← Tillbaka till jobb

Senior Cyber Security Analyst

  • Distans
  • Sverige
  • Engelska
  • Publicerad 05.10.26

As a Senior Cyber Security Analyst, you will join a team focused on identifying, investigating, and mitigating malicious web activity across large-scale digital environments. The role combines threat analysis, traffic investigation, detection engineering, and collaboration with customers and internal engineering teams to improve protection mechanisms and threat visibility. You will work with high-volume traffic datasets, analyze suspicious behavior patterns, and contribute to the continuous improvement of security detections related to bots, fraud attempts, and other web-based threats. CUSTOMEROur client delivers advanced cybersecurity solutions designed to protect organizations, users, and digital ecosystems from evolving online threats. The company specializes in bot defense and anti-malvertising technologies for the AdTech industry, supporting SSPs, DSPs, agencies, and publishers through scalable protection platforms, customizable reporting tools, and API integrations. PROJECTThe project focuses on real-time threat detection and bot mitigation for enterprise-scale clients. Cyber Security Analysts collaborate directly with customers, leveraging advanced analytics platforms to identify malicious traffic patterns and neutralize online threats. This dynamic environment requires both technical expertise and strong communication skills. RESPONSIBILITIESMonitor and investigate potential security threats using tools such as Kibana/OpenSearch and Snowflake.Analyze security logs and investigate suspicious or unusual activity, including spikes in traffic, unexpected changes in attack patterns, and new or disappearing attack signals.Determine whether detected activity is malicious or benign and identify the appropriate response, including detection engineering to block malicious activity when needed.Develop, tune, and deploy detection rules based on traffic behavior, HTTP request attributes, headers, device fingerprints, and other indicators to mitigate malicious activity.Monitor existing detections and known attack patterns to make sure they continue to work as expected and identify any unusual changes in volume, sources, IPs, domains, or other indicators.Support customer onboarding by analyzing web application traffic flows and configuring baseline detection and protection rules.Investigate customer-reported incidents and missed detections, analyze attack traffic, and implement mitigations to improve protection coverage.Document newly discovered threats and attacks, including evidence, findings, and indicators.Communicate findings to Engineering and other stakeholders and provide the necessary technical details to support remediation and improvements to detection and protection mechanisms.Partner directly with counterparts through a ticketing system and support portal to investigate issues, provide updates, and resolve security-related requests. REQUIREMENTS5 years of experience in Cybersecurity, Threat Research, or Threat IntelligenceBachelor’s degree in Computer Science, Cybersecurity, Information Security, or a related fieldStrong understanding of web technologies and networking fundamentals, including HTTP/HTTPS, TCP/IP, DNS, authentication, cookies, and browser-server interactionsExperience in web security research, bot management, fraud detection, or related domainsHands-on experience with threat investigations, IOC analysis, and threat intelligence researchExperience with log analysis and investigation platforms such as Kibana/OpenSearch, Snowflake, Datadog, or similar toolsStrong SQL skills, including working with large datasets and UDFsBasic knowledge of JavaScript for web and client-side analysisStrong analytical and problem-solving skillsAbility to work independently and manage investigations with minimal supervisionStrong communication and collaboration skillsPassion for cybersecurity and continuous learning NICE TO HAVE:Knowledge of MITRE ATT&CK, malware analysis, vulnerabilities, and adversary TTPsOSINT and cyber threat intelligence research experiencePython and Jupyter Notebook experience for investigations and automationExperience with GitHub and version control workflows