Senior Security Analyst, Managed Services
Job title: Senior Security Analyst, Managed Services in USA at Presidio
Company: Presidio
Job description: Description :Presidio, Where Teamwork and Innovation Shape the Future
At Presidio, we’re at the forefront of a global technology revolution, transforming industries through cutting-edge digital solutions and next-generation AI. We empower businesses—and their customers—to achieve more through innovation, automation, and intelligent insights.The Role
At Presidio, the Managed Services Senior Security Analyst is a client-facing role responsible for supporting secure client environments to include active Threat Hunting, reporting, and consulting on current state of client environments. The Senior Security Analyst will also act as the first line of support for our in-house Security Analysts requiring additional expertise/oversight. This role will work closely with the Lead Security Analysts, Security Engineering, and other members of the Presidio Managed Services organization to ensure our services are being delivered to our client expectations.The associated shift for this role will be Wednesday-Saturday 10:00 a.m. to 9 p.m. ET.Travel Requirements:This is a remote role and will not require any travel.Required Skills and Professional Experience:Intra-Team Support and Escalation:
- Provide regular feedback, mentorship, and development opportunities to team members.
- Plan and execute long term strategies that benefit our clients and services
- Serve as the Named Security Analyst for Presidio MDR Clients
- Create and maintain good technical documentation
- Analyze security events and determine malicious activities.
- Create comprehensive security write-ups which articulate security issues, analysis, and remediation techniques
- Collaborate with other Sr. Security Analysts, Engineering team and Architecture team for creation and tuning of Security Use Cases across multiple platforms
- Assist the Engineering Team in managing toolset access for the Analyst Team
- Assist in developing and monitoring reliable metrics for security activities to identify trends and formulate action plans for continuous improvement.
- Ensure adherence to Standard Operating Procedures, Quality Control procedures, and develop enhancements for alerting and operational tools.
- Contribute to and enforce best practice policies; submit to Knowledge Base.
- Engage in root cause analysis of critical events to refine preventative and reactive processes.
- Stay updated on Cybersecurity trends, tools, standards, best practices, and news.
- Generate comprehensive security write-ups detailing issues, analysis, and remediation strategies
- Bachelor's degree or the equivalent work experience and/or military experience
- Overall 5+ years related IT experience which will include the following:
- 2+ years of Analyst experience within enterprise level Case Management tools
- 2+ years' experience of Analyst experience within enterprise level SIEM tools
- 2+ years’ experience working in a Managed Service Provider or customer support function
- Prior knowledge of common network-based services and common client/server applications
- Excellent communication and interpersonal skills
- Strong and demonstrated ability to define effective security processes. Ability to identify opportunities in current processes and take action to roll out necessary changes.
- Strong and practical knowledge of industry adopted frameworks and methodologies (MITRE ATT&CK, CIS, NIST, ISO, PCI-DSS, etc.)
- Experience developing technical documentation, including reports, dashboards, Standard Operating Procedures (SOP), and Knowledge Base articles
- Previous experience with vulnerability scanning tools
- Prior experience working in a SOAR platform
- Ability to work in a dynamic 24/7/365 shift environment
- Preferred experience working for a Managed Services Security Provider (MSSP) and/or Managed Detection and Response (MDR) provider
- Ability to collaborate within a technical team and mentor others
- Passion for Cybersecurity. Continually learning new attack vectors, new threats, and security framework expertise.
- We ideally seek one of the following security certifications: GIAC, SSCP, CISSP, CISM, or other security related certifications