Security Analyst – Endpoint Security & Infrastructure
Work Mode: Onsite
Employment Type: Full-Time
Eligibility: Authorized to work in the US without sponsorship
Experience: 5+ Years
This role will be responsible for monitoring, analyzing, and responding to security events while partnering closely with Infrastructure, Cloud, and IT Operations teams to ensure a secure and compliant environment.
- Administer, monitor, and optimize SentinelOne and Trend Micro security platforms.
- Investigate and respond to security alerts, incidents, and suspicious activities.
- Perform threat hunting, malware analysis, and endpoint security monitoring.
- Monitor security dashboards and analyze logs to identify potential threats and vulnerabilities.
- Collaborate with Infrastructure, Cloud, and IT teams to implement security controls and remediation measures.
- Support vulnerability assessments, patch management, and security hardening initiatives.
- Manage endpoint protection policies, security configurations, and compliance requirements.
- Assist in incident response activities, root cause analysis, and post-incident reviews.
- Review and maintain security documentation, policies, standards, and procedures.
- Participate in security audits, risk assessments, and compliance initiatives.
- Support identity and access management, authentication, and security governance activities.
- Recommend and implement security improvements across cloud and on-premises environments.
Requirements
- 5+ years of experience in Cybersecurity, Security Operations, or Security Analysis roles.
- Hands-on experience with SentinelOne endpoint protection and EDR solutions.
- Hands-on experience with Trend Micro security products and administration.
- Strong knowledge of endpoint security, threat detection, malware analysis, and incident response.
- Experience monitoring and responding to security events in enterprise environments.
- Knowledge of security frameworks, vulnerability management, and risk assessment methodologies.
- Understanding of Windows and Linux operating systems from a security perspective.
- Experience with Active Directory, Azure AD, MFA, VPNs, and access controls.
- Familiarity with cloud security concepts in AWS and/or Azure environments.
- Experience with SIEM tools, log analysis, and security monitoring platforms.
- Strong analytical, troubleshooting, and investigative skills.
- Experience with Microsoft Defender, CrowdStrike, Rapid7, Tenable, or similar security tools.
- Security certifications such as Security+, CySA+, GSEC, CISSP, CEH, or equivalent.
- Experience with compliance frameworks such as HIPAA, NIST, ISO 27001, or SOC 2.
- Experience with PowerShell, Python, or Bash scripting for security automation.
- Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field.
- Excellent communication and documentation skills.
- Strong problem-solving and analytical mindset.
- Ability to prioritize and manage multiple security initiatives.
- Collaborative approach when working with IT, Infrastructure, and business teams.
- Ability to perform effectively in fast-paced environments.
- Onsite role based in Daly City, CA.
- Authorized to work in the US without sponsorship
- Immediate joiners preferred