Veritas Trace
Threat Investigation Analyst at Veritas Trace in New York, NY
Job Description
Job Overview
We are seeking a dynamic and detail-oriented Threat Investigation Analyst to join our cybersecurity team. In this role, you will be at the forefront of safeguarding our digital assets by conducting comprehensive security investigations, analyzing threat data, and supporting incident response efforts. Your expertise will help us identify vulnerabilities, assess security risks, and implement effective mitigation strategies to ensure the integrity of our IT infrastructure. This position offers an exciting opportunity to contribute to a proactive security environment within a fast-paced organization committed to innovation and excellence.
Duties
- Lead security incident investigations by analyzing alerts from SIEM (Security Information and Event Management) systems and other cybersecurity tools to detect potential threats.
- Conduct vulnerability assessments and vulnerability research to identify weaknesses within network infrastructure, operating systems, and applications.
- Perform security risk assessments in compliance with ISO 27001, NIST standards, and other relevant frameworks to evaluate security posture.
- Collaborate with network engineering teams to analyze network protocols such as TCP/IP, IPsec, LAN/WAN configurations, routing protocols (OSPF, BGP), and firewall rules (Cisco ASA, Cisco ISE).
- Utilize cybersecurity tools like Nmap, Splunk, SolarWinds, Fiddler, and open-source utilities for threat detection, log analysis, and system hardening.
- Support incident response activities including incident recovery, system security hardening, and implementing remediation plans following security breaches or vulnerabilities.
- Maintain detailed documentation of investigation findings, security assessments, and system security plans aligned with compliance standards such as PCI DSS and FedRAMP.
Requirements
- Proven experience in cybersecurity analysis with a strong understanding of computer networking concepts including LAN/WAN architecture, routing protocols, VPNs, DNS, DHCP, and network support.
- Hands-on knowledge of security engineering principles involving firewalls (Cisco ASA), endpoint detection and response (EDR), IDS/IPS (Intrusion Detection/Prevention Systems), SIEM platforms like Splunk or SolarWinds, and cloud security architecture (AWS or Azure).
- Familiarity with information security standards such as ISO 27000 series (ISO 27001/ISO 27002), FIPS compliance, NIST frameworks, and risk management frameworks (RMF).
- Ability to perform vulnerability management tasks including vulnerability assessment tools like Nessus or OpenVAS; vulnerability research; and system hardening techniques on various operating systems including Windows, Linux distributions (Debian, CentOS), macOS, Android, and openSUSE.
- Strong analytical skills in threat detection & response activities; experience with threat intelligence platforms; knowledge of attack frameworks; and proficiency in scripting languages such as Python or Bash for automation purposes.
- Excellent communication skills for documenting findings clearly and collaborating effectively across technical teams while maintaining a focus on information security compliance.
- Relevant certifications such as CISSP, CEH (Certified Ethical Hacker), Security+ or GIAC certifications are preferred but not mandatory.
Join us to be part of an innovative team dedicated to protecting our digital environment through proactive threat investigation and robust cybersecurity practices!
Pay: $45.00 - $60.00 per hour
Benefits:
- 401(k)
- Employee assistance program
- Flexible schedule
Work Location: In person