411 Remote Senior Information Security Analyst Threat Detection jobs in Kenya
Remote Information Security Analyst - Threat Detection
Posted 24 days ago
Job Viewed
Job Description
Responsibilities:
- Monitor security alerts and logs from various sources (SIEM, IDS/IPS, EDR, etc.) to detect and investigate potential security threats.
- Analyze security events to determine the nature, scope, and impact of incidents.
- Perform forensic analysis of security breaches and provide detailed reports on findings and recommendations.
- Develop and maintain threat intelligence capabilities, staying informed about emerging threats and vulnerabilities.
- Implement and fine-tune security tools and technologies for effective threat detection.
- Participate in incident response activities, including containment, eradication, and recovery efforts.
- Collaborate with IT and other teams to implement security best practices and remediation measures.
- Conduct vulnerability assessments and penetration testing to identify and address security weaknesses.
- Develop and document security incident response procedures and playbooks.
- Provide security awareness training to employees as needed.
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field.
- Minimum of 5 years of experience in information security, with a strong focus on threat detection, incident response, and security operations.
- Proficiency in using SIEM tools (e.g., Splunk, QRadar, ELK Stack) and other security monitoring technologies.
- Solid understanding of network security, operating system security, and common attack vectors.
- Experience with malware analysis, digital forensics, and incident handling frameworks.
- Knowledge of security frameworks (e.g., NIST, ISO 27001) and compliance requirements.
- Relevant security certifications such as CISSP, CEH, GIAC, or CompTIA Security+ are highly desirable.
- Excellent analytical, problem-solving, and critical thinking skills.
- Strong communication and collaboration skills, essential for effective remote teamwork.
- Ability to work independently, prioritize tasks, and perform under pressure.
- This is a fully remote opportunity, enabling you to apply your cybersecurity skills from anywhere. The role's administrative office is in Kisumu, Kisumu, KE , but the work itself is performed remotely.
Remote Information Security Analyst - Threat Detection & Incident Response
Posted 4 days ago
Job Viewed
Job Description
Responsibilities:
- Monitor security information and event management (SIEM) systems for suspicious activities and potential threats.
- Analyze security alerts, logs, and network traffic to identify and validate security incidents.
- Conduct thorough investigations of security breaches and provide detailed incident response reports.
- Develop and implement incident response plans and procedures.
- Perform vulnerability assessments and penetration testing to identify security weaknesses.
- Recommend and implement security controls and configurations to mitigate identified risks.
- Stay updated on the latest cybersecurity threats, vulnerabilities, and attack vectors.
- Collaborate with IT and other teams to implement security best practices across the organization.
- Develop and maintain security documentation, policies, and procedures.
- Conduct security awareness training for employees.
- Assist in the management of security tools and technologies.
- Participate in security audits and compliance efforts.
- Continuously evaluate and improve the effectiveness of security monitoring and response capabilities.
- Provide expertise on security matters to stakeholders across the organization.
- Contribute to the development of threat intelligence capabilities.
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field.
- Minimum of 3-5 years of experience in information security, with a focus on threat detection and incident response.
- Strong understanding of networking protocols, operating systems, and cybersecurity principles.
- Experience with SIEM tools (e.g., Splunk, QRadar, ELK Stack) and security technologies (e.g., firewalls, IDS/IPS, EDR).
- Proficiency in analyzing security logs and network traffic.
- Knowledge of incident response frameworks (e.g., NIST, SANS).
- Excellent analytical, problem-solving, and critical thinking skills.
- Strong communication and reporting skills, with the ability to explain technical concepts to non-technical audiences.
- Relevant security certifications such as Security+, CEH, CISSP are highly desirable.
- Ability to work independently and manage time effectively in a remote environment.
- This role is based in Mombasa, Mombasa, KE but is performed entirely remotely.
Senior Information Security Threat Analyst (Remote)
Posted 8 days ago
Job Viewed
Job Description
Key Responsibilities:
- Monitor security alerts and events from various sources (SIEM, IDS/IPS, EDR) to detect and identify potential cyber threats.
- Conduct in-depth investigations into security incidents, including malware analysis, forensic examination, and root cause determination.
- Perform threat hunting activities to proactively identify hidden threats within the network environment.
- Analyze threat intelligence from various feeds and sources to understand emerging threats and attacker tactics, techniques, and procedures (TTPs).
- Develop and implement detection rules and signatures to enhance security monitoring capabilities.
- Create comprehensive reports on security incidents, threat analyses, and recommendations for mitigation.
- Collaborate with incident response teams to contain, eradicate, and recover from security breaches.
- Stay current with the latest cybersecurity threats, vulnerabilities, and defensive technologies.
- Develop and maintain security documentation, playbooks, and procedures.
- Provide expert guidance and support to junior security analysts and other team members.
- Contribute to the continuous improvement of the SOC's tools, processes, and capabilities.
- Participate in tabletop exercises and incident response drills.
- Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or a related field.
- Minimum of 6 years of experience in information security, with a significant focus on threat analysis and incident response.
- Proven experience in analyzing malware, conducting forensic investigations, and understanding network protocols.
- Proficiency with security tools such as SIEM platforms (e.g., Splunk, QRadar), EDR solutions, and packet analysis tools (e.g., Wireshark).
- Strong understanding of common attack vectors, cyber threat landscapes, and threat actor TTPs.
- Experience with threat intelligence platforms and methodologies.
- Excellent analytical, problem-solving, and critical thinking skills.
- Exceptional written and verbal communication skills, with the ability to articulate technical findings clearly.
- Demonstrated ability to work independently and effectively in a remote, potentially 24/7 operational environment.
- Relevant certifications such as GIAC GCIH, GCFA, CEH, or CISSP are highly desirable.
Cybersecurity Threat Analyst
Posted 23 days ago
Job Viewed
Job Description
Key Responsibilities:
- Monitor security alerts and logs from various sources (SIEM, IDS/IPS, firewalls, endpoint detection) to identify potential threats.
- Analyze threat intelligence feeds, vulnerabilities, and attack trends to proactively identify risks.
- Investigate security incidents, determine root causes, and recommend appropriate remediation steps.
- Perform forensic analysis of security breaches to understand attack methodologies and impact.
- Develop and refine security detection rules and use cases for SIEM and other security tools.
- Create detailed incident reports, documenting findings, impact, and actions taken.
- Collaborate with incident response teams, IT, and other stakeholders to contain and eradicate threats.
- Stay up-to-date with the latest cybersecurity threats, vulnerabilities, and mitigation techniques.
- Participate in threat hunting exercises to proactively discover hidden threats within the environment.
- Contribute to the development and improvement of security policies and procedures.
- Maintain clear and concise communication regarding security posture and incidents in a remote setting.
- Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or a related field; relevant certifications (CISSP, CEH, GIAC) are highly valued.
- Minimum of 5 years of experience in cybersecurity operations, threat analysis, or incident response.
- Proven experience with Security Information and Event Management (SIEM) tools (e.g., Splunk, QRadar).
- Strong understanding of networking protocols, operating systems, and common attack vectors (malware, phishing, APTs, DDoS).
- Experience with endpoint detection and response (EDR) tools and techniques.
- Familiarity with scripting languages (e.g., Python, PowerShell) for automation is a plus.
- Excellent analytical, problem-solving, and critical thinking skills.
- Strong written and verbal communication skills for clear reporting and remote collaboration.
- Ability to work independently, prioritize tasks, and manage time effectively in a remote, high-pressure environment.
- Willingness to work flexible hours as required by the security operations rotation.
Lead Cybersecurity Threat Analyst
Posted 8 days ago
Job Viewed
Job Description
Principal Cybersecurity Threat Analyst
Posted 7 days ago
Job Viewed
Job Description
Senior Cybersecurity Threat Analyst
Posted 22 days ago
Job Viewed
Job Description
Be The First To Know
About the latest Remote senior information security analyst threat detection Jobs in Kenya !
Remote Cybersecurity Threat Analyst
Posted 22 days ago
Job Viewed
Job Description
Job Description
Responsibilities:
- Monitor and analyze security alerts from various sources (SIEM, IDS/IPS, endpoint detection).
- Investigate and respond to cybersecurity incidents, performing root cause analysis and containment.
- Conduct threat hunting activities to proactively identify potential threats that may have bypassed existing security controls.
- Gather, analyze, and disseminate threat intelligence from internal and external sources.
- Develop and maintain threat models based on current and emerging threat landscapes.
- Create detection rules and signatures to identify malicious activity.
- Provide technical expertise and guidance on threat mitigation strategies to IT and security teams.
- Document incident findings, analysis, and recommendations clearly and concisely.
- Stay current with the latest cybersecurity threats, vulnerabilities, and attack vectors.
- Participate in tabletop exercises and incident response drills.
- Assist in the development and improvement of incident response playbooks.
- Collaborate with other security analysts and engineers on defense-in-depth strategies.
- Present threat intelligence briefings to management and relevant stakeholders.
- Contribute to the continuous improvement of security monitoring and incident response capabilities.
- Ensure compliance with relevant security policies and regulatory requirements.
- Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or a related field.
- Minimum of 6 years of experience in cybersecurity, with a focus on threat analysis, incident response, or threat intelligence.
- Strong understanding of attacker methodologies (e.g., MITRE ATT&CK framework).
- Experience with SIEM tools (e.g., Splunk, ELK Stack), EDR solutions, and network forensics.
- Proficiency in malware analysis techniques and tools.
- Excellent analytical, problem-solving, and critical thinking skills.
- Strong written and verbal communication skills.
- Ability to work under pressure and make sound decisions during security incidents.
- Relevant certifications such as GIAC Certified Incident Handler (GCIH), Certified Threat Intelligence Analyst (CTIA), or similar are a plus.
- Experience with scripting languages (e.g., Python) for automation is beneficial.
Lead Cybersecurity Threat Analyst (Remote)
Posted 13 days ago
Job Viewed
Job Description
Responsibilities:
- Lead the threat intelligence gathering, analysis, and dissemination process.
- Develop and implement advanced threat detection and hunting methodologies.
- Analyze and interpret security alerts, logs, and network traffic for suspicious activities.
- Conduct in-depth investigations of security incidents, including root cause analysis and impact assessment.
- Develop and refine incident response playbooks and procedures.
- Provide technical leadership and mentorship to a team of cybersecurity analysts.
- Collaborate with IT and security teams to implement security controls and remediation efforts.
- Stay current with the latest threat actors, attack vectors, vulnerabilities, and cybersecurity trends.
- Develop and maintain threat models and risk assessments for the organization.
- Author clear and concise reports on threat landscape, incident findings, and recommendations for management.
- Utilize SIEM, EDR, SOAR, and other security tools for effective monitoring and response.
- Represent the security team in cross-functional meetings and discussions.
- Contribute to the continuous improvement of security operations processes and technologies.
- Manage and prioritize multiple ongoing investigations and projects.
- Bachelor's or Master's degree in Cybersecurity, Computer Science, Information Technology, or a related field.
- Minimum of 7 years of experience in cybersecurity, with a significant focus on threat analysis, incident response, or security operations.
- Proven experience leading a security analysis team.
- In-depth knowledge of various attack vectors, TTPs (Tactics, Techniques, and Procedures), and threat intelligence frameworks (e.g., MITRE ATT&CK).
- Expertise in utilizing SIEM platforms (e.g., Splunk, QRadar), EDR solutions, and network security monitoring tools.
- Experience with malware analysis (static and dynamic) and reverse engineering techniques is highly desirable.
- Strong understanding of networking protocols, operating systems (Windows, Linux), and cloud security concepts (AWS, Azure, GCP).
- Excellent analytical, problem-solving, and critical thinking skills.
- Strong written and verbal communication skills, with the ability to articulate technical concepts to diverse audiences.
- Ability to work independently, manage priorities effectively, and thrive in a fast-paced remote environment.
- Relevant certifications such as CISSP, GCTI, GCFA, CEH, or OSCP are a strong advantage.
- Must have a secure and reliable home office setup with high-speed internet.