L3: Principal Security Analyst

Posted 5 Days Ago
Be an Early Applicant
Scottsdale, AZ, USA
In-Office
Senior level
Cybersecurity
The Role
Lead alert triage and incident investigations, assist customers through incident response, perform forensic analysis of logs and packet captures, proactively threat-hunt across network/host data, and mentor junior analysts.
Summary Generated by Built In
Principal Security Analyst (L3)
Full-time, onsite preferred but remote candidates accepted. 
Principal Security Analyst (L3) are expected to handle customer-facing investigations, mentoring, and training of fellow analysts, and to participate in interaction with customers and other teams through email, phone, or video conference.

Primary Duties
  • Lead and execute alert triage and determine if further investigation or action is required by the customer
  • Assist customers with the investigation and response of incidents throughout the incident response process
  • Perform investigations in response to customer requests and be able to provide further contextual information along with recommended actions
  • Proactively threat hunt using network, log, and host data within customer environments
  • Provide mentorship and guidance to junior level analyst
Required Qualifications
  • Analyze packet captures/data and logs to perform incident response and identify potential compromises to customer networks
  • Possesses a solid understanding of the TCP/IP protocol suite, security architecture, and common TTP’s (tactics, techniques, and procedures) used by threat actors
  • Experience analyzing log data in a SIEM (Exabeam, Azure Sentinel, Splunk, Cortex XSIAM.)
  • Strong understanding of incident response methodologies and reporting
  • Strong understanding of Windows and Linux operating systems, security events, and common attacker tactics and methodologies
  • Strong verbal/written communication and interpersonal skills are required to document and communicate findings, escalate critical incidents, and interact with customers
Preferred Qualifications
  • 7+ years of SOC operations experience in enterprise environments
  • 6+ years of experience performing forensic analysis of logs and packet captures to identify malicious artifacts
  • Higher level security certifications (CEH, GCIH, GCFA, GCFE, GCTI, GCIA, GREM, GPEN, GFNA, OCSP)
  • Expertise in security incident management, forensics, and vulnerability remediation
  • Strong research background and an analytical approach, especially with respect to event classification, event correlation, and root cause analysis
  • A mentoring/leadership background including mentoring other analysts and orchestrating team efforts for problem solving
  • Ability to work independently, manage projects to completion, and lead security initiatives

Benefits Include: 

  • Recharge in Style: Need some downtime? We've got your back with self-managed time off to rest, recharge  
  • Great Healthcare Coverage: Your well-being is a priority for us. That's why we offer exceptional healthcare coverage to keep you in tip-top shape with 80% employer coverage. 
  • Holistic Well-Being: We're not just about the basics. Dive into our holistic well-being programs that cover everything from family planning to much, much more.  
  • Fully Stocked Snack Bar for our onsite team  
  • ​​Comprehensive Professional Development Benefits: Regular training sessions and workshops, personalized career coaching, opportunities for conferences and seminars, and access to leading online learning platforms for self-paced skill development. 

All candidates must be eligible to work in the U.S. for any employer. We are an E-Verify employer. 

Lumifi welcomes and encourages diversity in our workplace. All qualified applicants will receive consideration for employment without regard to race color, religion, sex, sexual orientation, gender identity, national origin or disability. 

Skills Required

  • Analyze packet captures, data, and logs to perform incident response and identify potential compromises
  • Solid understanding of the TCP/IP protocol suite, security architecture, and common TTPs used by threat actors
  • Experience analyzing log data in a SIEM (Exabeam, Azure Sentinel, Splunk, Cortex XSIAM)
  • Strong understanding of incident response methodologies and reporting
  • Strong understanding of Windows and Linux operating systems, security events, and attacker tactics
  • Strong verbal and written communication and interpersonal skills to document and communicate findings and interact with customers
  • Eligible to work in the U.S. for any employer (E-Verify employer)
  • 7+ years of SOC operations experience in enterprise environments
  • 6+ years performing forensic analysis of logs and packet captures to identify malicious artifacts
  • Higher level security certifications (CEH, GCIH, GCFA, GCFE, GCTI, GCIA, GREM, GPEN, GFNA, OCSP)
  • Expertise in security incident management, forensics, and vulnerability remediation
  • Strong research background and analytical approach for event classification, correlation, and root cause analysis
  • Mentoring/leadership background, including mentoring analysts and orchestrating team problem solving
  • Ability to work independently, manage projects, and lead security initiatives
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Scottsdale, AZ
50 Employees
Year Founded: 2022

What We Do

Lumifi delivers continuous end-to-end protection against ransomware and the latest security threats. We provide enterprise grade security and continuous threat protection to small and mid-size companies nationwide. Lumifi's proprietary cybersecurity solutions are designed ​with your unique challenges and assets in mind. Our ​advanced technologies and processes position us to ​bring your organization the very best in customized ​cybersecurity services.

Similar Jobs

MongoDB Logo MongoDB

Technical Services Engineer, 1st shift (Weekend)

Big Data • Cloud • Software • Database
Easy Apply
Remote or Hybrid
United States
5550 Employees
90K-176K Annually

MongoDB Logo MongoDB

Site Reliability Engineer

Big Data • Cloud • Software • Database
Easy Apply
Remote or Hybrid
10 Locations
5550 Employees
127K-249K Annually

MongoDB Logo MongoDB

Product Manager

Big Data • Cloud • Software • Database
Easy Apply
Remote or Hybrid
5 Locations
5550 Employees
108K-212K Annually

Samsara Logo Samsara

Enterprise Account Executive

Artificial Intelligence • Cloud • Computer Vision • Hardware • Internet of Things • Software
Easy Apply
Remote or Hybrid
United States
4000 Employees
222K-278K Annually

Similar Companies Hiring

Copia Automation Thumbnail
Cybersecurity • Industrial
New York, New York
50 Employees
SEON Thumbnail
Artificial Intelligence • Cybersecurity
Budapest, Budapest
415 Employees
NODA AI Thumbnail
Artificial Intelligence • Information Technology • Software • Cybersecurity
Sydney, AU
54 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account