking, and independence. You'll play a pivotal role in supporting SOX compliance, User Access Reviews, and IT General Controls, while working in a fast-paced, growth-focused environment that rewards initiative and innovation. - Lead and execute SOX compliance activities to ensure regulatory adherence - Conduct thorough User Access Reviews (UARs) across IT systems and applications - Perform comprehensive IT General Controls (ITGC) testing and reviews - Support general IT compliance, governance, risk, and controls initiatives - Identify, investigate, and resolve potential compliance issues proactively - Collaborate with cross-functional teams to implement best-practice controls - Challenge assumptions and drive process improvements through critical analysis Qualifications - Demonstrated experience with SOX compliance activities - Hands-on expertise in User Access Reviews and ITGC testing/reviews - Strong background in IT Compliance, Governance, Risk, and Controls - Superior analytical and problem-solving skills - Ability to work independently with minimal supervision - Proactive, inquisitive mindset-comfortable asking clarifying questions and investigating issues Requirements - Direct IT Compliance experience (strongly preferred over pure audit backgrounds) - Solid understanding of risk, controls, and governance processes - Candidates with audit backgrounds considered if they display strong compliance acumen Benefits - 100% remote work-enjoy flexibility and work-life balance - Exposure to high-impact projects and evolving technologies - Collaborative culture that values curiosity, autonomy, and critical thought - Opportunities for professional growth in IT Governance, Risk, and Compliance

United States