We are thrilled to announce an exciting opportunity for a Security Specialist to join our dynamic team in Carlsbad, CA! This hybrid role offers the unique blend of working collaboratively within our Carlsbad office and the flexibility of remote work. The Security Specialist will form part of the global 24 x7 security team that monitors the network for suspicious activity and supports incident response activities. All of Viasat’s networks are covered by this group, including those supporting the US government, as well as commercial interests. This role combines portions of traditional Tier I/II/III SOC responsibilities to include alert triaging, detailed incident handling across online and on-premise infrastructure, following an incident response process to contain & mitigate security risks, and supporting threat hunting activities. Your mission is to perform: Security Monitoring: review alerts within SIEM/SOAR platforms and manage security cases & tickets, conduct initial security incident analysis to ensure timely response. Incident Response: drive the entire incident response lifecycle from initial triage and in-depth investigation to rapid containment and effective remediation of active security threats. Advance Detection: collaborate with Detection Engineers to rapidly develop and deploy new detections, composite rules, and dashboards based on discovered threat Tactics, Techniques, and Procedures (TTPs). CTI-Driven Threat Hunts: collaborate closely with the Cyber Threat Intelligence (CTI) team to analyze relevant intel, extract actionable insights, and detect potential Indicators of Compromise (IoC) associated with Advanced Persistent Threats (APTs). A typical day involves a blend of deep investigation, collaboration, and continuous learning: Monitoring & Triaging Alerts: security monitoring, managing security cases & tickets, security incident analysis, and other security tasks. Security Log Reviews: analyzing a variety of security logs to identify actionable events (SIEM reports-alerts-tickets, system, network, security monitoring tools). Event Analysis: determine the attack type and scope based on the triage of events collected. Problem Solving: use critical thinking to navigate complex problem-sets (technical and non-technical) with real-world impacts to business and stakeholders when triaging system & network events. Documentation: capture all investigative, response, and remediation activities within the case management platform Ensure each case includes a detailed triage, captured artifacts, and any IOCs to support clear tracking of security team efforts of associated tasks. Detection Tuning: provide feedback into the design, implementation, and administration of security tools/ rules to reduce false positives. Mitigation Support: analyze data sets, determine the gaps and recommend fixes to appropriate stakeholders. Reporting: document and communicate findings clearly to both technical and non-technical stakeholders, detailing the threat, its potential impact, and actionable remediation steps.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Mid Level