- Utilize a variety of tools and analytical methodologies to analyze activity trends and proactively hunt for threats that may not be detected by current security alerts.
- Perform threat scenario analysis to identify relevant attack vectors and develop new use cases and hunting strategies.
- Conduct thorough investigations of identified security events, following established investigation and response procedures.
- Monitor, triage, and operationalize threat intelligence from diverse sources including commercial and open-source data.
- Correlate internal telemetry with threat intelligence to detect compromises and inform hunting and incident response efforts.
- Prepare and present regular reports on threat hunting activities, detailing hypotheses, findings, and improvements in detection and response strategies.
- Contribute to the development and tuning of SIEM use cases, enhancing our threat detection capabilities.
- Track and define Security Operations metrics to measure effectiveness.
- Design and implement automation solutions and SOAR playbooks to optimize workflows for alert triage and incident response.
- Automate routine tasks to reduce Mean Time to Detect (MTTD) and Mean Time to Respond (MTTR).
- Support vulnerability management by linking vulnerability data with real-world exploits and prioritizing remediation efforts.
- Engage in incident response (IR) exercises to validate and improve IR processes.
- Perform additional duties as necessary to meet the requirements of the position.
- Bachelor's degree in Computer Science, Information Security, or a related field.
- A minimum of 2 years of experience in Cyber Intelligence or Threat Hunting, preferably within a CIRT/SOC environment.
- Hands-on experience with SIEM content development and automation.
- Familiarity with core security technologies such as SIEM, vulnerability scanners, antivirus solutions, and EDRs.
- Strong knowledge of threat intelligence methodologies and frameworks including MITRE ATT&CK.
- Demonstrated experience with SIEM platforms (e.g., Splunk, Microsoft Sentinel, and Elastic).
- Proficiency with SOAR platforms (e.g., Splunk SOAR, Microsoft Sentinel automation).
- Exceptional analytical and investigative skills with a sound understanding of security controls.
- Experience with advanced endpoint analytics and EDR tools.
- General knowledge of common security threats and industry best practices.
- Availability for 24x7 on-call support for high severity incidents.
- Understanding of digital forensics, malware analysis, and penetration testing concepts.
- Proficiency in scripting languages such as Python, PowerShell, or shell is a plus.
- Relevant industry certifications are highly regarded (e.g., GIAC, Microsoft SC-200, Splunk certifications).
-
Threat Analyst
1 month ago
Only for registered members Chicago, ILDentons US LLP is currently recruiting for a Threat Analyst responsible for proactively hunting for threats within client environments and developing and tuning SIEM use cases. · ...
-
Threat Analyst
3 days ago
Only for registered members ChicagoDentons US LLP is currently recruiting for a Threat Analyst. · Analyze activity trends using a mix of tools and analytical methodologies to hunt for threats not otherwise detected by configured security alerts. · ...
-
Threat Analyst
1 month ago
Only for registered members Chicago $83,850 - $111,850 (USD)The Information Security Threat Analyst is responsible for proactively hunting for threats within client environments, developing and tuning SIEM use cases, and conducting in-depth investigations of security events. · Analyze activity trends using a mix of tools and analytical me ...
-
Insider Threat Hunt Analyst
1 month ago
Only for registered members Chicago, ILNorthern Trust is seeking a skilled Insider Threat Hunt Analyst to join our Security Operations team. · ...
-
Threat & Incident Response Analyst
1 month ago
Only for registered members ChicagoThis role involves monitoring and responding to security incidents within the IT infrastructure in Chicago, IL. · ...
-
Insider Threat Intelligence Analyst
1 month ago
Only for registered members ChicagoNorthern Trust, a Fortune 500 company, is seeking an experienced Insider Threat Intelligence/Counter-Intelligence Analyst to join its Security Operations team. · The ideal candidate will have a deep understanding of nation-state espionage and cyber espionage activities and will b ...
-
Cyber Threat Intelligence Analyst II
2 weeks ago
Only for registered members Chicago, ILThe GlobalInformationSecurityGIS teamatCMEGroupisseekingaCyberThreatIntelligenceAnalystIIsupportourmissionofprotectingtheintegrityofthefinancialmarketplace. · Inthisrole,youwillbe responsiblefortheend-to-endlifecycleoftthreatintelligence-fromcollectionandanalysis tothedisseminati ...
- Only for registered members Chicago Full time $142,000 - $208,000 (USD)
Part of Google Cloud, Mandiant is a recognized leader in dynamic cyber defense, threat intelligence and incident response services · ...
- Only for registered members Chicago $142,000 - $208,000 (USD)
Mandiant is seeking a Senior Cyber Threat Intelligence Analyst to join our team. As part of Google Cloud, Mandiant is a recognized leader in dynamic cyber defense. · Conduct and lead research into the capabilities, techniques, and motivations of state sponsored espionage campaign ...
-
Cyber Threat Intelligence Analyst II
3 weeks ago
Only for registered members Chicago $91,400 - $152,300 (USD)The Global Information Security team at CME Group is seeking a Cyber Threat Intelligence Analyst II to support our mission of protecting the integrity of the financial marketplace. · Analyze incoming threat intelligence reports to assist in the creation of signatures, queries and ...
-
Threat Investigation Analyst
2 weeks ago
Only for registered members Downers Grove Full time $60,000 - $70,000 (USD)The Threat Investigation Analyst is a key member of the Threat Operations Team and serves as a first responder to cybersecurity incidents. · ...
-
Threat Investigation Analyst
1 week ago
Only for registered members Downers Grove, ILThe Threat Investigation Analyst is a key member of the Threat Operations Team and serves as a first responder to cybersecurity incidents. · ...
-
Threat Investigation Analyst
1 week ago
Only for registered members Downers Grove, ILThe Threat Investigation Analyst is a key member of the Threat Operations Team and serves as a first responder to cybersecurity incidents. This role is responsible for triaging, · investigating and responding to security alerts to protect customer environments.1+ years of experie ...
-
Cyber Security, Senior Technical Lead
1 month ago
Only for registered members Greater Chicago AreaThe Cyber Security Analyst Lead is the senior technical expert responsible for enforcing corporate risk management policies while leading the development and implementation of advanced security solutions. ...
-
Cyber Security, Senior Technical Lead
3 days ago
Only for registered members Chicago, IL, United StatesThe Cyber Security Analyst Lead is responsible for enforcing corporate risk management policies while leading the development and implementation of advanced security solutions. · ...
-
Cyber Security, Senior Technical Lead
1 month ago
Only for registered members Chicago, ILThe Cyber Security Analyst Lead is the senior technical expert responsible for enforcing corporate risk management policies while leading the development and implementation of advanced security solutions. · This position oversees securing the organization's networks, endpoints, i ...
-
Manager, Cyber Security Operations
3 weeks ago
Only for registered members Chicago, ILThe company is seeking a Cyber Security Operations Manager to oversee day-to-day security operations. · ...
-
Cyber Security Analyst II
3 days ago
Only for registered members Chicago, IL+Job summary · RKON es una empresa especializada en servicios de migración y transformación IT. · +ResponsibilitiesAssist in establishing a mature and optimized Security Operations Center discipline to support managed security services focused on client-facing vulnerability and s ...
-
Medicaid Fraud Supervisor, Springfield, 23-E-40
2 weeks ago
Only for registered members Chicago, ILThe Senior Cybersecurity Operations Analyst will analyze events from multiple security tools to identify incidents and potential information security threats to the organization. · ...
-
Cyber Defense Operations Center Senior Analyst
1 month ago
Only for registered members Chicago, ILWe are seeking a Senior Analyst to join our Cyber Defense Operations Center (CDOC) team. The successful candidate will play a critical role in safeguarding TransUnion's global infrastructure and contribute to incident response, propose threat detections. · Perform in-depth analys ...
-
Cybersecurity Lead Analyst
1 month ago
Only for registered members Chicago, ILThe Sr. Info Security Analyst drafts, · communicates, implements, · enforces and monitors the organization's · security controls to protect technology assets from intentional or inadvertent modification, · disslosure or destruction.Cyber Security Analyst III ensures implementatio ...
Cybersecurity Threat Analyst - Chicago - Dentons US LLP
Description
Cybersecurity Threat Analyst
Dentons US LLP is seeking a skilled Cybersecurity Threat Analyst to join our team. This crucial role involves proactively hunting for potential threats within client environments and enhancing our information security posture. You will have the opportunity to develop and refine SIEM use cases, conduct in-depth investigations of security events, and participate in incident response. The role also emphasizes collaboration with internal teams to bolster security operations and adapt to the ever-evolving cyber threat landscape.
Responsibilities
Required Qualifications
Salary
Competitive salary based on experience, including a comprehensive benefits package such as medical, dental, vision, 401k, profit sharing, and paid time off.
Dentons US LLP is an Equal Opportunity Employer - Disability/Vet. We consider applicants for employment qualified regardless of their arrest and conviction records.
About Dentons
Redefining possibilities. Together, everywhere.
Nearest Major Market: Chicago
-
Threat Analyst
Only for registered members Chicago, IL
-
Threat Analyst
Only for registered members Chicago
-
Threat Analyst
Only for registered members Chicago
-
Insider Threat Hunt Analyst
Only for registered members Chicago, IL
-
Threat & Incident Response Analyst
Only for registered members Chicago
-
Insider Threat Intelligence Analyst
Only for registered members Chicago
-
Cyber Threat Intelligence Analyst II
Only for registered members Chicago, IL
-
Senior Cyber Threat Intelligence Analyst, Threat Intelligence
Full time Only for registered members Chicago
-
Senior Cyber Threat Intelligence Analyst, Threat Intelligence
Only for registered members Chicago
-
Cyber Threat Intelligence Analyst II
Only for registered members Chicago
-
Threat Investigation Analyst
Full time Only for registered members Downers Grove
-
Threat Investigation Analyst
Only for registered members Downers Grove, IL
-
Threat Investigation Analyst
Only for registered members Downers Grove, IL
-
Cyber Security, Senior Technical Lead
Only for registered members Greater Chicago Area
-
Cyber Security, Senior Technical Lead
Only for registered members Chicago, IL, United States
-
Cyber Security, Senior Technical Lead
Only for registered members Chicago, IL
-
Manager, Cyber Security Operations
Only for registered members Chicago, IL
-
Cyber Security Analyst II
Only for registered members Chicago, IL
-
Medicaid Fraud Supervisor, Springfield, 23-E-40
Only for registered members Chicago, IL
-
Cyber Defense Operations Center Senior Analyst
Only for registered members Chicago, IL
-
Cybersecurity Lead Analyst
Only for registered members Chicago, IL