Remote Cybersecurity Analyst - Protect & Respond
Job description
Remote Cybersecurity Analyst - Protect & Respond at Liveblog365.
About the role
You will oversee the security posture of distributed enterprise environments by architecting and tuning detection logic for next-generation security tools. You will lead incident investigations from initial alert through remediation, ensuring that response actions align with industry frameworks and regulatory obligations. You will collaborate with engineering and operations teams to embed security into deployment pipelines and infrastructure designs. You will own the continuous refinement of playbooks, threat models, and runbooks to improve mean time to detect and mean time to respond. You will mentor junior analysts by providing clear guidance, code reviews, and constructive feedback on telemetry and findings. You will represent the security function in cross-functional discussions, translating technical risks into business impact for leadership. You will validate third-party integrations and cloud configurations to ensure that security controls are enforced consistently across the environment. You will maintain a proactive posture by researching threat intelligence and applying lessons learned to strengthen long-term resilience.
Key facts
What you'll do
- Establish baseline visibility across endpoints, identities, and cloud workloads using SIEM and EDR telemetry.
- Design and tune correlation rules, use cases, and detection logic to surface advanced persistent threats and insider risks.
- Execute vulnerability management workflows, prioritizing remediation based on exploitability and business criticality.
- Conduct digital forensics and malware analysis to determine root cause, lateral movement, and data exfiltration paths.
- Coordinate with incident commanders during major events, providing technical context and status updates to stakeholders.
- Assess cloud security posture by reviewing identity policies, network segmentation, and configuration drift.
- Perform red team exercises and penetration tests to validate control effectiveness and identify hidden attack paths.
- Document compliance evidence for audits, mapping findings to frameworks such as NIST, ISO, and industry-specific standards.
- Analyze security metrics and produce executive reports that highlight trends, risk exposure, and program maturity.
- Partner with vendors to evaluate new security tools, negotiate contracts, and define integration requirements.
- Automate repetitive investigative tasks using scripting and orchestration platforms to improve scalability.
- Collaborate with product teams to embed secure design principles and secure coding practices into releases.
- Monitor threat intelligence feeds and adversary tactics to update detection hypotheses and hunting queries.
- Support security awareness initiatives by creating scenarios, simulations, and training content for end users.
- Maintain an inventory of tools, dashboards, and runbooks to ensure operational consistency and knowledge continuity.
Requirements
- Hold a Bachelor's degree in Cybersecurity, Information Technology, or Computer Science from an accredited institution.
- Possess industry certifications such as CISSP, CISM, CEH, or reputable cybersecurity certifications that validate technical expertise.
- Demonstrate 5-7 years of hands-on cybersecurity experience focused on detection, response, and security operations.
- Show advanced familiarity with firewalls, SIEM platforms, intrusion detection systems, and endpoint protection solutions.
- Exhibit strong analytical and problem-solving abilities when dealing with complex, multi-vector incidents.
- Communicate effectively in remote settings, articulating technical concepts to both technical and non-technical audiences.
- Proven capacity to work independently with minimal supervision while managing multiple priorities in a fast-paced environment.
- Experience with scripting and automation to enhance security processes and reduce manual overhead.
- Understanding of cloud security models, identity and access management, and data protection principles.
- Commitment to maintaining professional ethics, confidentiality, and integrity when handling sensitive information.
- Willingness to participate in on-call rotations and respond to security incidents outside standard business hours.
- Alignment with industry frameworks and compliance requirements relevant to regulated environments.
- Demonstrated ability to learn new technologies quickly and adapt to evolving threat landscapes.
- Track record of contributing to security best practices, standards, and internal program improvements.
Practical notes
Hours: Remote, full-time role with flexible scheduling within core business hours.
Travel: None required.
Visa: Open to remote candidates where legal constraints allow.
Deadlines: Apply promptly as roles close on a rolling basis.