
Security Analyst I
About the role
Minimum qualifications:
- Bachelor's degree in Cyber security, Information Technology or a relevant field, or equivalent practical experience.
- 2 years of experience in a SOC environment or Information Security role.
Preferred qualifications:
- Experience with scripting.
- Experience working with Artificial Intelligence.
About the job
As an Associate Security Analyst in the Mandiant Threat Defense (MTD) SOC, you are the frontline defense against evil. You will move beyond simple alert validation to perform deep-dive investigations. You will leverage Google Sec Ops and Mandiant’s frontline intelligence to identify novel attacks from infected USB drives to job opportunity phishing campaigns by nation state threat actors.
You are a cyber security enthusiast, part of an incredible team, who will constantly strive to improve execution, automate repetitive tasks, and change the way we do security.
Part of Google Cloud, Mandiant is a recognized leader in dynamic cyber defense, threat intelligence and incident response services. Mandiant's cybersecurity expertise has earned the trust of security professionals and company executives around the world. Our unique combination of renowned frontline experience responding to some of the most complex breaches, nation-state grade threat intelligence, machine intelligence, and the industry's best security validation ensures that Mandiant knows more about today's advanced threats than anyone.
Responsibilities
- Analyze real-time security events across end-point, network, and cloud environments using a centralized analyst console and SIEM/Google Sec Ops platform.
- Conduct host and network forensic analysis to support incident response efforts, understanding attacker activity, and assessing customer impact.
- Execute basic static and dynamic analysis of suspicious files to determine capabilities (e.g., identifying GOOTLOADER JavaScript or CORNFLAKE.V3 backdoors).
- Determine the severity, impact, and scope of security incidents and compromises.
- Isolate compromised hosts and stop lateral movement or ransomware propagation.
About Google
Dublin
Headquarters