- Company Name
- ClifyX
- Job Title
- Senior Cybersecurity Analyst
- Job Description
-
**Job title:** Senior Cybersecurity Analyst
**Role Summary:**
Lead enterprise security operations, driving incident response, vulnerability management, and email security for an integrated IT and cloud environment. Authority on NIST, MITRE ATT&CK, and advanced threat detection, while mentoring junior staff and shaping the security program.
**Expectations:**
- Mastery of security alert triage, incident response, and threat detection aligned with NIST and MITRE frameworks.
- Expertise managing enterprise security platforms (XDR, email security, cloud solutions) and the full vulnerability management lifecycle.
- Ownership of email security administration, DMARC enforcement, and secure email gateway operations.
- Conduct proactive threat hunting, IOC/BIOC analysis, and development of automated scripts.
- Produce clear security architecture documentation, SOPs, and operational insights.
- Provide mentorship, operational support, and vendor coordination.
**Key Responsibilities:**
- Deploy and maintain enterprise XDR, email, and cloud security tools.
- Lead vulnerability management program, partnering with infra and app teams for remediation.
- Monitor, analyze, and respond to alerts following NIST 800‑61 lifecycle.
- Create/explain correlation rules to reduce false positives and support Tier 1 analysts.
- Administer email security gateway, enforce DMARC, and ensure delivery reliability.
- Execute threat hunting using IOCs, BIOCs, and TTPs; automate tasks with PowerShell scripts.
- Document security architecture, configurations, and SOPs.
- Troubleshoot security solution issues collaboratively with cross‑functional teams.
- Engage third‑party vendors for escalation and support.
- Mentor junior analysts and drive continuous improvement of the security program.
**Required Skills:**
- • NIST 800‑61 incident response, MITRE ATT&CK threat modeling
- • XDR, endpoint, email, and cloud security platform administration
- • Vulnerability management lifecycle (scanning, patching, remediation coordination)
- • Threat hunting, IOC/BIOC analysis, TTP exploitation
- • Correlation rule creation and false‑positive reduction
- • PowerShell scripting for automation and operational efficiency
- • Security architecture documentation, SOP development
- • Vendor management and cross‑team collaboration
- • Strong written and verbal communication
**Required Education & Certifications:**
- Bachelor’s degree in Computer Science, Cybersecurity, or related field (or equivalent experience).
- Valid certifications: CISSP, CISM, CEH, or comparable advanced security credential highly preferred.
- Equivalent work experience for those without formal credentials.