Senior Security Analyst-Falcon NG SIEM experience

1 month, 1 week ago
Full-time
Senior
Cybersecurity
Ivanti

Ivanti

Ivanti provides automated solutions that discover, repair, and secure devices across various locations, enabling employees to work efficiently and securely from anywhere.

Internet Software & Services
1K-5K
Founded 1985
$26M raised

Description

  • Lead and execute security incident response across Ivanti’s global footprint.
  • Identify known and unknown threats using threat hunting, threat intelligence, and attacker TTP analysis.
  • Investigate external attacks, insider threats, and digital forensic cases, and communicate findings through detailed reporting.
  • Analyze security logs from SIEM, EDR, DLP, email security, and cloud platforms including Azure, AWS, and GCP.
  • Develop detection content and automation to improve security response efficiency.
  • Provide actionable risk mitigation recommendations and documentation to strengthen security posture.
  • Collaborate with Senior Threat Analysts, the Incident Response Manager, and the Security Architecture team to coordinate and resolve security events.
  • Share knowledge and mentor team members to build collective cyber defense expertise.

Requirements

  • Bachelor’s degree in Information Systems, MIS, Computer Science, Cybersecurity, or a related technical field.
  • 7+ years of experience in cybersecurity incident response, threat hunting, SOC operations, and/or digital forensics in enterprise-scale environments.
  • Hands-on experience with Mimecast and Falcon NG-SIEM is required.
  • Experience with SIEM, EDR, DLP, email security gateways, cloud security platforms, forensic toolsets, and network security solutions.
  • Expertise with Windows, Linux, and/or Mac operating systems at the filesystem and artifact level.
  • Strong familiarity with the MITRE ATT&CK framework and mapping real-world attacks to attacker techniques.
  • In-depth understanding of anomalous activity, lateral movement, living-off-the-land techniques, and common attacker tradecraft.
  • Excellent organizational skills, time management, and ability to work in dynamic, fast-paced environments.
  • Exceptional written and verbal communication skills for technical and non-technical stakeholders.
  • Proven ability to collaborate with internal and external teams to research and implement countermeasures against threats.
  • Industry-recognized certifications such as SANS (GCIH, GCFA, GNFA), CompTIA (CySA+, Security+), EC-Council (CEH), or Blue Team certifications are a plus.

Benefits

  • Remote-friendly work with flexible schedules.
  • Competitive compensation and total rewards.
  • Health, wellness, and financial plans tailored for employees and their families.
  • Access to best-in-class learning tools and development programs.
  • Work with global, diverse teams across 23+ countries.
  • An equity and belonging culture that values every voice.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Entry-Level Assessor (Assessment & RMF Track)

Avint 11-50 IT Services

Avint is hiring an Entry-Level Cybersecurity Analyst to support security assessment, documentation, and continuous monitoring for critical systems in the HACS program and federal cybersecurity operations.

Cybersecurity
20 hours, 20 minutes ago

Senior Cyber Security Analyst (Remote within WA, ID, OR)

Banner Bank 1K-5K Banks

Senior Cyber Security Analyst at a financial services organization, leading enterprise security efforts across on-premises and Azure environments to protect systems, data, and operations.

Active Directory Azure Encryption Network Security
22 hours, 39 minutes ago

Cybersecurity Analyst (SOC Analyst / Threat Monitoring & Response)

Avint 11-50 IT Services

Avint is hiring a Cybersecurity Analyst to support the HACS program by monitoring security events, analyzing threats, and assisting with incident response for critical systems.

Cybersecurity SIEM
23 hours, 5 minutes ago

Trust and Safety Operations Analyst

Calendly 251-1K Internet Software & Services

Calendly is hiring an Operations Analyst to support Trust & Safety operations within Product Operations, helping manage escalations, investigations, and review workflows that reduce risk and improve response quality across the platform.

Confluence JIRA
1 day, 21 hours ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers