Skip to content

Defensive Security Analyst

Manages SOC systems to detect, contain, and eradicate threats. Develops detection strategies, performs forensics and hunt operations, requiring SOC experience, scripting skills (Python, PowerShell, Bash), and TS/SCI clearance.

Washington, DCSecurity EngineeringOnsite

About the role

Core Responsibilities

  • Build, run, and own infrastructure and automation to detect, contain, and eradicate security threats.
  • Develop alerting and detection strategies to identify malicious or anomalous behavior.
  • Develop comprehensive and accurate reports and presentations for both technical and executive audiences.
  • Develop new and novel defensive techniques to identify or counteract changes in adversary techniques and tactics.
  • Dissect network, host, memory, and other artifacts originating from multiple operating systems and applications.
  • Perform enterprise-wide operations to uncover sophisticated and undetected threats.
  • Partner closely with other members of the Information Security team to lead changes in the company's network defense posture.
  • Provide expertise in a supporting capacity for incident response activities and digital forensics state preservation, including the capture and preservation of system logs, volatile memory captures, and hard drive (physical or virtual) image captures.
  • Conduct host forensics, network forensics, log analysis, and malware triage in support of hunt operations.
  • Interface with client contact(s) and staff in a constructive and professional manner.
  • Utilize common forensic and incident response tools.

What We Value

  • Knowledge of operating and maintaining a SIEM.
  • Knowledge of cloud architectures, particularly AWS.
  • Experience in penetration testing.
  • Ability to quickly learn new technologies and have an ongoing desire to stay current with the latest technologies.
  • Ability to train others on the use of forensic and incident response techniques and tools.

What We Require

  • TS/SCI Clearance.
  • Established experience in operating in SOC environment, either through relevant experience or qualifications.
  • Experience with programming or scripting languages such as PowerShell, Python, and Bash.

Skills

SIEMAWSPowerShellPythonBashIncident ResponseDigital ForensicsMalware AnalysisLog AnalysisPenetration Testing

Product Security Engineer

Product Security Engineer driving threat modeling, secure code review, open-source security, SDLC tooling, and bug bounty management for Vercel's web platform built on Next.js and Node.js. Requires 5+ years securing web products with strong JavaScript/Node.js and cloud security expertise.

United StatesSecurity EngineeringRemote5+ YOESASTDAST

IT Security Operations Engineer

IT Security Operations Engineer responsible for implementing DLP, email security, endpoint protection, Okta/Google Workspace hardening, automation, compliance evidence collection, and incident response in a hybrid healthcare AI startup.

150k – 190kSan Francisco, CASecurity EngineeringHybrid4+ YOEGoDlp

Security Engineer

Build and maintain security automation pipelines, AI agents, SOAR/SIEM integrations, vulnerability management, and IAM systems for a sports prediction market platform.

150k – 200kNew York, NYSecurity EngineeringOn-site5+ YOECdkIAM

Security Engineer II

Security Engineer II responsible for monitoring security alerts, responding to incidents, administering enterprise security tools, and supporting cloud and identity security initiatives. Requires 3+ years in cybersecurity or related fields with strong scripting and troubleshooting skills.

105k – 150kLos Angeles, CASecurity EngineeringOn-site3+ YOEAWSmacOS

Security Engineer II

Security Engineer II responsible for monitoring and responding to security alerts, administering enterprise security tools, supporting vulnerability and IAM programs, and securing cloud environments. Requires 3+ years in cybersecurity or related fields and scripting experience.

115k – 160kNew York, NYSecurity EngineeringOn-site3+ YOEAWSmacOS