Security Analyst, Incident Response
SpyCloudFull Time
Mid-level (3 to 4 years)
Candidates must possess strong analytical and problem-solving skills with demonstrated experience in responding to security events and threats. A mastery of Endpoint Detection and Response (EDR) products such as CrowdStrike, Microsoft Defender for Endpoint, SentinelOne, Palo Alto Cortex, or CarbonBlack is required, along with strong experience or familiarity with Identity security products. A deep understanding of Windows and MacOS operating systems and network communication, along with excellent written and verbal communication skills, is essential. The ability to work from 10 PM to 8 AM MT, Wednesday through Saturday, is also a requirement. Preferred qualifications include a strong understanding of enterprise technology, network controls, security operations, experience in developing operational efficiencies, and knowledge of current and emerging adversary tactics and techniques.
The Senior Threat Response Engineer will perform investigations into detected threats, utilizing customers' security products to analyze, contain, and remediate threats within their environments. They will provide customers with thorough reports detailing actions taken for cleanup and protection, and identify effective response strategies to enhance customer security posture. Responsibilities also include actively collaborating with Detection Engineering, Threat Hunting, Intel, and Product Management teams to develop new remediation methods, leading team projects, mentoring peers, and providing strategic insights for product improvement. The role involves participating in an on-call rotation to provide 24x7 remediation support.
Cloud-based cybersecurity and secure gateway services
Zscaler provides cloud-based information security services, focusing on internet, web, and cloud security. Its platform functions as a secure gateway that inspects all internet traffic between users and applications, ensuring that threats are identified and stopped before they can access a client's network. This service is offered through a subscription model, allowing large enterprises and government organizations to select the level of security that meets their needs. Zscaler differentiates itself from competitors by offering a strong partner program that enhances market reach and provides partners with training and resources. The company's goal is to support secure digital transformation for its clients by delivering reliable security solutions.