5,220 Threat Detection jobs in the United States
Information Security Analyst, Threat Detection
Posted 7 days ago
Job Viewed
Job Description
Key Responsibilities:
- Monitor security information and event management (SIEM) systems for suspicious activity.
- Investigate and respond to security incidents, including malware infections and unauthorized access.
- Perform vulnerability assessments and penetration testing.
- Develop and maintain security policies, procedures, and documentation.
- Implement and manage security tools and technologies.
- Provide security awareness training to employees.
- Collaborate with IT teams to implement security controls.
- Stay abreast of the latest cybersecurity threats and trends.
This fully remote position offers the flexibility to work from anywhere within the US, fostering a truly independent and productive work environment.
Information Security Analyst - Threat Detection
Posted 7 days ago
Job Viewed
Job Description
Responsibilities:
- Monitor security alerts and logs from various systems, including SIEM, IDS/IPS, and firewalls.
- Investigate security incidents, determine their scope and impact, and implement containment and eradication measures.
- Analyze malware and identify indicators of compromise (IOCs).
- Develop and refine threat detection rules and signatures.
- Conduct vulnerability assessments and penetration testing.
- Participate in security incident response planning and execution.
- Provide timely and accurate reports on security threats and incidents.
- Stay up-to-date with the latest cybersecurity threats, vulnerabilities, and mitigation techniques.
- Collaborate with IT teams to implement security best practices and remediation efforts.
- Contribute to the development and improvement of security policies and procedures.
Qualifications:
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field.
- Minimum of 3 years of experience in information security, with a focus on threat detection and incident response.
- Strong knowledge of cybersecurity frameworks, protocols, and technologies.
- Hands-on experience with SIEM tools (e.g., Splunk, QRadar), IDS/IPS, firewalls, and endpoint security solutions.
- Proficiency in scripting languages (e.g., Python, PowerShell) for security automation.
- Excellent analytical, problem-solving, and critical thinking skills.
- Strong communication and interpersonal skills, with the ability to explain complex security issues clearly.
- Relevant security certifications such as CISSP, CEH, CompTIA Security+ are a plus.
- Ability to work effectively both independently and as part of a team in a hybrid work environment.
- Willingness to be on-call for critical security incidents as needed.
This is an excellent opportunity to contribute to a robust security posture within a growing organization. Join our team and help safeguard critical information systems in Milwaukee, Wisconsin, US .
Senior Information Security Analyst - Threat Detection
Posted 2 days ago
Job Viewed
Job Description
Responsibilities:
- Monitor security alerts and logs from various sources (SIEM, IDS/IPS, endpoint detection) to identify potential security incidents.
- Conduct in-depth analysis of security events, determine root causes, and assess the impact of threats.
- Perform proactive threat hunting to discover advanced persistent threats (APTs) and other sophisticated attacks.
- Develop and refine security detection rules, correlation logic, and incident response playbooks.
- Lead and coordinate incident response activities, including containment, eradication, and recovery efforts.
- Analyze malware, forensic artifacts, and network traffic to understand attacker methodologies.
- Collaborate with IT operations and other teams to implement security controls and remediation measures.
- Stay current with the latest threat intelligence, vulnerabilities, and attack vectors.
- Prepare detailed incident reports and post-mortem analyses.
- Contribute to the development and improvement of the organization's overall security posture.
- Bachelor's degree in Computer Science, Information Security, or a related field. Relevant certifications (e.g., CISSP, GIAC GCIH, GCFA) are highly desirable.
- Minimum of 5 years of experience in information security, with a strong focus on threat detection, incident response, and security operations (SOC).
- Proficiency with Security Information and Event Management (SIEM) systems (e.g., Splunk, QRadar, LogRhythm).
- Hands-on experience with intrusion detection/prevention systems (IDS/IPS), endpoint detection and response (EDR) tools, and network security monitoring.
- Strong understanding of cyber threat landscapes, attacker tactics, techniques, and procedures (TTPs).
- Experience with scripting languages (e.g., Python, PowerShell) for automation is a plus.
- Excellent analytical, problem-solving, and critical thinking skills.
- Strong written and verbal communication skills, with the ability to clearly articulate complex security issues.
- Ability to work independently and manage critical incidents effectively in a remote setting.
- Team-oriented mindset and a collaborative spirit.
Senior Information Security Analyst - Threat Detection
Posted 4 days ago
Job Viewed
Job Description
Key Responsibilities:
- Monitor security systems and networks for potential threats and anomalies.
- Analyze security alerts and logs from various sources (SIEM, firewalls, IDPS, endpoint detection) to identify and investigate security incidents.
- Respond to security incidents in a timely and effective manner, following established incident response plans.
- Perform in-depth forensic analysis of security breaches to determine root causes and scope of impact.
- Develop and implement new security detection rules, alerts, and monitoring capabilities.
- Stay current with the latest threat intelligence, attack vectors, and emerging security vulnerabilities.
- Conduct vulnerability assessments and penetration testing to identify and remediate security weaknesses.
- Collaborate with IT operations and development teams to implement security controls and best practices.
- Contribute to the development and maintenance of security policies, standards, and procedures.
- Provide technical guidance and support to junior security analysts.
- Prepare detailed reports on security incidents, vulnerabilities, and mitigation efforts.
- Assist in security awareness training and education for all employees.
Qualifications:
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field.
- Minimum of 5-7 years of experience in information security, with a focus on security operations, threat analysis, and incident response.
- In-depth knowledge of network protocols, operating systems (Windows, Linux), and security technologies (firewalls, IDS/IPS, VPNs, SIEM).
- Hands-on experience with SIEM platforms (e.g., Splunk, QRadar, LogRhythm) and EDR/XDR solutions.
- Familiarity with scripting languages (e.g., Python, PowerShell) for automation of security tasks.
- Strong analytical and problem-solving skills with excellent attention to detail.
- Relevant security certifications such as CISSP, CEH, GIAC, or CompTIA Security+ are highly desirable.
- Excellent communication and interpersonal skills, with the ability to explain complex security issues clearly.
- Ability to work effectively both independently and as part of a team in a high-pressure environment.
- Experience with cloud security principles (AWS, Azure, GCP) is a plus.
Senior Information Security Analyst - Threat Detection
Posted 4 days ago
Job Viewed
Job Description
Responsibilities:
- Monitor security systems, including SIEM, IDS/IPS, firewalls, and endpoint protection solutions, for potential security incidents.
- Analyze security alerts and logs to identify and investigate suspicious activities and threats.
- Lead and coordinate the response to security incidents, including containment, eradication, and recovery.
- Develop and refine threat detection rules and signatures.
- Conduct in-depth forensic analysis of security breaches.
- Stay up-to-date with the latest cybersecurity threats, vulnerabilities, and attack vectors.
- Develop and maintain incident response playbooks and procedures.
- Participate in threat hunting activities to proactively identify potential security risks.
- Collaborate with IT operations and development teams to implement security best practices and remediation measures.
- Provide regular reports on security incidents, threats, and the effectiveness of security controls.
- Conduct security awareness training for employees.
Qualifications:
- Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or a related field.
- Minimum of 5 years of experience in information security, with a focus on security operations, threat detection, and incident response.
- Hands-on experience with SIEM tools (e.g., Splunk, QRadar, ELK Stack), EDR solutions, and other security monitoring technologies.
- Strong understanding of networking protocols, operating systems (Windows, Linux), and common attack vectors.
- Proficiency in analyzing log data and performing forensic investigations.
- Experience with scripting languages (e.g., Python, PowerShell) for automation is a plus.
- Excellent analytical, problem-solving, and critical thinking skills.
- Strong communication and interpersonal skills, with the ability to work effectively in a remote team.
- Relevant certifications such as CISSP, GCIH, or CEH are highly desirable.
Lead Information Security Analyst - Threat Detection
Posted 4 days ago
Job Viewed
Job Description
Responsibilities:
- Lead the detection, analysis, and response to cyber security incidents, including malware, intrusions, and unauthorized access.
- Develop, implement, and maintain advanced threat detection strategies and security monitoring tools (e.g., SIEM, IDS/IPS, EDR).
- Proactively hunt for emerging threats and vulnerabilities within client environments.
- Analyze security alerts and logs to identify potential security breaches and anomalous activities.
- Conduct in-depth forensic investigations to determine the root cause and scope of security incidents.
- Develop and refine incident response playbooks and procedures.
- Provide expert guidance and mentorship to junior security analysts.
- Collaborate with cross-functional teams, including IT, legal, and communications, during incident response.
- Stay current with the latest threat intelligence, attack vectors, and cybersecurity best practices.
- Contribute to the continuous improvement of the SOC's capabilities and operational efficiency.
- Prepare detailed incident reports and present findings to management and stakeholders.
- Bachelor's degree in Computer Science, Information Security, Cybersecurity, or a related field. Master's degree preferred.
- Minimum of 7 years of experience in information security, with a strong focus on security operations, threat detection, and incident response.
- Proven expertise in using SIEM tools (e.g., Splunk, QRadar, LogRhythm), IDS/IPS, and endpoint detection and response (EDR) solutions.
- Strong understanding of network protocols, operating systems (Windows, Linux), and common attack methodologies.
- Experience with forensic analysis techniques and tools.
- Excellent analytical, problem-solving, and critical-thinking skills.
- Exceptional communication and interpersonal skills, with the ability to effectively articulate technical information to diverse audiences.
- Relevant security certifications such as CISSP, GIAC (GCFA, GCIH), or OSCP are highly desirable.
- Ability to work independently and manage multiple priorities in a demanding, fully remote environment.
Senior Information Security Analyst - Threat Detection
Posted 5 days ago
Job Viewed
Job Description
Key responsibilities include:
- Monitoring security alerts and logs from various sources, including SIEM, IDS/IPS, EDR, and firewalls, to detect potential security incidents.
- Performing in-depth analysis of security events, identifying root causes, and determining the scope and impact of threats.
- Developing and implementing new threat detection rules, signatures, and use cases to enhance security monitoring capabilities.
- Conducting threat hunting exercises to proactively identify and mitigate emerging cyber threats.
- Participating in incident response activities, including containment, eradication, and recovery efforts.
- Analyzing malware samples and understanding attacker tactics, techniques, and procedures (TTPs).
- Collaborating with IT operations, engineering, and other teams to implement security controls and remediate vulnerabilities.
- Staying current with the latest cybersecurity threats, vulnerabilities, and mitigation strategies.
- Generating regular reports on security incidents, threat trends, and the effectiveness of security controls.
- Contributing to the development and improvement of security policies, procedures, and documentation.
- Mentoring junior security analysts and sharing knowledge within the security team.
The ideal candidate will hold a Bachelor's degree in Computer Science, Cybersecurity, or a related field, or possess equivalent practical experience. A minimum of 5 years of experience in information security, with a strong focus on threat detection and incident response, is required. Hands-on experience with SIEM platforms (e.g., Splunk, QRadar), EDR solutions, and network security monitoring tools is essential. Proficiency in scripting languages (e.g., Python, PowerShell) for automation is highly desirable. Strong analytical and problem-solving skills, coupled with excellent communication abilities, are crucial. Relevant security certifications such as CISSP, GIAC, or CEH are a plus. This is a fantastic opportunity to contribute to the security posture of a leading organization within Des Moines, Iowa, US , with the advantage of a hybrid work environment.
Be The First To Know
About the latest Threat detection Jobs in United States !
Senior Information Security Analyst - Threat Detection
Posted 5 days ago
Job Viewed
Job Description
Responsibilities:
- Monitor security alerts and events from various security tools (SIEM, IDS/IPS, endpoint protection).
- Conduct in-depth analysis of security incidents to determine scope, impact, and root cause.
- Develop and refine threat detection rules and signatures.
- Perform forensic analysis of compromised systems to identify indicators of compromise (IOCs) and attack vectors.
- Respond to security incidents, orchestrating containment, eradication, and recovery efforts.
- Stay abreast of the latest cyber threats, vulnerabilities, and attack methodologies.
- Develop and maintain incident response playbooks and procedures.
- Collaborate with IT teams to implement security enhancements and remediation actions.
- Conduct vulnerability assessments and penetration testing (as needed).
- Provide regular reporting on security posture, incident trends, and mitigation efforts.
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field.
- Minimum of 7 years of experience in information security, with a strong focus on security operations, threat intelligence, and incident response.
- Proficiency with SIEM platforms (e.g., Splunk, QRadar, ArcSight) and other security tools.
- Deep understanding of network protocols, operating systems, and common attack techniques.
- Experience with digital forensics and malware analysis.
- Relevant security certifications (e.g., CISSP, GCIA, GCIH) are highly desirable.
- Excellent analytical, problem-solving, and decision-making skills.
- Strong communication and collaboration abilities, suitable for a hybrid work setting.
- Ability to work under pressure during critical security incidents.
- Familiarity with cloud security concepts (AWS, Azure) is a plus.
- Must be able to work in a hybrid model at our **New York City, New York, US** location.
Senior Information Security Analyst - Threat Detection
Posted 7 days ago
Job Viewed
Job Description
Responsibilities:
- Develop and maintain comprehensive threat detection rules, signatures, and behavioral analytics using SIEM (Security Information and Event Management) platforms, IDS/IPS (Intrusion Detection/Prevention Systems), and EDR (Endpoint Detection and Response) solutions.
- Continuously monitor security logs and alerts from various sources to identify suspicious activities and potential security breaches.
- Perform in-depth analysis of security incidents, including root cause analysis, impact assessment, and remediation recommendations.
- Lead and coordinate incident response activities, ensuring timely and effective resolution of security events according to established playbooks and protocols.
- Collaborate with cross-functional teams, including IT operations, development, and legal, to implement security controls and respond to incidents.
- Stay abreast of the latest cybersecurity threats, vulnerabilities, and industry best practices, and proactively adapt security measures accordingly.
- Create and maintain detailed documentation of security policies, procedures, incident response plans, and forensic reports.
- Mentor junior security analysts and contribute to the overall growth and development of the security team.
- Participate in security awareness training initiatives and help foster a security-conscious culture within the organization.
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field; Master's degree preferred.
- 5+ years of experience in information security, with a strong focus on threat detection, incident response, and SIEM technologies.
- In-depth knowledge of various attack vectors, threat actors, and defensive security measures.
- Proficiency with SIEM tools (e.g., Splunk, QRadar, ELK Stack), IDS/IPS, EDR, firewalls, and other security technologies.
- Experience with scripting languages (e.g., Python, PowerShell) for automation of security tasks is a plus.
- Strong analytical, problem-solving, and critical thinking skills.
- Excellent communication and interpersonal skills, with the ability to explain complex technical issues to both technical and non-technical audiences.
- Relevant security certifications (e.g., CISSP, GIAC, CompTIA Security+) are highly desirable.
- Proven ability to work independently and manage multiple priorities in a fast-paced, remote environment.
Senior Information Security Analyst - Threat Detection
Posted 7 days ago
Job Viewed
Job Description
As a Senior Analyst, you will be responsible for developing and implementing sophisticated threat detection rules and use cases within our SIEM and other security tools. You will analyze security alerts, investigate suspicious activities, and perform forensic analysis to determine the scope and impact of potential breaches. This role involves staying abreast of the latest cybersecurity threats, vulnerabilities, and mitigation techniques, as well as contributing to the continuous improvement of our security posture. You will collaborate closely with incident response teams, IT operations, and other stakeholders to ensure rapid and effective mitigation of security incidents.
Key Responsibilities:
- Develop, implement, and tune advanced threat detection rules and signatures within SIEM and other security platforms.
- Monitor security alerts and events to identify potential security incidents and anomalies.
- Conduct in-depth investigations into suspected security breaches and cyberattacks.
- Perform forensic analysis to understand attack vectors, scope, and impact.
- Leverage threat intelligence feeds and research to proactively identify emerging threats.
- Collaborate with incident response teams to coordinate containment and remediation efforts.
- Develop and maintain documentation for security policies, procedures, and detection methodologies.
- Participate in security awareness training and promote best practices within the organization.
- Stay current with the latest cybersecurity trends, threats, and technologies.
- Contribute to the continuous improvement of security monitoring and detection capabilities.
- Mentor junior security analysts and provide technical guidance.
Required Qualifications:
- Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or a related field; relevant certifications (e.g., CISSP, GIAC) are highly desirable.
- Minimum of 5 years of experience in information security, with a strong focus on threat detection, analysis, and incident response.
- Proven experience with SIEM platforms (e.g., Splunk, QRadar, LogRhythm) and security analytics tools.
- In-depth knowledge of common attack frameworks (e.g., MITRE ATT&CK) and cyber kill chain methodologies.
- Strong understanding of network protocols, operating systems (Windows, Linux), and cloud security concepts.
- Experience with scripting languages (e.g., Python, PowerShell) for automation is a plus.
- Excellent analytical, problem-solving, and critical thinking skills.
- Strong communication and collaboration skills, with the ability to explain technical concepts to non-technical audiences.
- Ability to work independently and manage multiple priorities in a fast-paced remote environment.
This position is based out of Minneapolis, Minnesota, US , but offers a fully remote work arrangement. If you are a passionate cybersecurity professional dedicated to protecting organizations from evolving threats, we encourage you to apply.