Anduril Industries

Security Operations Analyst

Anduril Industries$129K — $171K *
Technical Services
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 5-7 years of experience in security monitoring and detection engineering with large data sets
  • Proficiency in Python for automating SOC operations
  • Familiarity with SIEM languages such as SPL, KQL, or SQL
  • Experience analyzing data within a data lake environment
  • Broad knowledge of security across endpoints, networks, identity, applications, and cloud infrastructure
  • Understanding of attacker TTPs across various operating systems and cloud services
  • Strong communication skills for effective collaboration with stakeholders

Responsibilities

  • Triage and respond to security alerts and incidents across multiple domains
  • Create and refine detection signatures, response playbooks, and automation processes
  • Lead feedback sessions to enhance alert accuracy and reduce false positives
  • Engage in threat modeling with cross-functional partners to address security weaknesses
  • Conduct threat hunting and establish data baselines to uncover anomalies
  • Participate in an on-call rotation for security events and incidents, serving as an incident commander when needed
  • Mentor junior analysts and lead initiatives to improve detection and response capabilities

Benefits

  • Comprehensive benefits package at little to no cost to employees
  • Health and recovery support
  • Investment in employee development
  • Competitive equity grants included in full-time offers
Full Job Description
ABOUT THE TEAM

Anduril's Detection and Response team is looking for a Security Operations Analyst to be the watchtower for Anduril's critical defense technologies. As a SecOps Analyst on the detection and response team, you'll be responsible for monitoring and responding to adversarial activity while helping incorporate key detection feedback loops with the detection engineering team. As a Senior SecOps Analyst, you will serve as an incident commander alongside other senior analysts. When not responding to threats, you'll be asking questions of our data sets, conducting threat hunting and data normalization operations across the organization to understand user behavior and identify anomalies.
WHAT YOU'LL DO
  • Triage and respond to alerts / incidents covering multiple disciplines including, but not limited to, phishing, endpoints, cloud infrastructure and services, and SaaS applications
  • Build and optimize tailored detection signatures, response playbooks, and response automation using detection-as-code principles
  • As the frontline of DNR, you will lead the feedback loop for detections, ensuring alerts are fine tuned to reduce false positives
  • Participate in threat modeling scenarios with cross-functional partners to understand weaknesses across Cloud, Mobile, Endpoints, and other environments incorporating findings into security controls and/or detection signatures
  • Organize and conduct threat hunting and data baselines to identify anomalous patterns in data
  • Participate in an on-call rotation responding to security events and conducting incident response investigations while effectively communicating findings to key stakeholders. As a Senior SecOps Analyst, you will serve as an incident commander as necessary.
  • Proactively collaborate with a wide range of stakeholders, guiding detection and response maturity of key worlds, leading incidents and large-scale data baselines, and being responsible with mentoring and guiding junior analysts.
REQUIRED QUALIFICATIONS
  • Experience in security monitoring, log analysis, and detection engineering within large data sets across endpoint, network, and a wide variety of application log sources
  • Experience in Python development, specifically contributing to a shared codebase used for automating SOC operations
  • Must have experience with one or more SIEM languages (SPL, KQL, SQL)
  • Experience conducting analysis in a data lake environment
  • Broad range of practical security knowledge across the spectrum of endpoint, network, identity, application, and cloud infrastructure
  • Knowledge of attacker tactics, techniques, and procedures (TTPs) across Windows, Linux, MacOS, AWS/Azure, etc.
  • Strong communication skills and experience collaborating with internal and external stakeholders
  • Must be able to obtain and hold a U.S. Top Secret security clearance
PREFERRED QUALIFICATIONS
  • Experience conducting incident response in the Cloud (AWS, Azure, GCP)
  • Digital Forensics and/or reverse engineering experience is a plus!


US Salary Range

$129,000-$171,000 USD

The salary range for this role is an estimate based on a wide range of compensation factors, inclusive of base salary only. Actual salary offer may vary based on (but not limited to) work experience, education and/or training, critical skills, and/or business considerations. Highly competitive equity grants are included in the majority of full time offers; and are considered part of Anduril's total compensation package. Additionally, Anduril offers top-tier benefits for full-time employees, including:

Benefits

At Anduril, we invest in our people. Our comprehensive, competitive benefits package (available at little to no cost to employees) ensures you're supported in health, recovery, and whatever comes next. For more information, Explore Our Benefits.

About Anduril Industries

Anduril Industries is a defense technology company that develops advanced systems for the military. The company was founded in 2017 by Palmer Luckey, Trae Stephens, and Matt Grimm, and has since grown to become a major player in the defense industry. Anduril's products include autonomous drones, surveillance systems, and other advanced technologies that are designed to enhance military capabilities. The company has received significant funding from investors and has partnerships with several major defense contractors. Anduril is headquartered in Mountain View, California.
Learn more about Anduril Industries
Size
200 employees
Industry
Founded
2017

Similar Jobs

More Jobs at Anduril Industries

More Technical Services Jobs

Find similar Security Operations Analyst jobs: