Cyber Security Analyst

SwoonPlano, United States
ContractOn-siteMidLimited info disclosed
11 views0 applications

Description

Cyber Threat Analyst Industry: Global Restaurant and Hospitality Location: Plano, TX Work Arrangement: Hybrid — onsite 2 days per week Pay Rate: $51/hour Experience Level: 2–4 years Extension/Conversion: Potential based on performance A global restaurant and hospitality organization is seeking a Cyber Threat Analyst to support its Global Security Operations team. This position is focused on Cyber Threat Intelligence operations , not traditional threat hunting. The analyst will manage the day-to-day operation of the organization's threat intelligence platform, investigate suspicious activity, enrich security alerts, and produce actionable intelligence for technical teams and leadership. Responsibilities Manage and monitor the daily operations of the Recorded Future platform. Use Recorded Future for threat enrichment, investigations, threat-actor research, and intelligence reporting. Monitor and analyze alerts across SIEM, EDR, identity, network, and cloud-security platforms. Investigate suspicious activity and determine severity, scope, root cause, and business impact. Review and validate indicators of compromise. Correlate endpoint, network, identity, cloud, and vulnerability data. Determine whether alerts are legitimate threats or false positives. Escalate confirmed threats with clear evidence and documentation. Recommend containment, remediation, and risk-reduction actions. Produce weekly threat intelligence and operational reports. Present technical findings clearly to security teams and senior leadership. Support global vulnerability-management and security-operations initiatives. Maintain and improve intelligence workflows, dashboards, queries, and correlation rules. Collaborate with incident response, security engineering, threat hunting, and global security teams. Required Qualifications 2–4 years of experience in Cyber Threat Intelligence, Security Operations, Incident Response, or Cyber Threat Analysis. Hands-on experience with Recorded Future is required . Experience configuring, managing, or operationalizing Recorded Future. Experience with at least one SIEM platform: Microsoft Sentinel Splunk IBM QRadar Experience with at least one EDR platform: Cortex XDR Microsoft Defender CrowdStrike Carbon Black Understanding of the cyber threat intelligence lifecycle. Experience analyzing indicators of compromise and threat-actor activity. Experience triaging, investigating, and escalating cybersecurity alerts. Familiarity with MITRE ATT&CK and the cyber kill chain. Strong analytical, investigative, documentation, and communication skills. Ability to independently manage daily operational responsibilities. Must be local to the Plano area and available onsite 2 days per week. Preferred Qualifications Experience with Palo Alto Networks security products or Cortex XDR. Familiarity with Microsoft Entra ID, IAM, or identity-security tools. Basic cloud-security knowledge within AWS, Azure, or Google Cloud Platform. Experience maintaining SIEM queries, dashboards, detection rules, or correlation rules. Familiarity with KQL, Python, PowerShell, or SQL. Security+, GSEC, GCIH, or a similar cybersecurity certification. This is a high-visibility opportunity to help build and mature a global Cyber Threat Intelligence function. The position offers potential extension or conversion and a possible path into a Lead-level Cyber Threat Intelligence role. Interested candidates are encouraged to apply or message me directly with an updated resume.