Source description
About the role
Job Summary We are looking for a Mid-Level Network Security Analyst to support and enhance our organization’s network and security infrastructure. The ideal candidate will have solid hands-on experience with Palo Alto Networks firewalls and Panorama, CrowdStrike EDR, AWS security tools, and SIEM platforms.This role involves day-to-day security operations, troubleshooting, and implementing solutions to strengthen our defence posture against evolving threats. About the Role We are seeking a Mid-Level Network Security Analyst/Engineer with strong experience in modern security technologies and an interest in leveraging AI-driven tools and automation to improve detection, response, and network resilience. The ideal candidate will have hands-on expertise with Palo Alto Networks firewalls and Panorama, CrowdStrike EDR, AWS security services, and SIEM platforms such as Sumo Logic or Splunk. This role includes day to-day security operations, troubleshooting, and using AI-assisted analytics and automation to strengthen our defence posture against evolving threats. You’ll play a key part in keeping our platform reliable, secure, and compliant — protecting both our customers and our data. • Configure, maintain, and optimize Palo Alto Networks firewalls and Panorama for secure connectivity across environments. • Manage IDS/IPS, VPNs, and security policies to defend against network threats. • Administer and monitor CrowdStrike Falcon EDR, investigating alerts and supporting incident response. • Use AI-driven EDR features (behavioural analytics, ML detections, threat graph insights) to prioritize and remediate endpoint threats. • Implement and review AWS security controls (IAM, GuardDuty, WAF, Security Groups, CloudTrail). • Configure, monitor, and optimize Amazon CloudWatch, including alarms, metrics, logs, dashboards, anomaly detection, and integrations with security workflows. • Leverage AI/ML-driven cloud security insights from GuardDuty, CloudWatch anomaly detection, IAM Access Analyzer, and CSPM tools to flag misconfigurations and unusual behaviour. • Develop and maintain SIEM/SOAR dashboards and alerts for proactive threat detection and apply AI-enhanced SIEM analytics to detect anomalous behaviour and reduce false positives. • Collaborate with DevOps, Cloud, and Security teams to embed security best practices into our SaaS infrastructure. • Use AI copilots and automation tools to improve workflows (rule reviews, log analysis, report creation, and playbook generation). • Maintain documentation and contribute to continuous improvement of our security standards. • 3-6 years of experience in network or cybersecurity engineering within a cloud driven environment. • Strong experience with Palo Alto Networks firewalls and Panorama. • Solid understanding of network security, IDS/IPS, and VPNs. • Hands-on experience with CrowdStrike EDR or similar endpoint protection tools. • Working knowledge of AWS security architecture and services. • Experience configuring and using Amazon CloudWatch (logs, metrics, dashboards, alarms). • Experience with SIEM/SOAR platforms. • Familiarity with AI-driven features in EDR, SIEM, or cloud security platforms (or willingness to adopt them). • Excellent troubleshooting, analytical, and collaboration skills. • Certifications like Palo Alto CEH, PCNSA/PCNSE, AWS Certified Security - Specialty, or CrowdStrike CCFA/CCFR. • Experience in SaaS, multi-tenant, or cloud-native environments. • Familiarity with Python, PowerShell, or Terraform for automation. • Experience with SOAR platforms, automated workflows, or LLM-based security assistants. • Understanding of CIS benchmarks, SOC 2, or ISO 27001 compliance requirements.
More at Infor