TikTok
Senior Security Analyst - Incident Response, Global Insider Risk
TikTok, San Jose, California, United States, 95199
Senior Security Analyst - Incident Response, Global Insider Risk
3 days ago Be among the first 25 applicants Responsibilities
Analyze and validate large and complex datasets to identify potential threats and develop detection logic to mitigate risks. Triage, investigate, and conduct end to end incident response processes for security incidents from various sources including SIEM, DLP, UEBA, and endpoint tools. Respond to security incidents in real-time and participate in root cause analysis, escalation, and incident recovery efforts. Coordinate with system owners, data teams, and business units to enhance detection logic, data, reduce false positives, and refine workflows. Create and maintain dashboards to support threat hunting, investigations, and operational reporting. Communicate findings, risk posture, and recommended remediation steps clearly to both technical and non-technical stakeholders. Partner with cross-functional teams to identify process improvements and implement scalable security solutions. Contribute to continuous improvement efforts in detection coverage, response readiness, and insider threat frameworks. Qualifications
Minimum Qualification(s): Previous experience working on an infosec/corpsec team on incident response and detection engineering. Excellent analytical, critical thinking, and problem-solving skills with a high attention to detail. Proficiency with security technologies such as SIEM, DLP, UEBA, and UAM tools. Ability to assess and prioritize risks in real-time in a dynamic environment. Passionately about staying ahead of emerging threats and continuously improving security posture. Preferred Qualification(s): Bachelor's degree in Cybersecurity, Engineering, Information Systems, or a related discipline, or equivalent experience in military, government, or commercial environments. 5+ years of hands-on experience in cybersecurity with a focus on incident response or insider risk. Exposure to artificial intelligence (AI) and machine learning (ML) techniques to enhance threat detection and workflow automation. Strong understanding of threat intelligence platforms, TTPs, and threat modeling. Excellent ability to distill complex findings into actionable insights including to stakeholders where English may not be their primary language. Strong interpersonal skills and ability to work effectively across global, cross-functional teams. Demonstrated ability to manage competing priorities and operate independently.
#J-18808-Ljbffr
3 days ago Be among the first 25 applicants Responsibilities
Analyze and validate large and complex datasets to identify potential threats and develop detection logic to mitigate risks. Triage, investigate, and conduct end to end incident response processes for security incidents from various sources including SIEM, DLP, UEBA, and endpoint tools. Respond to security incidents in real-time and participate in root cause analysis, escalation, and incident recovery efforts. Coordinate with system owners, data teams, and business units to enhance detection logic, data, reduce false positives, and refine workflows. Create and maintain dashboards to support threat hunting, investigations, and operational reporting. Communicate findings, risk posture, and recommended remediation steps clearly to both technical and non-technical stakeholders. Partner with cross-functional teams to identify process improvements and implement scalable security solutions. Contribute to continuous improvement efforts in detection coverage, response readiness, and insider threat frameworks. Qualifications
Minimum Qualification(s): Previous experience working on an infosec/corpsec team on incident response and detection engineering. Excellent analytical, critical thinking, and problem-solving skills with a high attention to detail. Proficiency with security technologies such as SIEM, DLP, UEBA, and UAM tools. Ability to assess and prioritize risks in real-time in a dynamic environment. Passionately about staying ahead of emerging threats and continuously improving security posture. Preferred Qualification(s): Bachelor's degree in Cybersecurity, Engineering, Information Systems, or a related discipline, or equivalent experience in military, government, or commercial environments. 5+ years of hands-on experience in cybersecurity with a focus on incident response or insider risk. Exposure to artificial intelligence (AI) and machine learning (ML) techniques to enhance threat detection and workflow automation. Strong understanding of threat intelligence platforms, TTPs, and threat modeling. Excellent ability to distill complex findings into actionable insights including to stakeholders where English may not be their primary language. Strong interpersonal skills and ability to work effectively across global, cross-functional teams. Demonstrated ability to manage competing priorities and operate independently.
#J-18808-Ljbffr