Cybersecurity Analyst
Job Description
Skechers USA, Inc. is hiring a Cybersecurity Analyst to support the global cybersecurity team with investigations, incident response, threat hunting, and vulnerability management.
Responsibilities
- Monitor security tools, feeds, and dashboards to identify alerts and signals.
- Triage and respond to alerts from internal systems.
- Respond to alerts escalated by managed SOC providers and follow established processes.
- Lead complex, multi-system security investigations from initial signal through containment recommendations and remediation.
- Produce written findings and reports after incident and investigation activities.
- Correlate telemetry across endpoint, identity provider, email, SaaS, cloud, network, and other relevant data sources.
- Use AI/LLM assistants for triage, enrichment, log summarization, timeline development, and detection drafting, with validation against source evidence.
- Detect and account for hallucinated or incomplete AI/LLM analysis during investigation workflows.
- Identify improvements to SOC processes, detections, and workflows, including opportunities for AI, automation, and playbook enhancements.
- Provide technical guidance to team members and support knowledge sharing and skill development.
- Contribute to and report on metrics for alerts, incidents, responses, and SOC operations.
- Assess managed SOC escalations for quality, urgency, and completeness, and provide feedback to improve escalation criteria and alert fidelity.
- Collaborate with global business units and cross-functional groups to guide and support security activities.
- Work with internal stakeholders and managed security partners to respond to alerts and incidents and escalate when needed.
- Stay current on the evolving threat landscape, defensive capabilities, and security tools and techniques, including AI-assisted analysis and automation.
- Conduct threat hunts using threat intelligence to investigate and remediate emerging threats.
- Participate in purple team exercises to strengthen defensive detection and incident response capabilities.
- Analyze vulnerability and exposure signals in context of exploitability, asset criticality, compensating controls, and observed threat activity to prioritize remediation.
- Partner with the Security Engineering team to improve automations and workflows, develop detections, and refine security processes and tools.
Requirements
- Strong working knowledge of cybersecurity operations, incident response, and the technologies used to investigate and contain security events.
- 2+ years of experience in a cybersecurity-focused role (hands-on preferred).
- Experience in cybersecurity operations, incident response, threat hunting, vulnerability management, or closely related work.
- Understanding of enterprise network and system components and their roles (databases, web servers, app servers).
- Familiarity with network and application protocols: TCP/IP, HTTP, TLS, SSH, DNS, etc.
- Experience investigating, securing, or supporting servers or workstations running Windows, Linux, or OS X.
- Experience working with cloud systems, platforms, and resources.
- Experience using security tools such as EDR and SIEM.
- Understanding of cybersecurity concepts and emerging threats.
- Experience in phishing and malware analysis.
- Strong documentation habits and excellent written and oral communication skills.
- Strong analytical and problem-solving skills with attention to detail.
- Ability to work independently on complex threat analysis and alert triage while maintaining accuracy and efficiency.
- Ability to excel in a fast-paced, rapidly changing environment.
- GIAC, (ISC)2, or other relevant security certifications are a plus.
Technologies
- AI/LLM assistants
- EDR
- SIEM
- TCP/IP
- HTTP
- TLS
- SSH
- DNS
- Windows
- Linux
- OS X
Location: Manhattan Beach, CA (onsite)
Salary: USD 90,000 - 120,000 per yearly
Minimum Experience: 2 years