Senior Cyber Threat Analyst
Brown Brothers HarrimanAbout the role
At BBH, Partnership is more than a form of ownership—it’s our approach to business and relationships. We know that supporting your professional and personal goals is the best way to help our clients and advance our business. We take that responsibility seriously. With a 200-year legacy and a shared passion for what’s next, this is the right place to build a fulfilling career.
As a Senior Cyber Threat Analyst within our Cyber Threat Monitoring Team, you will play a critical role in strengthening the organization’s ability to detect, investigate, and respond to advanced cyber threats. This role emphasizes technical threat hunting, incident response, and advanced SOC investigation support, while leveraging Cyber Threat Intelligence (CTI) to guide detection, response, and proactive defense strategies.
You will serve as a senior escalation resource for complex investigations, proactively hunt for adversary activity across enterprise security telemetry, and work closely with SOC analysts, detection engineers, and security leadership to improve the organization’s detection and response capabilities.
Collaborating with cross-functional teams and interfacing with organizational leaders, you will contribute to innovative detection and response capabilities that protect our networks, systems, data, employees, and clients. The ideal candidate will have strong hands-on SOC or incident response experience, an analytical mindset, a passion for continuous learning, and the ability to translate threat intelligence into actionable detection and response improvements.
Duties and Responsibilities
Lead and support advanced SOC investigations, incident response activities, and Tier-3 escalations, providing deep technical analysis of security alerts, anomalous behavior, and suspected malicious activity
Perform proactive threat hunting activities across enterprise security telemetry including SIEM, EDR, identity, network, and cloud logs to identify previously undetected or emerging threats
Analyze attacker behaviors and intrusion patterns to develop threat hunting hypotheses and detection strategies aligned with the MITRE ATT&CK framework
Investigate complex security alerts and incidents, performing log analysis, endpoint analysis, and timeline reconstruction to determine root cause, scope, and impact
Leverage internal telemetry, alerts, and IOC trends to identify threat patterns targeting the organization and opportunities for improved detection coverage
Enhance threat detection and response capabilities by supporting the development and improvement of SOC detection logic, response procedures, escalation playbooks, and analyst decision trees
Conduct proactive analysis of alert trends to identify gaps in detection coverage and recommend new or improved monitoring capabilities
Utilize Cyber Threat Intelligence (CTI) sources to contextualize incidents, inform threat hunting efforts, and prioritize investigations
Monitor open-source, closed-source, and vendor-provided threat intelligence to stay abreast of emerging threats, vulnerabilities, and adversary tactics relevant to the organization
Develop and maintain profiles of relevant threat actors, including tactics, techniques, and procedures (TTPs), and incorporate those insights into threat hunting and detection strategies
Assist in SOC and Incident Response escalations, providing technical expertise and investigative support during security incidents
Conduct threat, risk, and vulnerability assessments to provide actionable remediation and security control improvement guidance
Collaborate with the Red Team and Cyber Incident Management to support red team exercises, incident response training, tabletop exercises, and detection validation
Perform targeted access reviews and anomaly analysis across enterprise systems (Windows, Linux, databases, network infrastructure, cloud platforms) to identify suspicious activity
Collaborate with DLP and other security teams on insider risk investigations and monitoring initiatives
Contribute to the development and improvement of SOC procedures, threat hunting methodologies, and intelligence-driven detection processes
Collaborate with relevant stakeholders on security awareness messaging and threat awareness related communications
Required Qualifications
Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or related field
5+ years of experience in Security Operations, Incident Response, Threat Hunting, Detection Engineering, and/or related cybersecurity roles
Significant relevant experience (e.g., military cyber operations) may be cons
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s