top of page

Exabeam SIEM Analyst

Scottsdale, AZ, USA

Job Type


Essential Duties and Responsibilities:

  • Triage alerts and determine if further investigation or action is required by the customer

  • Assist customers with the investigation and response of incidents throughout the incident response process

  • Perform investigations of customer requests and be able to provide further contextual information along with recommended actions

  • Proactively threat hunt using network and host data within customer environments

  • Mentor junior analysts


  • Ability to analyze packet captures/data and logs to perform incident response and identify potential compromises to customer networks

  • Possesses a solid understanding of the TCP/IP protocol suite, security architecture, and common TTP's (tactics, techniques, and procedures) used by threat actors

  • Strong subject matter expertise in analyzing log data in Exabeam SIEM, including Exabeam data lake querying and hunting best practices.

  • Familiarity with the Exabeam Fusion ecosystem.

  • Strong understanding of incident response methodologies and reporting

  • Experience using ticketing systems for tracking (JIRA, Remedy, ServiceNow, etc.)

  • Strong verbal/written communication and interpersonal skills are required to document and communicate findings, escalate critical incidents, and interact with customers

  • Minimum of 3+ years of experience performing triage/incident response in enterprise environments

  • Minimum of 3+ years of experience performing forensic analysis of logs and packet captures to identify malicious artifacts

  • Higher level security certifications (CEH, GCIH, GCFA, GCFE, GCTI, GCIA, GREM, GPEN, GFNA, OCSP)

  • Strong research background and an analytical approach, especially with respect to event classification, event correlation, and root cause analysis

  • A mentoring/leadership background including mentoring other analysts and orchestrating team efforts for problem solving

  • Ability to manage projects to completion both individually and in a group


bottom of page