In the past two years, more than a trillion dollars have been invested in software companies at record prices. And in many cases, the underlying tech is the greatest enabler to the business strategy. But has the approach to govern technology value creation caught up to the magnitude of the risk?
We believe a better way is possible – a more programmatic, proactive approach to actively manage technology throughout the investment lifecycle – and that’s what we do.
Our role
We know that technology can create truly transformative change, and its role in business is only growing. Crosslake is here to support the changemakers and help them buy, build and run better technology.
What we value
You could be a good fit for Crosslake if you see yourself reflected in our guiding values:
Service. We effect change by empowering others.
Curiosity. We believe great advice starts with deep understanding.
Credibility. Our expertise is earned and proven.
Commitment. It’s our privilege to serve clients in their critical moments.
Creativity. We are inspired by the constant pursuit of better.
Overview
We are seeking a Security Analyst with experience conducting compromise assessments and advanced threat detection activities. The analyst will play a key role in identifying potential breaches, evaluating security posture, and providing actionable insights to reduce organizational risk. This role involves close collaboration with clients and internal teams to assess environments for evidence of malicious activity, uncover gaps in defenses, and recommend remediation strategies.
(this position is US based, 1099, remote role )What we believe In the past two years, more than a trillion dollars have been invested in software companies at record prices. And in many cases, the underlying tech is the greatest enabler to the business strategy. But has the approach to govern technology value creation caught up to the magnitude of the risk? We believe a better way is possible – a more programmatic, proactive approach to actively manage technology throughout the investment lifecycle – and that’s what we do. Our role We know that technology can create truly transformative change, and its role in business is only growing. Crosslake is here to support the changemakers and help them buy, build and run better technology. What we value You could be a good fit for Crosslake if you see yourself reflected in our guiding values: Service. We effect change by empowering others. Curiosity. We believe great advice starts with deep understanding. Credibility. Our expertise is earned and proven. Commitment. It’s our privilege to serve clients in their critical moments. Creativity. We are inspired by the constant pursuit of better. OverviewWe are seeking a Security Analyst with experience conducting compromise assessments and advanced threat detection activities. The analyst will play a key role in identifying potential breaches, evaluating security posture, and providing actionable insights to reduce organizational risk. This role involves close collaboration with clients and internal teams to assess environments for evidence of malicious activity, uncover gaps in defenses, and recommend remediation strategies.
Responsibilities
Perform compromise assessments across enterprise networks, identity platforms, cloud environments, and endpoints to detect active or historical intrusions.
Identify, analyze, and validate indicators of compromise (IOCs), malicious artifacts, and persistence mechanisms.
Conduct threat hunting using endpoint and log data to uncover stealthy adversary activity.
Leverage forensic tools to analyze system images, memory captures, and network traffic for signs of malicious behavior.
Map adversary techniques to the MITRE ATT&CK framework and provide context on TTPs observed.
Develop and deliver detailed technical and executive-level reports summarizing findings, risk implications, and prioritized remediation steps.
Collaborate with incident response teams, SOC analysts, and client IT/security staff to validate findings and strengthen detection capabilities.
Contribute to the continuous improvement of methodologies, playbooks, and automation for compromise assessments.
Required Qualifications
4-8 years of experience in cybersecurity, digital forensics, or incident response.
Experience with all “Tool Categories and Examples” categories and hands-on experience with at minimum one tool in each section
Strong familiarity with public cloud providers (e.g. Amazon Web Services, Google Cloud, Microsoft Azure)
Strong knowledge of threat actor tactics, techniques, and procedures (TTPs) and familiarity with MITRE ATT&CK.
Experience conducting forensic analysis of endpoints, logs, and network data.
Strong written and verbal communication skills, with ability to create reports tailored to both technical and executive audiences.
Industry certifications such as GCFA, GNFA, GCIH, CySA+, or Security+. (Preffered)
These cookies are necessary for the website to function and cannot be turned off in our systems. You can set your browser to block these cookies, but then some parts of the website might not work.
Security
User experience
Target group oriented cookies
These cookies are set through our website by our advertising partners. They may be used by these companies to profile your interests and show you relevant advertising elsewhere.
Google Analytics
Google Ads
We use cookies
🍪
Our website uses cookies and similar technologies to personalize content, optimize the user experience and to indvidualize and evaluate advertising. By clicking Okay or activating an option in the cookie settings, you agree to this.
The best remote jobs via email
Join 5'000+ people getting weekly alerts with remote jobs!