Skip to main content
Experian

Cyber Defense Senior Analyst (Remote)

RemoteUnited States only
Published
Role
Security
Experience
Senior
Employment
Full-time
Company size
Enterprise
Salary not disclosed
Check eligibility

Open to US only. Set where you work from to check your eligibility.

No BS summary

Senior Cyber Defense Analyst needed for global security monitoring. Requires 3+ years in SOC/CSIRT, a relevant Bachelor's degree, and knowledge of IR lifecycle, MITRE ATT&CK, and common attack TTPs. Must be proficient in analyzing logs and using SIEM/EDR tools.

Core skills

SIEMEDRIncident Response

Required skills

information securitySecurity Operations CenterCyber Security Incident Response TeamIncident Response Life CycleMITRE ATT&CK FrameworkCyber Kill Chaincybersecurity frameworksintrusion methodscyber-attack tactics, techniques, and procedures (TTPs)phishingmalwarenetwork attackssuspicious activitydata security incidentscontainmenteradicationrecoveryOperating Systems (Windows, Linux, Mac OS)Networking (Firewalls, Proxies, NetFlow, etc.)Cloud Infrastructure (AWS, Azure, GCP)Security Technologies (Anti-Virus, Intrusion Prevention, Web Application Firewalls, etc.)device and application logsSplunkPacket Captures

Optional skills

Security Orchestration, Automation, and Response (SOAR)Palo Alto XSOARGoogle Secops (Chronicle)cloud security (Azure/AWS)threat detectionsystem and network forensicsvulnerability managementmalware analysis

Required languages

English

What you'll do

  • Perform daily security operations by monitoring, triaging, and conducting response activities for security events and alerts associated with cyber threats, intrusions, and compromises.
  • Analyze events using security tooling and logging, such as SIEM, EDR, and assess the potential risk/severity level of cyber threats.
  • Escalate higher-risk events to dedicated incident response and management teams in the CFC, according to established processes.
  • Collaborate with external teams for incident resolution and escalations, driving incident handling.
  • Notify team Lead(s) of concerns related to operations, such as anomalous changes in metrics, notable open incidents, quality concerns, or observed risks; support with resolution if appropriate.
  • Manage and complete assigned caseload throughout the incident response lifecycle, including analysis, containment, eradication, recovery, and lessons learned; maintain standards of quality to resolve events.
  • Maintain all case documentation, including notes, analysis findings, containment steps, and cause for each assigned security incident.
  • Perform incident updates or make contact with end-users promptly and document them, and complete case hand-off processes, such as completing/verifying shift logs.
  • Apply subject matter expertise in security operations processes to help improve relevant playbooks, Standard Operating Procedures (SOPs), and training materials.
  • Assist the team Leads and management on use case development by suggesting enhancements or tuning of use cases to improve the security posture of Experian.
  • Participate in paid overtime when operational needs may require additional support.

What they require

  • 3+ years of information security experience working within a Security Operations Center or Cyber Security Incident Response Team.
  • Bachelor's Degree in Computer Science, Computer Engineering, Information Systems, Information Security, or a related field.
  • 6+ years of experience working within a Security Operations Center, Incident Response Team, law enforcement, and/or military experience may be accepted in lieu of this requirement.
  • Demonstrate working knowledge of the Incident Response Life Cycle, MITRE ATT&CK Framework, Cyber Kill Chain, and other cybersecurity frameworks.
  • Demonstrated knowledge of common intrusion methods and cyber-attack tactics, techniques, and procedures (TTPs), as well as common industry practices to investigate and respond to threats, including phishing, malware, network attacks, suspicious activity, and data security incidents.
  • Demonstrated proficiency in determining appropriate methods to contain, eradicate, and recover from a variety of security incidents.
  • Provide recommendations to prevent incidents from recurring.
  • Possesses an understanding of common Operating Systems (Windows, Linux, Mac OS), Networking (Firewalls, Proxies, NetFlow, etc.), Cloud Infrastructure (AWS, Azure, GCP), and Security Technologies (Anti-Virus, Intrusion Prevention, Web Application Firewalls, etc.)
  • Ability to review and interpret device and application logs from a variety of sources (e.g., Firewalls, Proxies, Web Servers, System Logs, Splunk, Packet Captures, etc.) to identify root cause and determine next steps for containment, eradication, and recovery.
  • Experience with common Incident Response and Security Monitoring applications such as SIEM (e.g., Qradar, Splunk), EDR (e.g., FireEye HX, CrowdStrike Falcon, Microsoft Defender, etc.); experience with Security Orchestration, Automation, and Response (SOAR) technologies such as Palo Alto XSOAR and Google Secops (Chronicle) are a plus.
  • Continuously build advanced cybersecurity expertise across cloud security (Azure/AWS), incident response, threat detection, system and network forensics, SIEM/monitoring tools, vulnerability management, malware analysis, and scripting/automation.
  • One or more professional, currently-held certifications related to Digital Forensics, Incident Response, or Ethical Hacking highly preferred (e.g., GCIH, GMON, GCED, GSOC, CEH, GCFE, GCFA, CFCE, ENCE).
  • Bonus: Information security management certifications (CISSP, CISM) or vendor-specific certifications.

Benefits

  • Great compensation package and bonus plan.
  • Core benefits including medical, dental, vision, and matching 401K.
  • Flexible work environment, ability to work remote, hybrid or in-office.
  • Flexible time off including volunteer time off, vacation, sick and 12-paid holidays.
  • Explore all our exciting benefits here: https://yourexperianbenefits.com/cand-index.html.
  • At Experian, our people and culture set us apart. We're committed to creating an environment where everyone feels they belong and can excel. From inclusion and authenticity to work/life balance, development, wellness, collaboration, and recognition, we focus on what matters.
  • Our people-first approach has earned us global recognition: World's Best Workplaces™ 2024 (Fortune Top 25), Great Place To Work™ 2025 in 26 countries, and Glassdoor Best Places to Work 2024, among others.
  • Want to see what life at Experian is really like? Explore Experian Life on social or visit our careers site.
  • Our compensation reflects the cost of labor across several U.S. geographic markets. The base pay range for this position is listed above. Within this range, individual pay is determined by work location and additional factors such as job-related skills, experience, and education.
  • You will be also eligible for a variable pay opportunity.
  • Experian is proud to be an Equal Opportunity Employer for all groups protected under applicable federal, state and local law, including protected veterans and individuals with disabilities.
  • If you have a disability or special need that requires accommodation, please let us know at the earliest opportunity.

Irish company that provides information services

🇮🇪 IrelandDataEnterpriseexperian.com/

What people say about this company

3.6/ 5

Salary not disclosed