onsite
Cybersecurity Operations Analyst II - True Zero Technologies
Security Engineer
Mid‑level cybersecurity analyst responsible for monitoring, detecting, and responding to security incidents using SIEM tools, threat‑hunting techniques, and automation scripts.
About the role
Key Responsibilities
- Monitor enterprise SIEM platforms (e.g., Splunk) to identify and triage security alerts in real time.
- Conduct incident response activities, including investigation, containment, eradication, and post‑incident reporting.
- Perform proactive threat‑hunting and vulnerability assessments to uncover hidden risks.
- Develop and maintain Python scripts and automation workflows to streamline detection and response processes.
- Collaborate with cross‑functional teams to improve security controls, harden Windows and Linux environments, and ensure compliance with industry standards.
Requirements
- 2–4 years of hands‑on experience in security operations, incident response, or threat hunting.
- Proficiency with SIEM tools, preferably Splunk, and strong analytical skills for log analysis.
- Solid understanding of Windows and Linux operating systems, networking protocols, and common attack vectors.
- Experience scripting in Python (or similar) to automate security tasks.
- Relevant certifications such as CompTIA Security+, GSEC, or equivalent are a plus.