Lead Cyber Defense Analyst - Remote
ExpediaFull Time
Expert & Leadership (9+ years)
Candidates must have 5+ years of experience in SOC, cyber defense, or incident response roles. Proficiency with SIEM platforms such as Microsoft Sentinel, Splunk, Elastic, or QRadar is required, along with familiarity with EDR tools like Microsoft Defender, SentinelOne, or CrowdStrike. A strong understanding of NIDS/NIPS and network log analysis is necessary, as is the ability to simulate threats and validate detections against frameworks like MITRE ATT&CK. German language proficiency is also a requirement for this role.
The Senior Security Analyst will develop, tune, and document detection rules and playbooks, and test/simulate security events to validate use cases. Responsibilities include analyzing security alerts, correlating events across multiple tools, performing initial triage and investigations for incidents during POCs, and providing remediation recommendations. The role also involves contributing to reporting and documentation of POC outcomes and sharing knowledge with team members to improve detection strategies.
Cloud-based solutions for government agencies
Accela provides cloud-based solutions designed for government agencies to enhance civic engagement and streamline operations. Its main product, the Construct API, enables developers to create applications that improve interactions between government entities and citizens. These applications can assist with various civic functions, including permitting, licensing, code enforcement, and public health management. Accela differentiates itself from competitors by offering a subscription-based Software as a Service (SaaS) model, along with open-source tools and resources that foster a community of developers focused on civic technology. The company's goal is to improve efficiency, transparency, and citizen satisfaction in government services.