Principal Threat Analyst
OptivAbout the role
This position will be fully remote and can be hired anywhere in the continental U.S.
The Principal Analyst will provide deep level analysis for client investigations utilizing customer provided data sources, audit, and monitoring tools at both the government and enterprise level. The Principal Analyst will work closely with our Technology Engineers, Architects, and Threat Analysts to service customers.
How You'll Make an Impact
Operate independently in a geographically dispersed team, while maintaining situational awareness and keeping the team up to date
Perform security monitoring and incident response activities across the networks, leveraging a variety of tools and techniques
Detect incidents through proactive “hunting” across security-relevant data sets
Thoroughly document incident response analysis activities
Review investigations conducted by more junior analysts to ensure quality standards are met
Develop new, repeatable methods for finding malicious activity across the networks
Provide recommendations to enhance detection and protection capabilities
Regularly present technical topics to technical and non-technical audiences
Develop and follow detailed operational processes and procedures to appropriately analyze, escalate, and assist in the remediation of information security incidents
Prioritize multiple high-priority tasks and formulate responses/recommendations to customers and team members in a fast-paced environment
Provide assistance to other security teams
Continually develop new technical skills and push overall team capabilities forward
Engage with and mentor other team members
Work with other teams on major engineering and architecture initiatives
Be innovative with their understanding of attack methodologies, malware analysis, malicious toolkits, and how those may manifest within various security technologies
Advanced proactive threat hunting
Understands advanced adversary emulation concepts
Advanced use case design for insider threat, operational, threat detection and response
Review of defensive and detective controls to reduce client attack surface
What we're hiring for
6+ years operational experience assessing, reviewing, and remediating infrastructure vulnerabilities, CVE’s, and risks.
Knowledge of third-party software vulnerabilities, security threat landscape, especially network and server threats
Knowledge of cyber security threats and risks, vendor computing environments, basic systems, and network technologies.
Experience with and understanding of CVE’s and CVSS scores
Knowledge of compensating controls and mitigating factors.
Knowledge of Information Security frameworks, guidelines, and standard methodologies.
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s