Back to all jobs

[Remote] Security Analyst

Work from home Full-time role Hiring

Note: The job is a remote job and is open to candidates in USA. Criterion Systems, a Cherokee Federal company, is seeking a motivated Security Analyst to support cybersecurity operations in a federal environment. The selected candidate will perform hands-on detection, analysis, investigation, threat hunting, and incident response activities while helping strengthen the organization's security posture.

Responsibilities

  • Monitor and analyze security events utilizing Splunk Enterprise Security (ES)
  • Build, maintain, and tune Splunk searches, correlation rules, alerts, and dashboards
  • Conduct incident response activities from detection through containment, eradication, recovery, and closure
  • Investigate endpoint security incidents utilizing Microsoft Defender for Endpoint
  • Perform endpoint policy management and incident investigations
  • Assess AWS cloud security telemetry utilizing GuardDuty, Security Hub, and related cloud security services
  • Identify threats, vulnerabilities, suspicious activity, and cloud misconfigurations
  • Execute alert triage, incident scoping, and escalation activities according to established playbooks
  • Recommend updates and improvements to operational procedures and incident response playbooks
  • Support threat hunting activities and detection engineering initiatives aligned to MITRE ATT&CK methodologies
  • Perform phishing investigations, alert enrichment, and forensic review activities
  • Conduct root cause analysis and document corrective actions following security incidents
  • Track incidents and operational tasks utilizing case management systems
  • Participate in tabletop exercises and operational readiness activities
  • Collaborate with Security Operations teams, Incident Response personnel, and federal stakeholders
  • Prepare reports and communicate findings to technical and non-technical audiences
  • Perform other job-related duties as assigned

Skills

  • This position requires an active Public Trust clearance or the ability to obtain and maintain one
  • Three (3) to five (5) years of experience in cybersecurity operations, SOC analysis, incident response, or related security disciplines
  • Demonstrated hands-on experience with Splunk Enterprise Security, including search development, dashboard creation, and correlation rule tuning
  • Experience utilizing Microsoft Defender for Endpoint for security investigations and policy management
  • Working knowledge of AWS cloud security technologies, including GuardDuty, Security Hub, or equivalent tools
  • Proven experience managing incidents through the complete incident response lifecycle
  • Working knowledge of MITRE ATT&CK framework and common threat actor tactics, techniques, and procedures
  • Familiarity with incident response methodologies and frameworks such as NIST 800-61
  • Strong analytical, investigative, and problem-solving capabilities
  • Excellent written and verbal communication skills
  • Experience supporting federal government customers or highly regulated environments
  • Ability to work independently while collaborating effectively with cross-functional teams
  • Experience with Security Orchestration, Automation, and Response (SOAR) platforms
  • Experience developing automation scripts utilizing Python, PowerShell, or similar technologies
  • Familiarity with FISMA, FedRAMP, CMMC, or other federal cybersecurity compliance frameworks
  • Experience with Network Detection and Response (NDR) technologies
  • Exposure to packet capture analysis and network forensics platforms
  • Knowledge of malware analysis methodologies and digital forensics fundamentals
  • Industry certifications such as Security+, CySA+, GCIH, GCIA, CEH, or equivalent

Benefits

  • Medical
  • Dental
  • Vision
  • 401(k)
  • Paid Time Off
  • Life Insurance
  • Disability Coverage

Company Overview

  • Cherokee Federal, a division of Cherokee Nation Businesses, is a trusted team of government contracting professionals who can rapidly build innovative solutions. It was founded in 1969, and is headquartered in Tulsa, Oklahoma, USA, with a workforce of 5001-10000 employees. Its website is https://cherokee-federal.com.
  • Apply To This Job

    More remote roles to explore

    [Remote] Remote Accountants & Auditors

    Work from home Full-time role

    [Remote] Customer Service Representative

    Work from home Full-time role

    [Remote] Senior IT Business Analyst

    Work from home Full-time role

    [Remote] Remote Sales Supervisor (Wholesale)

    Work from home Full-time role

    [Remote] Facets Consultant

    Work from home Full-time role

    [Remote] Remote Securities, Commodities & Financial Services Sales Agents

    Work from home Full-time role

    [Remote] Remote Healthcare Services Manager

    Work from home Full-time role

    [Remote] Program Manager - Department of War

    Work from home Full-time role

    [Remote] Account Manager, Media

    Work from home Full-time role

    [Remote] Clinical Development Consultant

    Work from home Full-time role

    Remote/Hybrid Registered Nurse (RN) – Advocacy & Program Integrity (Medical Assistance- Med Surg Hospitalization Expert)

    Work from home Full-time role

    ISO 27001 Analyst - LATAM

    Work from home Full-time role

    Director, Corporate Account (CVS Vertical) - Kaiser, VA, DoD, Tricare, DHA, Medicaid

    Work from home Full-time role

    Business Operations Specialist

    Work from home Full-time role

    Director/Sr. Director, Growth Marketing (SEM and Paid)

    Work from home Full-time role

    Data Collection Systems Developer - Remote

    Work from home Full-time role

    Experienced Data Entry Specialist – Work From Home Opportunity with arenaflex

    Work from home Full-time role

    DISPATCHER (Jonesboro, AR, US, 72403)

    Work from home Full-time role

    Structural Technical Manager

    Work from home Full-time role

    Principal Engineer, Ford Mobile Applications

    Work from home Full-time role