Senior Security Operations Analyst

1 month, 1 week ago
Full-time
Mid Level
DevOps and Infrastructure
Extend

Extend

Extend is a technology company that offers powerful product and shipping protection solutions to merchants, helping them generate revenue and enhance customer loyalty. Their modern and cost-effective services provide a win-win situation for both busine...

Air Freight & Logistics
251-1K
Founded 2019

Description

  • Monitor and triage security alerts from tools such as SentinelOne and Wiz.
  • Lead end-to-end investigations to identify, contain, and remediate threats and incidents.
  • Identify and assess vulnerabilities in infrastructure and code, working with development and cross-functional teams to resolve issues.
  • Contribute to the detection lifecycle by modeling attacker behavior, writing and testing detections, and improving false positive rates and detection speed.
  • Support data quality, telemetry onboarding, response playbooks, and threat validation across the business.
  • Apply secure configuration baselines and best practices aligned to CIS Benchmarks, NIST, vendor hardening guides, and compliance standards.
  • Correlate endpoint and infrastructure telemetry to identify emerging threats and operationalize intelligence into detections and response playbooks.
  • Support GRC activities including control mapping, audit evidence collection, remediation tracking, and policy documentation.
  • Work with engineering and business teams to promote security best practices, communicate risk, and support mitigation planning and execution.

Requirements

  • 3+ years of experience in a Security Analyst or Security Operations role.
  • 3+ years of experience with AWS CloudFormation or another infrastructure-as-code system such as Terraform.
  • 3+ years of experience or certification in AWS serverless technologies, including API Gateway, Lambda, S3, and DynamoDB.
  • One or more preferred certifications: CISSP, CCSP, GIAC (GCIH, GCIA, GMON, GCED, GCFA, or GREM), cloud security certification, or equivalent experience.
  • Hands-on proficiency with SIEM, CNAPP, EDR, vulnerability management tools, and detection engineering strategies.
  • Proficiency with AI technologies, related threat landscapes, and mitigation strategies, including agentic workflows such as AWS Bedrock or MCP-based workflows.
  • Working knowledge of AWS IAM security roles and responsibilities.
  • Experience with observability services and tooling such as Coralogix, CloudWatch, and OpenTelemetry.
  • Ability to perform in a high-energy environment with dynamic responsibilities and priorities.
  • Experience with AWS Cloud Development Kit (CDK) is preferred.
  • Experience with Mastra AI is preferred.

Benefits

  • Expected base salary of $157,000 to $182,000 per year.
  • Full medical, dental, and vision benefits.
  • Stock/equity in an early-stage startup.
  • Generous, flexible paid time off policy.
  • 401(k) with financial guidance from Morgan Stanley.
  • Collaborative and supportive team environment.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Risk Analyst

Apogee Global RMS Professional Services

Apogee Global RMS is seeking contract Risk Analysts to research and produce analytical intelligence products for its Rogue Risk Analysis Group, supporting client advisories, briefings, and thought leadership across the firm's Nexus of Risk framework.

6 hours, 3 minutes ago

Entry-Level Assessor (Assessment & RMF Track)

Avint 11-50 IT Services

Avint is hiring an Entry-Level Cybersecurity Analyst to support security assessment, documentation, and continuous monitoring for critical systems in the HACS program and federal cybersecurity operations.

Cybersecurity
21 hours, 43 minutes ago

Cyber Threat Researcher

UltraViolet Cyber 501-1000 Computer and Network Security

UltraViolet Cyber is hiring a remote Cyber Threat Researcher to join its Threat Intelligence & Detection Engineering team and help defend customer environments through threat hunting, detection engineering, and threat intelligence analysis.

CrowdStrike Cybersecurity Elasticsearch PowerShell Python SIEM SOC
1 day, 4 hours ago

Associate Cyber Threat Researcher

UltraViolet Cyber 501-1000 Computer and Network Security

UltraViolet Cyber is hiring a remote Associate Cyber Threat Researcher to support its Threat Intelligence & Detection Engineering team by hunting threats, developing detections, and helping customers strengthen defenses against modern cyber attacks.

CrowdStrike Cybersecurity Elasticsearch PowerShell Python SIEM
1 day, 4 hours ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers