- Company Name
- WaveStrong, Inc.
- Job Title
- Security Analyst / Engineer - Threat & Cortex XSIAM (Hybrid)
- Job Description
-
**Job Title:**
Security Analyst / Engineer – Threat & Cortex XSIAM
**Role Summary:**
Cybersecurity professional responsible for monitoring, analyzing, and responding to threats using SIEM platforms, specifically Cortex XSIAM. Acts as a subject‑matter expert on adversary tactics, conducts triage of security alerts, and escalates critical findings. Works independently and communicates complex security concepts to diverse audiences.
**Expectations:**
- Minimum 3 + years experience in cybersecurity or a related field.
- Proficiency with SIEM tools, particularly Cortex XSIAM, for correlation and threat monitoring.
- Deep understanding of MITRE ATT&CK, kill‑chain models, confidence intervals, C2 communications, passive DNS, traffic‑light protocol, and data‑collection bias.
- Strong written and verbal communication skills for high‑level and detailed stakeholder briefings.
- Excellent problem‑solving, critical‑thinking, and independent work capabilities.
**Key Responsibilities:**
- Monitor and correlate security events in Cortex XSIAM to detect and investigate threats.
- Perform tactical triage of alerts, prioritizing serious or high‑impact incidents.
- Track known adversaries daily, maintain up‑to‑date threat intelligence, and escalate significant developments.
- Produce clear, concise reports and presentations for technical and non‑technical audiences.
- Contribute to the continuous improvement of detection rules, response playbooks, and threat‑monitoring processes.
- Collaborate with cross‑functional teams to ensure effective incident response and remediation.
**Required Skills:**
- SIEM administration and threat monitoring (Cortex XSIAM preferred).
- Knowledge of confidence intervals, MITRE ATT&CK, kill‑chain, C2, passive DNS, traffic‑light protocol, collection bias.
- Strong analytical, problem‑solving, and critical‑thinking abilities.
- Excellent written and oral communication, able to translate technical details for varied audiences.
- Ability to work autonomously and manage multiple priorities.
**Required Education & Certifications:**
- Bachelor’s degree in Computer Science, Information Security, or related field (or equivalent experience).
- Relevant certifications (e.g., CISSP, CISM, CompTIA Security+, GSEC) are preferred but not mandatory.
Los angeles, United states
Hybrid
Junior
12-12-2025