Job Description
Are you ready to defend the digital frontier? Apex Digital Systems is looking for a highly skilled Senior Cybersecurity Analyst to join our elite security operations team in San Francisco. We are a leading innovator in cloud infrastructure security, and we need a proactive defender to protect our assets and our clients' data from evolving threats.
As a Senior Analyst, you will not just monitor alerts; you will drive the security strategy, lead incident response efforts, and mentor junior team members. You will work in a fast-paced environment where your expertise directly impacts the resilience of our global infrastructure.
Responsibilities
- Incident Response & Management: Lead the investigation, containment, and remediation of security breaches and cyberattacks using SIEM tools like Splunk and QRadar.
- Threat Hunting: Proactively hunt for advanced persistent threats (APTs) and malicious actors within the network environment using behavioral analytics and threat intelligence.
- Security Architecture: Design, implement, and maintain security controls, including firewalls, IDS/IPS, and endpoint protection platforms (CrowdStrike, SentinelOne).
- Vulnerability Management: Oversee the vulnerability lifecycle, from scanning and prioritization to patching and risk assessment.
- Compliance & Governance: Ensure strict adherence to industry standards such as SOC 2, ISO 27001, and GDPR, conducting regular audits and gap analyses.
- DevSecOps Integration: Collaborate with software engineers to embed security controls into the CI/CD pipeline and promote a 'security-first' culture.
- Reporting: Produce high-level security dashboards and executive summaries to communicate risk posture to stakeholders.
Qualifications
- Education: Bachelor’s degree in Cybersecurity, Information Technology, or a related technical field. Master’s degree preferred.
- Certifications: Active CISSP, CISM, CEH, or Security+ certification is required.
- Experience: Minimum of 5 years of hands-on experience in cybersecurity, SOC analysis, or network defense.
- Technical Skills: Proficiency in Python or Bash scripting for automation; deep knowledge of TCP/IP, VPNs, and network protocols.
- Tools: Hands-on experience with SIEM, EDR/XDR, and threat intelligence platforms.
- Soft Skills: Exceptional communication skills with the ability to explain complex technical concepts to non-technical leadership.
- Work Style: Ability to work under pressure during active incidents and manage multiple priorities effectively.