Jobs and Careers
RE

Senior Security Analyst (Remote in US)

Resultant
Indianapolis, United StatesRemotefull_timeVerifiedPosted 3 Sept 2025

About the role

Company Description

Resultant is an outcomes-focused consulting firm committed to helping clients make technology a strategic asset and use data to guide better decisions. But we’re not just data and tech experts; we are problem solvers and industry experts who work alongside our clients to help them achieve their mission. 

We don’t solve problems for our clients. We solve problems with them.

We take the time to deeply understand goals and roadblocks to drive toward outcomes that serve organizations, people, and communities. Through outcomes driven by data analytics, technology solutions, digital transformation, and beyond, our team works with clients in both the public and private sectors to solve their most complex challenges. We start by learning as much as we can about who they are, how they work, and what they’re striving for so we can feel their problems as our own. Partnering with our clients means their desired outcomes are always top of mind, their challenges and strengths guiding our efforts. We build client-focused relationships before we build unique solutions that blaze past expectations.

Originally founded in Indianapolis in 2008, Resultant now employs more than 450 team members who operate remotely and from offices and hubs around the United States including Indianapolis, IN; Fort Wayne, IN; Denver, CO; Atlanta, GA; and Dallas, TX.

We’re Resultant. Clients partner with us to see a difference. People join us to make one.

Job Description

We are looking for a skilled Senior Security Analyst to join our Managed Security Services Provider (MSSP) team. This role is essential for protecting our clients by detecting, investigating, and responding to security threats, managing vulnerability scans, and delivering monthly phishing tests and reports. The ideal candidate will have hands-on experience with Sentinel One, Microsoft Defender, account takeover investigations, vulnerability management, and incident response, and will be comfortable working independently as well as collaborating with the broader team across shifts.

Key Responsibilities

  • Monitor client environments for security alerts and suspicious activity across endpoints, networks, and cloud services during second shift hours.
  • Perform in-depth security investigations using EDR, SIEM, and supporting tools to detect and contain client threats.
  • Investigate client account takeover (ATO) events, including credential theft, unauthorized logins, and privilege misuse, and coordinate remediation.
  • Execute the full incident response lifecycle of detection, triage, containment, eradication, and recovery for client incidents.
  • Manage client vulnerability management programs: schedule scans, review results, validate findings, deliver reports, and track remediation progress.
  • Administer client phishing simulation campaigns monthly, analyze results, and provide actionable reporting and recommendations to improve human risk posture.
  • Provide rapid response to critical alerts and incidents during on-call coverage periods.
  • Develop, maintain, and follow incident response playbooks tailored to client environments (ATO, phishing, malware, ransomware, etc.).
  • Document investigation findings, root cause analyses, and recommendations in client-facing reports and ticketing systems.
  • Manage and monitor client email security tools such as Proofpoint and Microsoft Defender for M365, investigate alerts, and assist with email threat remediation.
  • Support proactive threat hunting in client environments to identify indicators of compromise (IOCs) before they escalate.
  • Assist with tuning detection rules and automation to improve visibility and reduce false positives.

Qualifications

Required Skills & Experience

  • Hands-on experience with Sentinel One, Microsoft Defender, CrowdStrike, or similar EDR/XDR platform.
  • Experience performing investigations in SIEM technologies such as Elastic Search, Rapid7, Splunk, Microsoft Sentinel, or other popular SIEM platforms.
  • Strong knowledge of security investigation techniques and incident response best practices.
  • Experience handling client account takeover incidents and identity-related security events.
  • Familiarity with phishing analysis, endpoint forensics, and log correlation.
  • Working knowledge of security tools, authentication protocols, and network security concepts.
  • Strong analytical, problem-solving, and communication skills, including client-facing communication.
  • Ability to work independently and respond quickly to high-priority incidents during on-call periods.
  • Some weekend or holiday coverage may be required on a rotational basis.
  • Must be legally authorized to work

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Resultant

View company profile →