Cybersecurity Operations Analyst
Kforce
Kforce has a client that is seeking a Cybersecurity Operations Analyst in Columbia, MD.
Responsibilities:
Threat Detection & Investigation:
* Monitor and triage alerts from SIEM, EDR, email security, and other monitoring tools
* Investigate escalated alerts from MSSP or automated detections
* Perform threat hunting based on IOCs, suspicious activity, and threat intelligence
Incident Response:
* Lead response for medium-to-high severity incidents
* Conduct root cause analysis and document findings in post-incident reports
* Coordinate with internal teams to contain and eradicate threats
Security Tool Management:
* Tune and maintain SIEM, EDR, and other security platforms to improve detection fidelity
* Develop custom detection rules, dashboards, and reports
Vulnerability & Risk Management:
* Lead the lifecycle of vulnerability management, from scanning and analysis to remediation tracking
* Validate and prioritize vulnerabilities based on their exploitability and potential impact to business operations
* Work directly with IT teams to provide guidance and technical recommendations for patching and configuration changes
* Track remediation efforts to ensure vulnerabilities are addressed in a timely manner
Por favor confirme su dirección de correo electrónico: Send Email