Tier 3 Security Event Monitoring Lead Analyst
Cyber Security Cyber Risk Posted: 10-Mar-2023
Alexandria, Virginia, United States
Arlington, Virginia, United States
Mclean, Virginia, United States
Rosslyn, Virginia, United States
Washington Dc, Virginia, United States
Work you'll do
The Deloitte Security Operations team is responsible for detecting and remediating cyber threats across the internal global Deloitte network. We are seeking a Threat Hunt/Lead Cyber Security Analyst to join our world-class Global Security Operations Center (GSOC) and will primarily be responsible to lead the threat hunting initiatives. This new hire lead analyst will also be the main escalation point for sophisticated security incidents.
- Identify patterns/outliers within large data sets that match threat actor TTPs, post compromise behavior, and otherwise unusual activity
- Create and modify security SIEM dashboards to clearly identify scope of findings, or monitor activity
- Provide expert analysis, investigative support of large scale and complex security incidents, and in many cases identify incidents for which a technical detection may not be available.
- Perform threat hunting, APT detection, and malware analysis/forensics.
- Conduct dynamic and static malware analysis on samples obtained during incident handling or hunt operations in order to identify Indicators of Compromise (IOCs)
- Lead incidents and mentor other team members
- Help and contribute to build and mature the Standard Operating Procedures (SOPs)
The team
Qualifications
- Hands on experience in conducting malware analysis, DFIR, CTI or Threat Hunting investigations
- Familiarity with offensive/defensive strategies
- 5+ years of work experience in security and event monitoring
- Experience interacting with senior leadership
- Proactive Security Risk Mitigation
- Self-motivated to perform security research using open-source tools
- Communication Skills with Internal customer
- Self-Motivated and task oriented
- Experience with alert triage and advanced log analysis
- A deep understanding of industry frameworks and standards (ie, MITRE ATTA&CK)
- Ability to navigate and work effectively across complex, geographically dispersed teams
- Ability to balance requirements and needs from different customers or stakeholders globally across Deloitte while keeping your eye on the big picture
- Hands on experience in integrating, deploying, and configuring security tools
- SANS/GIAC - GCIH, GREM, GCED, GCDA
- Invest in your career growth by providing you with formal and informal development programs
- Empower you to take lead on key projects that may enhance your leadership and team building skills
- Provide you with on-the-job training opportunities
- Give you the opportunity to foster your coaching and mentoring capabilities
- Help you identify and hone your unique strengths
- Connect you with technical & security leads within Deloitte who can become part of your career growth
- Help you embrace leadership opportunities at every step of your career
- 100% Remote
- Competitive pay scale
- Empowered well-being
- Paid time off and collective disconnect holidays
- Competitive medical, dental and vision plans
- Paid parental leave
- Physical and mental wellness programs
- Pension plans and 401(k) for retirement