Search jobs > Los Angeles, CA > Cyber security analyst

Sr. Cyber Security Analyst

Konica Minolta
Los Angeles, California, United States
Full-time

Overview

The Sr. Cybersecurity Analyst is expected to possess a high level of knowledge and experience in various security domains and technologies.

This skillset will enable them to work as part of the Security Operations Center (SOC), providing security monitoring and protection services to our SIEM and MEDR customers.

They will be tasked primarily with the analysis of security events, having the responsibility to provide tier 2’ investigation support.

Secondarily, this position will contribute to the lifecycle ownership of managed security services, including new customer onboardings and operational support.

This position will work closely with the Security Operations Center manager, peer analysts, engineers, and other teams within the All Covered / Konica Minolta ecosystem to accomplish these goals.

Please note, the working hours required will be Monday-Friday 12pm-8 : 30pm PT

Responsibilities

  • Lead security incident investigations, conducting in-depth technical analysis (including host and network-based forensics)
  • Evaluate security solutions and monitor various Security blogs, alerts and notifications, RSS feeds and forums in order to keep abreast of the latest security news, attacks, threats, vulnerabilities and exploits
  • Review and analyze data and network traffic from numerous security tools such as full packet captures and security device logs in order to detect traffic anomalies, identify infected systems and determine lateral movement of infections across the network
  • Contribute to incident response, maintaining relevant communication in emails, ticket summaries, analysis and reporting.

Work with Incident Handlers to provide recommendations for remediation of compromised systems and any relevant counter-measures

  • Perform malware analysis, identify areas of persistence on user devices and detect indicators associated with malware or specific Advanced Persistent Threat (APT) techniques
  • Review, create or document standard operating procedures, recommendations, project specific documents and resource guides as needed

Qualifications

  • Minimum 5 years’ experience in the Cyber Security field, with senior level experience analyzing and responding to alerts from a SIEM & EDR platform.
  • 2-3 years’ experience administering & providing operational support in security disciplines (e.g. incident response, threat hunting, investigations, security infrastructure management, or monitoring services)
  • 1+ years experience in content management work (e.g. develop custom detection rules, custom integrations, developing scripts, etc)
  • SentinelOne experience is highly preferred
  • Industry standard information security and incident response certifications (CISSP, GCIA, GCIH, GREM, etc) are a plus.
  • Memberships and participation in relevant professional associations.
  • In-depth knowledge of network intrusion methods, network containment and segregation techniques
  • In-depth knowledge of operating systems (Windows & UNIX, Mac OS X a plus)
  • Expert understanding of TCP / IP networking, routing protocols and full packet capture analysis
  • In-depth network security expertise including firewall, IDS and IPS
  • Experience building baselines of network activity for use in anomaly detection
  • Experience with proactive threat hunting techniques and concepts in an enterprise environment.
  • Experience with reviewing raw log files, data correlation, and analysis (i.e. firewall, network flow, IDS, system logs)
  • Knowledge of typical behaviors of both malware and malware authors
  • Static and dynamic malware analysis experience
  • Experience using and writing custom signatures for IDS
  • Digital forensics experience focusing on Windows systems from a malware perspective
  • Knowledge of enterprise systems and infrastructure
  • Proven understanding of log parsing and analysis at a large scale with data clustering tools or techniques
  • Experience with a scripting language such as Perl, Ruby, Python, and BASH

People skills :

  • Ability to coordinate, work with and gain the trust of business stakeholders, technical resources, and third-party vendors.
  • Able to work under pressure in time critical situations.

Process Skills :

  • Strong attention to detail in conducting forensic analysis combined with an ability to accurately record full documentation in support of the investigation.
  • Detailed knowledge of current international best practices in the incident response arena.

Communication Skills :

  • Excellent written and verbal communication skills are required.
  • Ability to communicate effectively with business representatives in explaining impacts and strategies and where necessary, in layman's terms.
  • 1 day ago
Related jobs
Promoted
The Aerospace Corporation
Los Angeles, California

As the operator of a federally funded research and development center (FFRDC), we are broadly engaged across all aspects of space— delivering innovative solutions that span satellite, launch, ground, and cyber systems for defense, civil and commercial customers. The Defense Systems Group (DSG) provi...

Promoted
SpaceX
Hawthorne, California

Bachelor's degree in cybersecurity, computer science, engineering, information technology, or other STEM discipline; OR 7+ years of information security, networking and/or systems engineering experience in lieu of a degree. SECURITY ANALYST (DETECTION AND INCIDENT RESPONSE). As a SpaceX Security Ana...

Promoted
Northrop Grumman Corp. (AU)
Redondo Beach, California

Principal Industrial Security Analyst / Sr. The CPSO interacts with internal and external customers or Government security officials in performance of security duties. Working knowledge of the Intelligence Community Directives (ICD's), National Industrial Security Program Operating Manual (NISPOM), ...

Promoted
CACI International Inc.
El Segundo, California

Cyber Security Analyst, MDT, Senior Principal. Coordinates enterprise incident response efforts, including command and control functions, in response to cyber security incidents. Working knowledge of current COTS Cybersecurity technologies. Experience working in a Cybersecurity Operations Center env...

Promoted
Northrop Grumman Corp. (AU)
Redondo Beach, California

Principal Industrial Security Analyst / Sr. Principal Industrial Security Analyst (level 3). Principal Industrial Security Analyst (level 4). Principal Industrial Security Analyst (level 3):. ...

Konica Minolta
Los Angeles, California

Evaluate security solutions and monitor various Security blogs, alerts and notifications, RSS feeds and forums in order to keep abreast of the latest security news, attacks, threats, vulnerabilities and exploits. This skillset will enable them to work as part of the Security Operations Center (SOC),...

Mantek Solutions
Los Angeles, California

Must fully understand various technology platforms/systems: network security, database security, application security, physical security, colocations, security operations center (SOC). JPC - 6910 - Sr Cyber Security Engineer [Los Angeles, CA, 90. IT PM: Five (5) years performing IT, IS Audit, Cybers...

SpaceX
Hawthorne, California

Bachelor's degree in cybersecurity, computer science, engineering, information technology, or other STEM discipline; OR 7+ years of information security, networking and/or systems engineering experience in lieu of a degree. SECURITY ANALYST (DETECTION AND INCIDENT RESPONSE). As a SpaceX Security Ana...

LinQuest
El Segundo, California

Coordinate changes or modifications with the system-level Information System Security Manager (ISSM), Security Control Assessor (SCA), and/or the Wing Cybersecurity office. During system development, reports security incidents or vulnerabilities to the system-level ISSM and wing cybersecurity office...

RTX (Formerly Raytheon Technologies)
El Segundo, California

The selected candidate will be a project management representative for physical and technical security for construction/revisions of classified spaces. The selected candidate must be an experienced locksmith handling duties that range from installing high security devices, rekeying, master key syste...