This is a remote position.
Job Description (JD) – Cyber Security Analyst / Security Engineer
Job Title: Cyber Security Analyst / Security Engineer
Experience: 6-10 Years (Customizable)
Department: Information Security / SOC
Job Summary
We are seeking a skilled and proactive Cyber Security Analyst to strengthen our organization's security posture through effective monitoring, threat hunting, endpoint protection, email security, cloud security, vulnerability management, and compliance activities. The ideal candidate will have hands-on experience with CrowdStrike Falcon EDR, Check Point Harmony Email Security, SIEM platforms, cloud security technologies, and security governance frameworks.
Key Responsibilities
Endpoint Security & Threat Hunting
- Manage and administer CrowdStrike Falcon EDR platform.
- Perform proactive threat hunting and security investigations.
- Analyze endpoint alerts, incidents, and suspicious activities.
- Conduct root cause analysis and coordinate incident response activities.
- Monitor and respond to malware, ransomware, and advanced threats.
Email Security Management
- Manage Check Point Harmony Email Security solutions.
- Configure and maintain email security controls including DMARC, SPF, and DKIM.
- Investigate phishing, spoofing, BEC, and email-borne threats.
- Implement email security policies and best practices.
SIEM & Security Monitoring
- Monitor security events and alerts through SIEM platforms.
- Analyze logs from various security tools and infrastructure components.
- Develop and fine-tune alerting and correlation rules.
- Investigate security incidents and escalate critical threats as required.
Cloud Security
- Implement and maintain security controls for Azure and AWS environments.
- Monitor cloud security posture and identify security gaps.
- Review IAM configurations and enforce least-privilege access.
- Support cloud compliance and risk mitigation initiatives.
Vulnerability Assessment & Penetration Testing (VAPT)
- Conduct vulnerability assessments using industry-standard tools.
- Coordinate periodic penetration testing activities.
- Track remediation efforts and validate risk closure.
- Prepare vulnerability assessment reports and risk recommendations.
Security Governance & Compliance
- Assist in developing and maintaining security policies and standards.
- Support regulatory and compliance requirements (ISO 27001, SOC 2, PCI-DSS, GDPR, etc.).
- Participate in security audits and risk assessments.
- Maintain security documentation and compliance evidence.
Preferred Certifications
- CrowdStrike Falcon Certification
- CEH (Certified Ethical Hacker)
- CompTIA Security+
- AZ-500 (Microsoft Azure Security Engineer)
- AWS Security Specialty
- CISSP, CISM, or ISO 27001 Lead Implementer/Auditor