Full Job Description
The Staff Security Analyst is an advanced security operations professional who leads the design, execution, and continuous improvement of Alkami's threat detection and incident response capabilities across the enterprise. This role applies broad technical expertise to solve highly complex security challenges, strengthen detection engineering, and influence operational security strategy through cross-functional collaboration and technical leadership. Operating with significant independence, the incumbent partners with engineering, infrastructure, cloud, and technology leaders to improve organizational resilience, mature security operations capabilities, and enable rapid, effective response to evolving cyber threats.
Key Responsibilities & Duties:
- Lead complex incident response activities, including containment, eradication, recovery, and post-incident improvements.
- Design, implement, and mature enterprise threat detection capabilities using SIEM analytics, endpoint detection, cloud monitoring, behavioral analytics, and automated response workflows.
- Conduct proactive threat hunting to identify advanced attacker behaviors, emerging threats, and indicators of compromise.
- Develop and maintain enterprise detection engineering standards, playbooks, tuning methodologies, and quality practices.
- Partner with Security Engineering, Infrastructure, Cloud Engineering, Identity, and Application Security teams to strengthen security controls and reduce organizational risk.
- Lead forensic investigations across endpoint, network, cloud, identity, and application environments.
- Evaluate emerging threats, adversary techniques, threat intelligence, and detection technologies to improve monitoring and response capabilities.
- Develop automation and orchestration workflows to improve operational efficiency and response speed.
- Establish and report on operational metrics related to detection effectiveness, incident response performance, and security operations maturity.
- Advise technology teams on monitoring strategies, logging requirements, incident readiness, and detection coverage.
- Mentor Security Analysts through technical guidance, investigation reviews, and knowledge sharing.
- Contribute to enterprise security strategy, architecture reviews, and long-term cybersecurity planning.
- Collaborate with Risk, Compliance, Internal Audit, and Legal teams to support regulatory, customer, and audit requirements.
- Research emerging attack techniques, AI-enabled threats, and evolving security operations technologies to continuously enhance security capabilities.
Qualifications:
- Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or a related field, or an equivalent combination of education and relevant experience.
- 6–10 years of experience in security operations, threat detection, incident response, digital forensics, cybersecurity engineering, or a related information security discipline, including broad experience leading complex enterprise security investigations and detection engineering initiatives across multiple technology domains.
- Advanced incident response leadership and threat detection engineering
- Expertise with SIEM, endpoint detection and response, cloud security monitoring, identity monitoring, and email security platforms
- Advanced threat hunting, digital forensics, malware analysis, and adversary behavior analysis
- Expert knowledge of MITRE ATT&CK, threat intelligence, detection engineering, and incident response frameworks
- Security automation, orchestration, and operational workflow optimization
- Ability to lead complex cross-functional security investigations and influence technical stakeholders
- Strong analytical, investigative, and executive communication skills
- Ability to independently solve highly complex operational security challenges
Desired Skills:
- GCIA, GCIH, GCFA, SC-200, CISSP, or comparable advanced cybersecurity certification
- Experience supporting regulated financial services environments
- Experience with Microsoft Sentinel, Microsoft Defender, Splunk, CrowdStrike, Chronicle, or comparable enterprise security platforms
- Experience developing enterprise detection engineering standards and security automation
- Experience leading major incident response activities and security operations maturity initiatives
The salary range for this position is: $123,200 - $154,000
Cool Things to Know
Not Just Any Company: Alkami has an awesome diverse and inclusive environment. We have a FUN culture and offer great benefits, including remote-first environment, unlimited paid time off, 401(k) with employer match, and more.
Work Authorization: We cannot offer employment sponsorship at this time. Candidates must be eligible to work in the US for full-time employment.
Recruiters: We are not looking for outside recruiting firms to help us in this search. Thank you for understanding.
Pay Transparency: As of January 1, 2023, new states and locales have enacted pay equity laws that require more pay transparency by employers in the following states: California, Colorado (effective January 1, 2021), Connecticut, Maryland, Nevada, New Jersey, New York, Ohio, Rhode Island and Washington.
#LI-REMOTE