empty

Security Analyst II

Deepwatch

Job Description

Posted on: 
November 12, 2024

Summary and company overview

Security Analyst II

Location: Tampa, FL (onsite)

Shift: 9am-5pm est Monday-Friday

Deepwatch is looking for a highly motivated, self-driven, technical analyst dedicated to making a difference in global security by protecting organizations against the most advanced attackers in the world. Our Security Operations Center offers opportunities to expand your skill set through a wide variety of experiences, detecting and responding to incidents as they occur in real-time for our customers. You'll be an integral part of supporting our customers by understanding their bespoke environment, needs and challenges. You will be playing a key role in supporting some of the top organizations in the world, and have the opportunity to develop your skills by working with the best responders in the industry.

Who We Are

Our core values drive everything we do at Deepwatch, including our approach to tackling tough cyber challenges. We seek out tenacious individuals who are passionate about solving complex problems and protecting our customers. At Deepwatch, every decision, process, and hire is made with a focus on improving our cybersecurity solutions and delivering an exceptional experience for our customers. By embracing our values, we create a culture of excellence that is dedicated to empowering our team members to explore their potential, expand their skill sets, and achieve their career aspirations, which is supported by our unique annual professional development benefit.

Deepwatch recognition includes:

  • 2023, 2022 and 2021 Great Place to Work® Certified
  • 2023 and 2022 Forbes America’s Best Startup Employers
  • 2023 and 2022 Fortress Cybersecurity Award
  • 2023 $180M Series C investment from Springcoast Capital Partners, Splunk Ventures, and Vista Credit Partners of Vista Equity Partners
  • 2022 Cigna Healthy Workforce Silver Designation
  • 2022 Cybersecurity Excellence Award for MDR

Responsibilities

  • Support incident handling processes across multiple platforms and security technologies including Windows, Linux and macOS
  • Provide in depth analysis from escalated requests originating from Security Analyst 1
  • Validate suspicious events by performing investigations using SIEM and SOAR technologies, leveraging Deepwatch proprietary tooling, intelligence and OSINT, TTPs and IOCs
  • Identify gaps in customer environments, data ingested or configuration errors which reduce telemetry quality
  • Work with customer and leadership to surface and resolve concerns
  • Provide support to Security Analyst I including coaching and training as necessary
  • Leverage your knowledge of Alert Triage, SOC Operations, and Defense in Depth (DiD) to contribute to projects for overall customer success
  • Produce high-quality written and verbal communications, recommendations, and findings to customer management in a timely manner
  • Surface opportunities for improvement in the squad and for the customer and be a change agent for measurably improving our customer security posture and experience
  • Continue to sharpen your skills and capabilities on the job, and through the Deepwatch development program

Job Requirements

Required Qualifications:

  • Have a strong understanding of cyber security principles, concepts and practices including the ability to perform a complete and thorough incident investigation and triage with very limited support from Analyst III’s
  • Know your way around SIEM platforms (Splunk preferred), how to perform queries and leverage various log sources to perform investigations
  • Operate autonomously requiring minimal support on investigative actions
  • Competency with in-depth header analysis, hashes and Windows/macOS/Linux logs
  • Demonstrate the ability to pivot to other log sources, cloud systems or consoles to perform a comprehensive analysis from multiple data sources.
  • Have a basic understanding of modern EDR, email security and cloud identity platforms
  • Strong written and verbal communication skills including the ability to write well-written reports and analysis that’s thorough, accurate and complete.

Preferred Qualifications:

  • Support Analyst I and learn from Analyst III when you need helping hand
  • A desire to support others and uplift the program and team through updating training materials and SOPs
  • Sec+, CySA, CEH, GSEC, or equivalent certification preferred

Additional commentary

NA

Summary and company overview

Security Analyst II

Location: Tampa, FL (onsite)

Shift: 9am-5pm est Monday-Friday

Deepwatch is looking for a highly motivated, self-driven, technical analyst dedicated to making a difference in global security by protecting organizations against the most advanced attackers in the world. Our Security Operations Center offers opportunities to expand your skill set through a wide variety of experiences, detecting and responding to incidents as they occur in real-time for our customers. You'll be an integral part of supporting our customers by understanding their bespoke environment, needs and challenges. You will be playing a key role in supporting some of the top organizations in the world, and have the opportunity to develop your skills by working with the best responders in the industry.

Who We Are

Our core values drive everything we do at Deepwatch, including our approach to tackling tough cyber challenges. We seek out tenacious individuals who are passionate about solving complex problems and protecting our customers. At Deepwatch, every decision, process, and hire is made with a focus on improving our cybersecurity solutions and delivering an exceptional experience for our customers. By embracing our values, we create a culture of excellence that is dedicated to empowering our team members to explore their potential, expand their skill sets, and achieve their career aspirations, which is supported by our unique annual professional development benefit.

Deepwatch recognition includes:

  • 2023, 2022 and 2021 Great Place to Work® Certified
  • 2023 and 2022 Forbes America’s Best Startup Employers
  • 2023 and 2022 Fortress Cybersecurity Award
  • 2023 $180M Series C investment from Springcoast Capital Partners, Splunk Ventures, and Vista Credit Partners of Vista Equity Partners
  • 2022 Cigna Healthy Workforce Silver Designation
  • 2022 Cybersecurity Excellence Award for MDR
Apply now