Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Cybersecurity Watch Analyst image - Rise Careers
Job details

Cybersecurity Watch Analyst

Overview

Onebrief makes military planning seamless and represents a shift in paradigm for future military decisions. It is an all-in-one tool that supports both the creative and process-oriented aspects of military planning. In Onebrief, planners use maps, boards, diagrams, timelines, slides and written products to create their plans—all while sharing a common database. Everything stays in sync, in real time. Our approach has been refined and validated through hundreds of user experiments.

Our product is currently in broad use at 8 of the largest military headquarters in the world. 3 of the 4 biggest operational plans in the US are currently built with Onebrief. Last year, we achieved 100% gross retention and 158% net retention—our revenue grew 4x and reached double-digit millions. We are backed by Y Combinator (S21) and top-tier VCs, including Caffeinated Capital (Affirm, Docker, Notion, and more) and Human Capital (Anduril, Brex, Snowflake, and more), and have raised a total of $53M in venture capital. Our elite team combines the best of tech and military talent, including education and experience at Google, Twitter, Adobe, MIT, Harvard, Special Operations, TOPGUN, and more.

What you will achieve

You will hit the ground running, applying your experience with Cloud SIEM applications to ensure that Onebrief is compliant with CMMC 2.0/NIST 800-171 and FedRAMP High/NIST 800-53 security auditing, logging, and monitoring requirements. In addition to configuring data ingestion, dashboards, and alerts, you will work with our Compliance Specialists and Cybersecurity Engineer to ensure that all logging and monitoring evidence is properly documented in our GRC platform. You will also analyze logs and be a member of the Incident Response team.

About You

This is an opportunity for candidates who are located in DC, Tampa, Hawaii, or San Diego, and have or can obtain a TS clearance with SCI eligibility. You will primarily work remotely, but will, at times, be called upon to support our operations on-site.

The ideal candidate will have experience working with Splunk Cloud Platform, Elastic Cloud, or another well-known cloud SIEM. Risk Management Frameworks, such as NIST or ISO, have guided your work in the past.

Core skills: In-depth understanding of log analysis and continuous monitoring principles, configuring and filtering data ingestion, creating dashboards and alerts, and incident response

Qualifications

  • 5+ years in Cybersecurity Analysis or related roles

  • Ability to obtain TS clearance with SCI eligibility

  • Confidence that they can obtain one of the following certificates within three months: CySA+,CBROPS, CFR, FITSP-O, GCIA, GDSA, GICSP, or GCFA

  • Must-Have Skills and Qualifications:

    • Bachelor of Science in Computer Science, Cybersecurity, Information Technology, or related field OR additional 4 years of SIEM experience

About Us

Onebrief makes military planning seamless and represents a shift in paradigm for future military decisions. It is an all-in-one tool that supports both the creative and process-oriented aspects of military planning. In Onebrief, planners use maps, boards, diagrams, timelines, slides and written products to create their plans—all while sharing a common database. Everything stays in sync, in real time. Our approach has been refined and validated through hundreds of user experiments.

Our product is currently in broad use at 8 of the largest military headquarters in the world. 3 of the 4 biggest operational plans in the US are currently built with Onebrief. Last year, we achieved 100% gross retention and 158% net retention—our revenue grew 4x and reached double-digit millions. We are backed by Y Combinator (S21) and top-tier VCs, including Caffeinated Capital (Affirm, Docker, Notion, and more) and Human Capital (Anduril, Brex, Snowflake, and more), and have raised a total of $53M in venture capital. Our elite team combines the best of tech and military talent, including education and experience at Google, Twitter, Adobe, MIT, Harvard, Special Operations, TOPGUN, and more.

What's in it for you

  • Equity: Share in the company's success.

  • Flexible Work Environment: Remote work with flexible hours and unlimited PTO.

  • Comprehensive Health Coverage: Health, dental, vision, and life insurance.

  • Retirement Plan: 401(k) plan to secure your future.

  • Parental Leave: Support for your growing family.

  • Company Retreats: Annual company summit trips.

  • Home Office Budget: $1,000 per year for home office improvements.

Onebrief Glassdoor Company Review
5.0 Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon
Onebrief DE&I Review
No rating Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon
CEO of Onebrief
Onebrief CEO photo
Unknown name
Approve of CEO
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, remote
DATE POSTED
November 26, 2024

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!
What You Should Know About Cybersecurity Watch Analyst, Onebrief

Join Onebrief as a Cybersecurity Watch Analyst and play a pivotal role in transforming military planning with advanced technology! In this exciting position, you'll leverage your expertise in Cloud SIEM applications to ensure that Onebrief maintains compliance with crucial security standards like CMMC 2.0/NIST 800-171 and FedRAMP High/NIST 800-53. Your contributions will not only involve configuring data ingestion and creating insightful dashboards and alerts but also collaborating closely with our Compliance Specialists and Cybersecurity Engineer to document essential logging and monitoring evidence in our GRC platform. Plus, your log analysis skills will make you an integral part of our Incident Response team, helping safeguard our innovative platform. This is a unique opportunity for skilled professionals with a background in Cybersecurity Analysis, particularly those familiar with tools like Splunk Cloud Platform or Elastic Cloud, and who thrive in a remote work environment. If you have a passion for log analysis and continuous monitoring principles, and if you're eager to make an impact in an elite team backed by Y Combinator and top-tier investors, we want to hear from you! At Onebrief, we prioritize a flexible work culture, offer extensive health coverage, and provide opportunities for equity in our rapidly growing company. If you’re ready to join us in creating a seamless future for military planning, this could be the perfect role for you!

Frequently Asked Questions (FAQs) for Cybersecurity Watch Analyst Role at Onebrief
What does a Cybersecurity Watch Analyst do at Onebrief?

As a Cybersecurity Watch Analyst at Onebrief, you'll focus on ensuring compliance with various security standards, such as CMMC 2.0 and FedRAMP High. This involves configuring data ingestion, creating dashboards and alerts, and analyzing logs as a member of the Incident Response team. Your hands-on expertise will help in auditing, logging, and monitoring, making a real difference in our military planning solutions.

Join Rise to see the full answer
What qualifications are required for the Cybersecurity Watch Analyst position at Onebrief?

To be considered for the Cybersecurity Watch Analyst role at Onebrief, you should have over 5 years of experience in Cybersecurity Analysis or a related field. A Bachelor’s degree in Computer Science, Cybersecurity, or a related discipline is preferred, or you can substitute with additional relevant experience. Also, you'll need to have or be able to obtain a TS clearance with SCI eligibility.

Join Rise to see the full answer
What is the work environment like for the Cybersecurity Watch Analyst role at Onebrief?

The Cybersecurity Watch Analyst position at Onebrief primarily allows for remote work, offering flexibility in hours with an emphasis on work-life balance. While you’ll collaborate with a talented team remotely, there may be occasional requests to support operations on-site, especially for critical tasks.

Join Rise to see the full answer
What skills are essential for a Cybersecurity Watch Analyst at Onebrief?

Essential skills for the Cybersecurity Watch Analyst role at Onebrief include a strong grasp of log analysis, experience with Cloud SIEM applications, and knowledge of Risk Management Frameworks like NIST or ISO. Additionally, competence in configuring data ingestion and creating actionable alerts is vital for effectively monitoring our security landscape.

Join Rise to see the full answer
How does Onebrief support the professional growth of Cybersecurity Watch Analysts?

Onebrief is committed to the professional development of its team members. As a Cybersecurity Watch Analyst, you’ll have access to ongoing training and opportunities to obtain important certifications such as CySA+ or CBROPS. You'll also gain insights from working with seasoned professionals from tech and military backgrounds.

Join Rise to see the full answer
What benefits does Onebrief offer to Cybersecurity Watch Analysts?

Onebrief provides a comprehensive benefits package for Cybersecurity Watch Analysts that includes equity in the company, flexible work options, unlimited PTO, full health coverage, a 401(k) retirement plan, parental leave, and an annual budget for improving your home office setup. We believe in nurturing our team’s well-being and success.

Join Rise to see the full answer
What technology stacks do Cybersecurity Watch Analysts at Onebrief typically use?

Cybersecurity Watch Analysts at Onebrief typically work with advanced technologies such as Splunk Cloud Platform and Elastic Cloud, as well as various tools focused on log analysis and SIEM practices. Familiarity with these technologies will help you succeed in this role and contribute effectively to our security efforts.

Join Rise to see the full answer
Common Interview Questions for Cybersecurity Watch Analyst
Can you explain your experience with Cloud SIEM applications in your previous roles?

In responding to this question, highlight your specific experience with Cloud SIEM platforms, detailing projects where you configured data ingestion, set up monitoring systems, or analyzed logs. Share any certifications you've obtained and how they contributed to your responsibilities.

Join Rise to see the full answer
What steps do you follow to ensure compliance with security frameworks like NIST?

Discuss the processes you implement to achieve compliance, mentioning specific frameworks or guidelines you’ve worked with. Highlight any audits or assessments you've been involved in and how you've documented compliance metrics within an organization.

Join Rise to see the full answer
Describe a challenging incident you managed as part of an Incident Response team.

Provide an example that illustrates your problem-solving skills and ability to work under pressure. Clearly describe your role, the actions you took to contain and resolve the incident, and the overall outcome.

Join Rise to see the full answer
How do you prioritize logs and alerts when managing security incidents?

Emphasize your systematic approach to log analysis and alert prioritization. Illustrate this with examples of how you assess risks and determine the urgency of incidents, leading to successful outcomes.

Join Rise to see the full answer
What strategies do you use for effective communication with team members and stakeholders regarding security matters?

Discuss your experience in conveying complex security issues in a clear, concise manner. Share examples of how you've collaborated with cross-functional teams to align security practices with organizational goals.

Join Rise to see the full answer
What is your process for creating and configuring dashboards in a SIEM tool?

Outline a step-by-step process you follow to assess what metrics need to be monitored. Describe how you tailor dashboards to enhance visibility and aid in the quick identification of potential threats.

Join Rise to see the full answer
Can you discuss any certifications you hold related to Cybersecurity?

List your relevant certifications confidently, relating each to your work experience. Talk about the skills you gained from these while highlighting their importance in helping you stay current with industry trends.

Join Rise to see the full answer
How do you keep abreast of cybersecurity trends and threats?

Share how you regularly engage with industry research, attend conferences, participate in webinars, or follow influential thought leaders. This illustrates your commitment to ongoing education and proactive threat detection.

Join Rise to see the full answer
What considerations do you keep in mind when managing sensitive data?

Discuss the importance of data classification and the protocols you follow to ensure data confidentiality and integrity. Share experiences where maintaining sensitive data was crucial for compliance.

Join Rise to see the full answer
Describe how you would approach a situation where a major security breach is suspected.

Outline your immediate steps in response to a suspected breach, including initial assessment, communication strategy, and mobilizing the necessary teams. Discuss the importance of a calm, methodical approach in crisis situations.

Join Rise to see the full answer