Senior Cyber Threat Intelligence & Forensics Analyst
Posted 27 days ago
We are looking for a seasoned cybersecurity professional to bridge the gap between "knowing the enemy" and "stopping the attack." You will lead our Threat Intelligence efforts to predict and detect adversaries, spearhead Incident Response when breaches occur, and perform deep-dive Digital Forensics (DFIR) to understand the how and why. This is a high-impact role requiring technical depth, analytical rigor, and the ability to stay calm under fire.
Key Responsibilities:
1. Threat Intelligence (Predict & Prevent)
- Adversary Tracking: Monitor TTPs (Tactics, Techniques, and Procedures) of relevant threat actors using the MITRE ATT&CK framework.
- Intelligence Lifecycle: Collection, processing, analysis, and dissemination of actionable intelligence to internal stakeholders.
- Detection Engineering: Translate raw intelligence into custom SIEM alerts, YARA rules, and Sigma signatures.
2. Incident Response (Detect & Respond)
- Crisis Management: Act as the technical lead during high-severity security incidents, coordinating containment and eradication efforts.
- Threat Hunting: Conduct proactive hunts across the environment to identify stealthy persistence or lateral movement that automated tools missed.
- Playbook Development: Design and automate IR playbooks to reduce Mean Time to Respond (MTTR).
3. Digital Forensics (Analyze & Document)
- Evidence Acquisition: Perform dead-box and live-memory forensics on Windows, Linux, and Cloud environments (AWS/Azure/GCP).
- Root Cause Analysis: Reconstruct attack timelines to determine the initial vector and the extent of data exfiltration.
- Reporting: Translate complex technical findings into "executive-level" reports for legal, compliance, and leadership teams.
Requirements
- Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or related field.
- Experience: 5+ years in a dedicated SOC, IR, or Intel role (ideally within a CSIRT or MSSP).
- The Toolkit: Mastery of tools like Splunk/ELK, CrowdStrike/SentinelOne/VisionOne, Magnet AXIOM/FTK/EnCase/Autopsy, Sandbox, Volatility, and Wireshark.
- Programming: Ability to script in Python or PowerShell to automate repetitive tasks or parse forensic artifacts.
- Certifications: We value skills over paper, but GIAC (GCIH, GCFA, GCTI), CFE, CTIA or CHFI are highly preferred.
- Familiarity with incident response processes and frameworks.
- Strong analytical and problem-solving skills with attention to detail.
- Excellent verbal and written communication skills to present complex technical information clearly.
Other open roles at CallTek(6)
For more than two decades, CallTek has been a global leader in delivering secure, compliant, and reliable white-label technical support services. As a Managed Service Provider (MSP), we offer 24/7 engineering, software development, field service, and customer support to technology operators and service providers worldwide. Our team of over 10,000 skilled professionals manages more than 20,000 buildings and one million enterprise network appliances globally. We are dedicated to security and privacy, adhering to the highest industry standards, including PCI-DSS, ISO 27001, SOC 2, and GDPR. This commitment ensures that our partners' data is protected, and their operations are compliant with global regulations. CallTek combine our expertise as an MSP with innovative technology. We’ve developed proprietary platforms such as Odyssey CX , powered by artificial intelligence (AI) and natural language processing (NLP), to provide advanced solutions that integrate seamlessly with your existing systems to provide you deep customer insights. Our dedication to excellence extends to our 24/7 Live Customer Support and Field Service teams, who are available across 35,000 zip codes, including certified low-voltage Ekahau technicians ready to resolve break-fix jobs and perform Wireless Site Surveys. Headquartered in Irvine, CA, CallTek has a global footprint with offices in nine countries, including the Dominican Republic, Colombia, Egypt, Guatemala, Honduras, India, Mexico, the Philippines, and the United States. Recognized for our unwavering commitment to security, privacy, and innovation, CallTek was named one of the Best Employers by The Philippine Daily Inquirer in 2023 and 2004. For more information on how CallTek can securely support your business with cutting-edge solutions, visit calltekinc.com.
Key team members

Ahmed El Sayed

Shirlene Shelley Zamora Tabernero

Kevin Spruill CECP

Joshua Bergen CHAE, CHTP
Jobr aggregates jobs directly from company career portals — no middlemen. Our team applies on your behalf with AI-tailored resumes, reviewed by a human before submission.