Demo

Lead Security Analyst

PTR Global
St. Louis, MO Full Time
POSTED ON 1/14/2025 CLOSED ON 4/9/2025

What are the responsibilities and job description for the Lead Security Analyst position at PTR Global?

only w2

No need of Security Engineers, Only Analysts

Lead Exp needed, since its a Level 3

Job Summary :

The Senior Security Analyst is responsible for monitoring, analyzing, and responding to security threats across a comprehensive security infrastructure. This includes utilizing tools such as Microsoft Sentinel, Defender for Endpoint, Defender for Identity, Defender for Cloud, and Azure Security Center. This role involves leveraging the Unified Security Platform to ensure the protection of the organization's information systems and data.

Key Responsibilities :

  • Proactively monitor security events and alerts across the Microsoft Unified Security Platform and conduct investigation, containment, and remediation of complex security incidents, including provide root cause analysis and deliver detailed incident reports with remediation recommendations.
  • Use Kusto Query Language (KQL) to run regular queries for detecting patterns and anomalies.
  • Utilize analytics to identify unusual behaviour and potential threats, including user and entity behaviour analytics (UEBA) using Sentinel.
  • Correlate alerts from different sources to identify multi-stage attacks.
  • Regularly review and optimize threat hunting processes to identify and address hidden risks.
  • Leverage data sources such as network, endpoint, and cloud activity logs in Sentinel to create workbooks and dashboards for real-time monitoring. Additionally, automate responses to alerts using playbooks.
  • Conduct in-depth log analysis and enrichment to improve event visibility and detection.
  • Perform real-time threat hunting using MITRE ATT&CK tactics and techniques.
  • Monitor the effectiveness of endpoint protection policies within Microsoft Defender for Endpoint.
  • Analyze alerts for false positives / negatives and improve detection accuracy by tuning detection logic.
  • Conduct periodic reviews of user activity and behavioural analytics to detect insider threats or compromised accounts.
  • Stay updated on emerging threats and vulnerabilities, applying intelligence to enhance detection capabilities.
  • Coordinate with internal and external stakeholders to handle critical incidents effectively.
  • Utilize Microsoft Sentinel's threat intelligence feeds for real-time detection of emerging threats.
  • Mentor and train junior SOC analysts on Microsoft security tools, techniques, and best practices.
  • Lead threat simulation exercises and red team / blue team drills to assess SOC readiness.
  • Assist in creating and updating SOC documentation, including detection rules, runbooks, and workflows.
  • Create and manage incident response playbooks using Logic Apps for automated actions.
  • Provide recommendations for maturing SOC capabilities, leveraging Microsoft solutions.

Qualifications and Skills :

Technical Skills :

  • Experience in Microsoft Unified Security Platform :
  • Microsoft Sentinel (SIEM)
  • Microsoft Defender for Endpoint, Identity, and Cloud
  • Azure Security Center and related tools.
  • Experience with KQL (Kusto Query Language) for advanced log and data analysis.
  • Experience with forensic investigation, malware analysis, and memory forensics.
  • In-depth knowledge of incident detection and response workflows.
  • Familiarity with automation tools like PowerShell and Azure Logic Apps.
  • Strong understanding of security frameworks, including MITRE ATT&CK and NIST
  • Soft Skills :

  • Strong analytical and problem-solving abilities.
  • Excellent communication and collaboration skills.
  • Ability to work under pressure and manage multiple priorities.
  • Leadership and mentoring capabilities.
  • Professional Experience :

  • 5 years of experience in cybersecurity, with at least 3 years specializing in SOC operations.
  • Proven expertise in using Microsoft security tools to handle complex security challenges.
  • Certifications (Preferred) :

  • Microsoft Certified : Security Operations Analyst Associate
  • Certified Information Systems Security Professional (CISSP) or similar.
  • Certified Incident Handler (GCIH) or similar.
  • Scheduler/Supervisor
    Lead Star Security Inc -
    Sacramento, CA

    If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
    Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

    What is the career path for a Lead Security Analyst?

    Sign up to receive alerts about other jobs on the Lead Security Analyst career path by checking the boxes next to the positions that interest you.
    Income Estimation: 
    $139,945 - $168,577
    Income Estimation: 
    $164,835 - $201,088
    Income Estimation: 
    $135,994 - $168,063
    Income Estimation: 
    $161,209 - $233,553
    Income Estimation: 
    $139,945 - $168,577
    Income Estimation: 
    $164,835 - $201,088
    Income Estimation: 
    $135,994 - $168,063
    Income Estimation: 
    $161,209 - $233,553
    Income Estimation: 
    $70,462 - $84,818
    Income Estimation: 
    $77,991 - $108,747
    Income Estimation: 
    $87,093 - $107,335
    Income Estimation: 
    $140,233 - $181,029
    Income Estimation: 
    $161,209 - $233,553
    Income Estimation: 
    $87,093 - $107,335
    Income Estimation: 
    $111,725 - $147,313
    Income Estimation: 
    $112,673 - $137,290
    Income Estimation: 
    $140,233 - $181,029
    Income Estimation: 
    $161,209 - $233,553
    Income Estimation: 
    $112,673 - $137,290
    Income Estimation: 
    $139,945 - $168,577
    Income Estimation: 
    $140,233 - $181,029
    Income Estimation: 
    $161,209 - $233,553
    This job has expired.
    View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

    Job openings at PTR Global

    PTR Global
    Hired Organization Address Minneapolis, MN Full Time
    Our client in Minneapolis, MN is seeking an experienced MDU Community Development Manager. As a MDU Community Developmen...
    PTR Global
    Hired Organization Address Castle, DE Contractor
    πŸ”Ή W2 Opportunity: AML SAR Writer – Onsite | New Castle, DE πŸ“ Location: New Castle, DE (100% Onsite) πŸ“… Duration: 6 Mon...
    PTR Global
    Hired Organization Address Minneapolis, MN Contractor
    Position: Business Analyst (2 Roles) Location: Charlotte NC, Minneapolis, Minnesota Duration: Contract Job ID: 169149 Pa...
    PTR Global
    Hired Organization Address Chandler, AZ Contractor
    Software Engineer 3/Data Engineer Chandler, AZ 12 Months Hybrid Note: PART OF THE PILOT PROGRAM Duration: 24month contra...

    Not the job you're looking for? Here are some other Lead Security Analyst jobs in the St. Louis, MO area that may be a better fit.

    AI Assistant is available now!

    Feel free to start your new journey!