About the Role:
We are seeking a highly experienced and proactive Senior Cyber Security Analyst to take a leadership role within our Perimeter Security team.
This role is crucial for defending our public web, API, and partner platforms against evolving cyber threats.
You will be responsible for identifying and prioritizing edge threats, leading incident response, conducting advanced threat hunting, and ensuring the seamless integration of our security systems.
This role demands strong collaboration with various engineering and operations teams to safeguard our application perimeter.
Key Responsibilities:
- Incident Response & Mitigation: Lead the response to security incidents related to traffic and perimeter, ensuring accurate identification and prioritization of threats.
- Implement effective mitigation strategies to address security incidents, focusing on minimizing operational impact while maintaining robust security.
- Analyze and investigate incidents involving customer traffic interference, bot activity, scanners, and malicious actors, utilizing various monitoring platforms to identify patterns and anomalies.
- Manage the prioritization and escalation of incidents based on severity, collaborating with engineering and infrastructure teams to drive rapid mitigation.
- Threat Monitoring, Hunting & False Positive Reduction: Proactively monitor traffic patterns to identify and assess threats within cloud environments.
- Track and analyze threat actors, scanner activities, and IP reputation, distinguishing between legitimate threats and benign anomalies, with a strong emphasis on reducing false positives.
- Investigate traffic anomalies to proactively mitigate operational impacts on engineering teams and ensure optimized security controls.
- Collaborate with engineering teams to refine mitigation processes for greater accuracy and minimize customer impact.
System Integration & Maintenance:
- Ensure the integration, patching, and ongoing maintenance of security controls for cloud perimeter systems.
- Lead efforts to identify and address vulnerabilities related to API endpoints and cloud services.
- Maintain continuous monitoring of cloud-based perimeter security applications, ensuring resilience against emerging threats.
- Collaboration with Engineering and Operations Teams: Partner with security, application, web, and site reliability engineering teams to embed security into new systems, endpoints, and integrations.
- Lead cross-functional efforts to optimize security controls, reduce alert noise, and minimize operational impacts while ensuring strong perimeter defenses.
- Document, communicate, and prioritize security incidents, recommended actions, and resolutions clearly to both technical and non-technical stakeholders.
- Reporting & Documentation: Generate and present executive-level reports on traffic mitigation, including relevant metrics.
- Maintain comprehensive documentation on incidents, threat patterns, system changes, and mitigation strategies to support continuous improvement.
Didn’t find the job appropriate? Report this Job