Senior Security Analyst (Remote in US)
Resultant
- Indianapolis, IN
- Permanent
- Full-time
- Monitor client environments for security alerts and suspicious activity across endpoints, networks, and cloud services during second shift hours.
- Perform in-depth security investigations using EDR, SIEM, and supporting tools to detect and contain client threats.
- Investigate client account takeover (ATO) events, including credential theft, unauthorized logins, and privilege misuse, and coordinate remediation.
- Execute the full incident response lifecycle of detection, triage, containment, eradication, and recovery for client incidents.
- Manage client vulnerability management programs: schedule scans, review results, validate findings, deliver reports, and track remediation progress.
- Administer client phishing simulation campaigns monthly, analyze results, and provide actionable reporting and recommendations to improve human risk posture.
- Provide rapid response to critical alerts and incidents during on-call coverage periods.
- Develop, maintain, and follow incident response playbooks tailored to client environments (ATO, phishing, malware, ransomware, etc.).
- Document investigation findings, root cause analyses, and recommendations in client-facing reports and ticketing systems.
- Manage and monitor client email security tools such as Proofpoint and Microsoft Defender for M365, investigate alerts, and assist with email threat remediation.
- Support proactive threat hunting in client environments to identify indicators of compromise (IOCs) before they escalate.
- Assist with tuning detection rules and automation to improve visibility and reduce false positives.
- Hands-on experience with Sentinel One, Microsoft Defender, CrowdStrike, or similar EDR/XDR platform.
- Experience performing investigations in SIEM technologies such as Elastic Search, Rapid7, Splunk, Microsoft Sentinel, or other popular SIEM platforms.
- Strong knowledge of security investigation techniques and incident response best practices.
- Experience handling client account takeover incidents and identity-related security events.
- Familiarity with phishing analysis, endpoint forensics, and log correlation.
- Working knowledge of security tools, authentication protocols, and network security concepts.
- Strong analytical, problem-solving, and communication skills, including client-facing communication.
- Ability to work independently and respond quickly to high-priority incidents during on-call periods.
- Some weekend or holiday coverage may be required on a rotational basis.
- Must be legally authorized to work in the United States for any employer without sponsorship.
- Security certifications such as Security+, CySA+, Blue Team Level 1, GCIH, GCFA, or similar.
- Experience with Sentinel One, Microsoft Defender, CrowdStrike, Azure AD, AWS Guard Duty, or other cloud-native security tools.
- Experience with phishing simulation platforms (KnowBe4, Proofpoint, Microsoft Attack Simulation Training, etc.).
- Experience with common vulnerability management platforms (Tenable, Qualys, Rapid7 InsightVM, etc.).
- Prior experience working in an MSSP or MDR provider environment with shift-based SOC coverage and on-call responsibilities.
- Rezzers are humble, hungry, and smart. We solve big problems, serve lots of clients, and are entirely committed to delivering transformative outcomes.
- Rezzers are team players, deeply dedicated to the mission of the organization and to helping everyone around us be successful.
- Resultant compensates well, rewarding performance that delivers positive outcomes for our clients and ensuring incentives are aligned to achieve our goals.
- Resultant leaders work hard, serving as a shining example of what it means to be a great Rezzer. They are servant leaders, helping their team to be successful in all possible ways.
- We have a great benefits package including unlimited vacation, significant 401k contributions, and several opportunities to develop yourself.
- We pride ourselves in having the best talent in the industry and hope that you’re up for the challenge!
- “I love our true empathy and concern for our clients, it's very rare and appreciated. It is a pleasure to be a part of an organization like Resultant.”
- “I learn something new every single day, and I feel like I'm a part of building an organization that has legs. I appreciate that I'm consistently humbled by the talent and caliber of our team.”
- “The culture of the company is amazing, and the climate of my team is great. The benefits that employees are offered are better than competitors, and the one-on-one presence that my team lead gives is extremely beneficial to me.”