Senior Security Analyst
Quick Summary
Security Operations & Incident Response Lead end-to-end incident response, threat hunting, and root cause analysis across SIEM, EDR (SentinelOne), and cloud security tooling.
We're looking for a Senior Security Analyst to strengthen our security operations, threat detection, and risk management program. This role reports into the Director of IT, Information & Security. You'll take the lead on incident response, vulnerability management, and security monitoring across our cloud, endpoint, and identity infrastructure, while mentoring junior analysts and driving continuous improvement of our security posture. This role is a strong fit for someone who thinks like an attacker, communicates like a partner, and enjoys turning alerts into action.
This is a Full-Time Hybrid opportunity based in San Francisco, CA.
Lead end-to-end incident response, threat hunting, and root cause analysis across SIEM, EDR (SentinelOne), and cloud security tooling.
Develop and maintain incident response playbooks, runbooks, and tabletop exercises.
Own the vulnerability management lifecycle, partnering with IT and Engineering to remediate scan, pen test, and audit findings.
Maintain the risk register, conduct third-party/vendor risk assessments, and communicate technical risks to business stakeholders.
Partner with IT to audit and enforce security controls across Okta (RBAC/MFA), Google Workspace (DLP/logs), JAMF, and SentinelOne.
Drive evidence collection and remediation for compliance audits (SOC 2, ISO 27001, HIPAA, PCI DSS) while aligning policies with NIST CSF and CIS frameworks.
Automate detection, response, and reporting workflows via SOAR, scripting, and APIs to improve alert quality and efficiency.
Mentor team members and contribute to cross-functional security knowledge sharing.
Establish guardrails and acceptable-use policies for enterprise AI tools (e.g., GenAI, Claude), mitigating shadow AI, data leakage, and third-party vendor risks alongside IT, Legal, and Compliance.
Partner with Product and Engineering to assess and remediate AI/LLM-specific vulnerabilities, including prompt injection, model abuse, and data exposure.
Pilot and evaluate AI-powered security capabilities (e.g., AI-assisted SIEM/EDR triage and anomaly detection) to boost response speed and operational efficiency.
8+ years of experience in security operations, leading incident response end-to-end from detection through remediation.
Associate’s or Bachelor’s degree in Computer Science, Information Systems, Cybersecurity, or a related field, or equivalent practical experience
Hands-on experience with SIEMs, EDR/XDR (e.g., SentinelOne), vulnerability scanners, cloud security, and core IAM concepts (SSO, MFA, RBAC).
Working knowledge of security frameworks (SOC 2, ISO 27001, NIST, CIS) with strong analytical skills to translate technical risk to business stakeholders.
Familiarity with emerging AI/LLM risks and an interest in evaluating AI capabilities for security use cases.
Excellent communication skills with the ability to prioritize competing incidents and operate calmly under pressure.
Nice to Have
~1 min readHands-on experience with Okta, JAMF, or Google Workspace, alongside Infrastructure as Code (Terraform) for access/security policy management.
Scripting experience (Python, Bash), SOAR exposure, and familiarity with CSPM tools or native cloud security platforms (AWS/GCP/Azure).
Practical experience securing AI/ML pipelines and GenAI deployments, or operating AI-driven security tools.
Relevant credentials such as CISSP, GCIH, GCIA, OSCP, or Security+.
What We Offer
~1 min readLocation & Eligibility
Listing Details
- Posted
- September 23, 2026
- First seen
- September 23, 2026
- Last seen
- September 23, 2026
Posting Health
- Days active
- 0
- Repost count
- 0
- Trust Level
- 79%
- Scored at
- September 23, 2026
Signal breakdown
Similar Security Analyst jobs
View all →Browse Similar Jobs
Stay ahead of the market
Get the latest job openings, salary trends, and hiring insights delivered to your inbox every week.
No spam. Unsubscribe at any time.