Senior Security Operations Analyst

Anduril Anduril · Defense · Costa Mesa, CA · Corporate Technology : Information Systems

Senior Security Operations Analyst at Anduril, a defense technology company. The role involves monitoring and responding to adversarial activity, threat hunting, and improving detection capabilities. Requires experience in security monitoring, log analysis, detection engineering, Python development for SOC automation, and SIEM languages. Must be able to obtain a U.S. Top Secret security clearance.

What you'd actually do

  1. Triage and respond to alerts / incidents covering multiple disciplines including, but not limited to, phishing, endpoints, cloud infrastructure and services, and SaaS applications
  2. Build and optimize tailored detection signatures, response playbooks, and response automation using detection-as-code principles
  3. As the frontline of DNR, you will lead the feedback loop for detections, ensuring alerts are fine tuned to reduce false positives
  4. Participate in threat modeling scenarios with cross-functional partners to understand weaknesses across Cloud, Mobile, Endpoints, and other environments incorporating findings into security controls and/or detection signatures
  5. Organize and conduct threat hunting and data baselines to identify anomalous patterns in data

Skills

Required

  • security monitoring
  • log analysis
  • detection engineering
  • Python development
  • SIEM languages (SPL, KQL, SQL)
  • data lake analysis
  • endpoint security
  • network security
  • identity security
  • application security
  • cloud infrastructure security
  • attacker TTPs (Windows, Linux, MacOS, AWS/Azure)
  • communication skills
  • stakeholder collaboration

Nice to have

  • incident response in the Cloud (AWS, Azure, GCP)
  • Digital Forensics
  • reverse engineering

What the JD emphasized

  • Must have experience with one or more SIEM languages (SPL, KQL, SQL)
  • Must be able to obtain and hold a U.S. Top Secret security clearance