Seeking a Senior Cybersecurity Analyst with hands-on experience applying Artificial Intelligence (AI) to Security Operations Center (SOC) and computer network defense. The role combines advanced cybersecurity operations, threat detection, incident response, and AI-enabled automation across on-premises and cloud environments. The ideal candidate will develop and implement AI-driven capabilities that improve detection, triage, threat hunting, and incident response.
Position Responsibilities
· Design and implement AI-enabled cybersecurity solutions and integrate AI capabilities into SOC operations and workflows.
· Analyze real-time network activity, raw data, metadata, and event logs to identify and investigate potential intrusions across on-premises and cloud environments.
· Develop and maintain custom detection content for SIEM, IDS/IPS, endpoint, and firewall technologies.
· Use security orchestration, automation, and AI to improve alert triage, reduce false positives, eliminate redundant detections, and accelerate remediation.
· Investigate network anomalies, conduct threat hunting, and support cybersecurity incident response.
· Develop technical requirements, designs, recommendations, and artifacts supporting AI adoption within cybersecurity operations.
· Ensure AI-enabled solutions comply with applicable security, governance, privacy, and regulatory requirements.
· Develop cybersecurity analytics, metrics, incident reports, and threat-hunt products demonstrating operational effectiveness.
Position Qualifications
· 7+ years of hands-on cybersecurity operations experience using technologies such as Splunk, CrowdStrike, Palo Alto, Trellix/FireEye, Corelight, and Cisco Firepower.
· 5+ years of cloud cybersecurity operations experience across platforms such as AWS, Azure, and ServiceNow.
· Hands-on experience implementing AI solutions within a SOC or cybersecurity operations environment.
· Strong experience with intrusion detection, prevention, network analysis, SIEM, endpoint, and firewall technologies.
· Demonstrated ability to develop and implement custom detection rules, signatures, SIEM content, endpoint detections, and firewall logic.
· Experience analyzing network telemetry, event logs, metadata, and security alerts to validate and investigate suspected threats.
· Experience with AI-enabled cybersecurity automation, threat detection, or incident response preferred.
· Experience supporting government environments governed by NIST, FISMA, FedRAMP, and OMB requirements preferred.
· Strong analytical, problem-solving, communication, and technical documentation skills.
_______________________________________________________________________
No Phone calls Please
Please apply with your resume in a word file including all your contact details