Senior Information Security Analyst

Computer Task Group, IncAnchorage, AK
Hybrid

About The Position

We are seeking a Senior Security Analyst to support advanced cybersecurity operations in a hybrid Azure and on-premises enterprise environment. This role will lead detection engineering, threat hunting, incident response, and security automation efforts while optimizing Palo Alto Cortex XDR/XSIAM and related security platforms. The ideal candidate will have strong experience with SIEM/SOAR technologies, incident response, MITRE ATT&CK–aligned detection development, and enterprise security operations.

Requirements

  • 5–8 years of cybersecurity operations, detection engineering, or incident response experience
  • Hands-on experience with Palo Alto Cortex XDR and Cortex XSIAM
  • Strong experience with SIEM/SOAR platforms and detection engineering
  • Experience with XQL and/or KQL query development
  • Knowledge of MITRE ATT&CK framework and threat detection methodologies
  • Experience supporting hybrid Azure and on-premises environments
  • Strong understanding of endpoint, identity, email, DNS, and network security
  • Excellent troubleshooting, analytical, and communication skills
  • Excellent verbal and written English communication skills and the ability to interact professionally with a diverse group are required.

Nice To Haves

  • Experience with Microsoft Entra ID and Microsoft Defender XDR
  • Experience with Palo Alto NGFW/Panorama, Proofpoint, Varonis, Qualys, Infoblox, Cloudflare, or Darktrace
  • Experience supporting CJIS, HIPAA, or PCI DSS compliance environments
  • Relevant certifications such as CISSP, GCIH, GCIA, SC-200, AZ-500, or PCNSE

Responsibilities

  • Configure, tune, and optimize Palo Alto Cortex XDR and Cortex XSIAM
  • Build and maintain detection content aligned to MITRE ATT&CK
  • Conduct proactive threat hunting using XQL, KQL, and related query languages
  • Lead end-to-end incident response activities including triage, containment, eradication, recovery, and reporting
  • Develop and maintain SOAR playbooks and security automation workflows
  • Integrate and support enterprise security platforms and telemetry sources
  • Support log onboarding, normalization, parser configuration, and alert tuning
  • Create executive-level incident reports and technical documentation
  • Collaborate with internal security teams and infrastructure stakeholders
  • Mentor junior analysts and support knowledge transfer initiatives

Benefits

  • Training
  • Benefits
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service