Cyber Security Analyst II jobs in United States
cer-icon
Apply on Employer Site
company-logo

CyberSheath · 1 month ago

Cyber Security Analyst II

CyberSheath Services International LLC is a rapidly growing Security and IT Managed Services Provider focused on providing Cybersecurity services to the Defense Industrial Base. The Cyber Security Analyst II will be responsible for advanced security incident triage, investigation, and response across Microsoft environments, serving as the escalation point for complex security incidents.

Information Technology

Responsibilities

Investigate and respond to escalated security incidents across Microsoft cloud and on-premises environments
Perform advanced incident analysis using Microsoft Defender suite and Azure Sentinel
Conduct security assessment of Azure/Microsoft 365 configurations and implement hardening recommendations
Analyze and respond to advanced Active Directory attacks (Kerberoasting, Pass-the-Hash, Golden Ticket)
Monitor and investigate Exchange Server logs, email flow patterns, and phishing campaigns
Analyze federation security including ADFS token-based attacks and SAML token manipulation
Configure and tune WAF/firewall rule sets and investigate related security incidents
Develop network segmentation strategies and identify lateral movement attempts
Develop and maintain incident response playbooks for various attack scenarios
Coordinate incident response activities with cross-functional teams

Qualification

Microsoft 365AzureSIEM platformsScripting PowerShellScripting PythonMicrosoft Certified SC-200Cloud security posture managementIncident handlingThreat intelligence analysisAnalytical skillsEmail securityDigital forensicsCommunication skills

Required

3-5 years in cybersecurity with 2+ years SOC experience
Deep knowledge of hybrid Microsoft environments (Microsoft 365, Azure, on-premises AD)
Experience with SIEM platforms and security monitoring tools
Scripting proficiency (PowerShell, Python)
Strong analytical and communication skills
Microsoft Certified: Security Operations Analyst (SC-200)
One additional security certification: EC-Council CSA, CompTIA Security+, or similar

Preferred

Microsoft Certified: Azure Security Engineer (AZ-500)
Microsoft Certified: Identity and Access Administrator (SC-300)
CrowdStrike Certified Falcon Responder (CCFR) or equivalent EDR certification
CISSP, SSCP, CCSP

Company

CyberSheath

twittertwittertwitter
company-logo
CyberSheath is one of the industry’s few one-stop cybersecurity compliance service providers, going beyond assessment and software licensing to solve the whole problem.

Funding

Current Stage
Growth Stage
Total Funding
unknown
Key Investors
Lightview Capital
2024-05-22Acquired
2021-12-14Private Equity

Leadership Team

leader-logo
Emile Sayegh
Chief Executive Officer
linkedin
Company data provided by crunchbase