Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Information Security Analyst Sr. Lead - Threat Hunter

Entergy

Information Security Analyst Sr. Lead - Threat Hunter

Job Title: Information Security Analyst Sr. Lead - Threat Hunter Work Place Flexibility: Hybrid Legal Entity: Entergy Services, LLC ***This position is based out of The Woodlands, TX, New Orleans, LA, Little Rock, AR or Jackson, MS. Those outside of these areas would be required to relocate. Relocation assistance and sponsorship is not available for this posting.*** Job Summary/Purpose: The Cyber Threat Hunter will work proactively to detect and respond to advanced threats that evade traditional and modern security tools. Threat Hunters will leverage threat intelligence, behavioral analytics, advanced threat detection, artificial intelligence (AI) and Agentic AI tools to uncover hidden risks and ensure the security of our systems and data The Cyber Threat Hunter will coordinate the results of threat hunts with the Entergy Consolidated Security Operations Center (CSOC) which is responsible for preventing, identifying, containing and eradicating threats through monitoring, intrusion detection and preventive measures to assets including LAN/WAN, IT-OT and cloud infrastructure. The CSOC is responsible for continuous improvement to detection of threats, rapid response, and reports of suspected or confirmed security incidents. The role will report to the Manager of the CSOC and will manage day-to-day tasks as noted below, with additional projects as they arise. We are looking for a skilled information security professional having the experience in identifying, isolating and resolving advanced threats within the organization. The threat hunter will play a prominent role in combating threats using foundational and advanced detection techniques, use automation to perform threat hunts across environments as well as implement deception capabilities. This position will actively search for vulnerabilities and uncover system and software flaws in order to help to mitigate risks that could affect the organization. The Information Security Analyst Sr Lead will be responsible for assisting in investigating and responding to more advanced security incidents, understanding, and mitigating attack vectors, leveraging agentic AI tools for operations and staying abreast of the evolving threat landscape. This is a hybrid position that can be filled in The Woodlands, TX, Little Rock, AR, Jackson, MS, New Orleans, LA. Primary Responsibilities : Create threat models to better understand the Entergy IT enterprise, identify gaps to improve defensive controls, expand offensive security capabilities and prioritize mitigations Utilize Threat Models along with Threat Intelligence to create threat hypothesis Build hypothesis, execute automated hunting techniques, gather and analyze results, perform forensic activities, deliver reports Orchestrate AI agents to perform threat hunts Run and manage security controls for AI systems within threat hunting operations Develop and maintain work instructions, SOPs, playbooks, system workflows Assist in expanding and maintaining the Forensics program Proactively and iteratively search through systems and networks to detect advanced threats Analyze network, host, and application logs Analyze malware and code Have an understanding and knowledge of deception capabilities against advanced threats Experience implementing, deploying and/or operating deception technologies and tactics Prepare and report risk analysis and threat findings to appropriate stakeholders Able to lead hunt missions with minimal to no supervision or guidance Recommend course of actions, best practices and mitigating actions to improve security practices Experience briefing senior level leaders and executives as well as the ability to translate technical topics into non-technical terms for decision making Develop queries for the CSOC for new detections to new attacks Ability to stay up to date for maintaining and understanding the cyber threat landscape, threat actors and activity to enhance Entergy's cybersecurity posture. Identify, track and investigate high priority threat campaigns, malicious actors of interest, capabilities and TTPs Create workflows and automation within the security tools Collaborate and coordinate with business units to improve threat detection, response and improve the overall security posture Participate in post-incident reviews to identify lessons learned and best practices. Knowledgeable in Industrial Control Systems (ICS) and Operational Technology (OT) to protect critical infrastructure and operational assets. Available to travel up to 25% Will be responsible for: Reviewing current and emerging cyber threat intelligence to maintain situational awareness and initiate hunts Maintaining threat hunts along with providing support to the CSOC as needed during advanced incident escalations Creating and providing weekly briefings of reports Collecting, aggregating and reporting on metrics from threat hunts and security cases Conducting in-depth technical analysis on host-based, network-based, cloud-focused, and mobile systems to identify advanced threats that evade traditional detection systems and signatures MINIMUM REQUIREMENTS Minimum education required of the position. Bachelor's degree (i.e. Cybersecurity, Information security, IT, computer science, etc.) or 5-10 years of prior relevant experience. Additional experience and certifications may be considered in lieu of a degree. Minimum experience required of the position Information Security Analyst Sr – Threat Hunter 5+ years recent experience in a technical role in the areas of Security Operations, incident response, detection engineering, offensive security/red team, or cyber threat intelligence Experience performing threat hunting in an active corporate environment Experience with host-based and network-based security monitoring using cybersecurity capabilities Experience with offensive security strategies and assessment methodology Experience using AI and agentic AI tools Ability to see the larger picture when dealing with competing requirements and needs Ability to navigate and work effectively across a complex organization Experience with more than one or more enterprise EDR and SIEM tool Experience with digital forensics or incident response on major security incidents Ability to apply Cyber Threat Intelligence through enrichment, correlation and attribution Experience consuming and analyzing Cyber Threat Intelligence for actionable takeaways Experience working with log analysis tools Experienced developing scripts to support cyber threat detection Ability to work independently with minimal direction; self-starter / self-motivated Minimum knowledge, skills and abilities required of the position Good planning, organizational and time management skills; detail and process-oriented; able to juggle multiple priorities. Understanding of MITRE ATT&CK Framework Understanding of AI, AI models, Agentic AI capabilities for threat hunting Good problem-solving/decision making ability Good written and verbal communication skills. Good interpersonal skills, including teamwork. Highly collaborative, able to work cross-functionally; possessing the ability to forge relationships and partner effectively Resourceful and self-motivated, able to work independently when required Good analytical, critical thinking and decision-making skills Cloud, IT-OT understanding of secure monitoring and incident response Understanding of systems (including industrial control systems) Good report writing and communication and ability to effectively communicate across the organization Demonstrated commitment to customer service with excellent oral and written communication skills Self-motivated, with ability to work independently and in a team setting while following up on multiple tasks Any certificates, licenses, etc. required for the position One or more technical or InfoSec certifications are a plus, i.e., CompTIA, ISACA, EC-Council, or ISC2. GIAC Certified Incident Handler GIAC Certified Forensic Analyst CISSP SANS GCIA – Intrusion Analyst SANS GMON – Continuous Monitoring Certification CCSP – Certified Cloud Security Professional GIAC Penetration Tester Kali Linux Offensive Security Certified Professional (OSCP) Technical Competencies Hands-on technical engineering and process management skills and the ability to advocate positive transformation Knowledgeable about security operations, cyber security monitoring, intrusion detection, and secured networks Knowledgeable about artificial intelligence and agentic AI In-depth knowledge of common networking protocols Understanding of complex Enterprise networks to include routing, switching, firewalls, proxies, load balancers Expertise in network and host-based analysis and investigation and investigation Proficient with scripting languages such as PowerShell or Python Master knowledge of multiple UNIX OS platforms and Windows-based operating systems Master knowledge of current IT Security trends and best practices in technology, as well as monitoring best practices and tools Master knowledge of security, risk, and control frameworks and standards such as ISO 27001 and 27002, SANS-CAG, NIST, FISMA, COBIT, COSO and ITIL Work Conditions Office environment with minimal physical requirements. As a provider of essential services, Entergy expects its employees to be available to work additional hours, to work in alternate locations, and/or to perform additional duties in connection with storms, outages, emergencies, or other situations as deemed necessary by the company. Exempt employees may not be paid overtime associated with such duties. An Equal Opportunity Employer, Minority/Female/Disability/Vets. Please click here to view the EEO page, or see statements below. EEO Statement: The Entergy System of Companies provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, sex, gender, sexual orientation, gender identity or expression, national origin, age, disability, genetic information, marital status, amnesty, or status as a protected veteran in accordance with applicable federal, state and local laws. The Entergy System of Companies complies with applicable state and local laws governing non-discrimination in employment in every location in which the company has facilities. This policy applies to all terms and conditions of employment including, but not limited to, recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation, and training. The Entergy System of Companies expressly prohibits any form of unlawful employee harassment based on race, color, religion, sex, gender, sexual orientation, gender identity or expression, national origin, age, genetic information, disability, or veteran status. Improper interference with the ability of the Entergy System of Company employees to perform their expected job duties is absolutely not tolerated. Accessibility: Entergy provides reasonable accommodations for online applicants. Requests for a reasonable accommodation may be made orally or in writing by an applicant, employee, or third party on his or her behalf. If you are an individual with a disability and you are in need of an accommodation for the recruiting process please click here and provide your name, contact number, the accommodation requested and the requisition number that you are requesting the accommodation for. Employee Services will contact you regarding your request. Know Your Rights: Workplace Discrimination is Illegal The non-confidential portions of the affirmative action program for individuals with disabilities and protected

Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Information Security Analyst Sr. Lead - Threat Hunter in San Antonio, TX vacancy
  • $96.7k - $148.1k

     ...Senior Information Security Analyst The Senior Information Security Analyst is responsible for monitoring, analyzing, and responding to cybersecurity threats across enterprise IT and (as applicable) ICS/OT environments. This is a SOC-focused role supporting day-to-day... 
    Senior
    Full time

    Constellation Brands

    San Antonio, TX
    4 days ago
  •  ...Information Security Analyst Information security analysts are responsible for providing security solutions for their companies. Their main duties...  ...have advanced skills when it comes to finding security threats and other vulnerabilities. They conduct assessments of... 
    Senior
    Work at office

    Samprasoft

    San Antonio, TX
    14 hours ago
  • A leading healthcare institution in San Antonio seeks a Senior Information Security Analyst to protect the confidentiality, integrity, and availability of information systems. The role involves developing security strategies, conducting research on emerging security protocols... 
    Senior

    University Hospital

    San Antonio, TX
    4 days ago
  •  ...Network Security Analyst LOCATION San Antonio, TX 78208 CLEARANCE TS/SCI Full...  ...network infrastructure against potential threats and vulnerabilities. You will be...  ...implementing measures to safeguard sensitive information. Collaborating with cross-functional... 
    Suggested
    Temporary work
    For contractors
    Immediate start
    Flexible hours

    Cymertek

    San Antonio, TX
    2 days ago
  • $74.3k - $90k

     ...Position Overview The Tier 1 Cyber Security Analyst serves as a front-line SOC analyst responsible...  ...by staying current on common cyber threats and detection techniques relevant to...  ...secondary education in Cybersecurity, Information Technology, or Computer Science. Compensation... 
    Suggested
    Contract work
    Work at office
    Shift work
    Afternoon shift

    ASM Research, An Accenture Federal Services Company

    San Antonio, TX
    2 days ago
  •  ...for production support. Minimum Qualifications ~ Associates Degree or equivalent relevant experience; Bachelor's Degree in Information Technology, Computer Science or a related field preferred. ~2-5 years of experience in information technology, systems administration... 
    Contract work
    Work at office
    Remote work

    ASM Research, An Accenture Federal Services Company

    San Antonio, TX
    1 day ago
  •  ...Security Analyst The Security Analyst is responsible for managing third-party vulnerability data, executing scans using Sompo’s proprietary...  ...technical teams. Education ~ Bachelor’s degree in Information Technology or a related field is preferred but not required.... 

    Argyle Infotech

    San Antonio, TX
    14 hours ago
  •  ...Technology is proud to partner with an award-winning US Managed Security Services Provider (MSSP) on a critical project supporting a major utility powerhouse. We are seeking a full-time SOC Tier 1 Analyst to join a 24x7 rotating shift team based on-site in San Antonio,... 
    Permanent employment
    Full time
    Shift work
    Night shift
    Rotating shift

    OP Technology

    San Antonio, TX
    22 hours ago
  • A leading technology firm in San Antonio is seeking a detail-oriented Key Access Control Analyst to manage and safeguard access to critical systems. The...  ..., ensure compliance with security policies, and monitor access to sensitive information. A Bachelor's Degree in Cybersecurity... 
    Flexible hours

    Cymertek Corporation

    San Antonio, TX
    4 days ago
  • A cybersecurity consulting firm in San Antonio is seeking a Network Security Analyst to monitor and protect its network infrastructure. Responsibilities include incident response, maintaining security measures, and collaborating with teams to enhance security. The ideal... 

    Cymertek Corporation

    San Antonio, TX
    2 days ago
  • A cybersecurity firm in San Antonio is looking for a Cyber Security Analyst I to monitor security alerts, investigate incidents, and provide...  ...a High School Diploma and at least 1 year of experience in information security or networking, with skills in various cybersecurity... 
    Full time

    Arsenault

    San Antonio, TX
    1 day ago
  • $100k - $115k

     ...Recruiter at Insight Global Position: Lead Cyber Security Analyst Organization: Community First Health...  ...‑on experience with MITRE ATT&CK for threat detection, threat hunting, and/or...  ...role requires a deep understanding of information security protocols and the ability to... 
    Permanent employment
    Full time
    Contract work

    Insight Global

    San Antonio, TX
    1 day ago
  • CHRISTUS Health is seeking an Application System Analyst I to serve as a liaison between system end-users and operational leaders. Responsibilities...  ...needs. The ideal candidate has a degree in healthcare or information systems and at least 1 year of experience. The position... 
    Full time
    Monday to Friday

    CHRISTUS Health

    San Antonio, TX
    14 hours ago
  •  ...ideal candidate has a minimum of 4 years of experience in IT audit and strong understanding of IT risk assessments and information security. You will lead audit engagements, assess IT systems, and enhance the Credit Union's operations. We offer a comprehensive benefits... 
    Senior

    RBFCU Investments Group

    San Antonio, TX
    14 hours ago
  •  ...join the team. The Loss Prevention Officer maintains a safe and secure environment by performing protective and enforcement functions...  ...while coping with emergencies, undesired conduct, disturbances and threats to life and property. Situated in the heart of downtown... 
    Full time
    Flexible hours
    Night shift
    Weekend work

    Crescent Hotels & Resorts LLC

    San Antonio, TX
    17 days ago
  • Affinius Capital is seeking a Senior Associate Information Security to lead the organization's cybersecurity program in a hybrid Microsoft Azure environment. Responsibilities include managing security operations, governance, risk management, and incident response while... 
    Senior
    Full time

    Affinius Capital

    San Antonio, TX
    2 days ago
  • VIA Metro Transit is seeking a Senior Security Engineer to enhance its information security posture through strong technical and operational leadership. The ideal candidate will have a Bachelor's degree in a relevant field and a minimum of five years of experience in information... 
    Senior

    VIA Metro Transit

    San Antonio, TX
    2 days ago
  • PAE Government Services Inc. is seeking a Senior Information System Security Officer to join their team in San Antonio, Texas. This role supports...  ...will include maintaining security evidence and leading the creation of information security policies to ensure compliance... 
    Senior

    PAE Government Services Inc.

    San Antonio, TX
    3 days ago
  • $170.6k - $390k

     ...practice – the best place in the world to grow your career in information security! The opportunity The Senior Network Security...  ...solutions. Protect sensitive data against a myriad of threats while leading cross-departmental initiatives that align security measures... 
    Senior
    Summer holiday
    Remote work
    Flexible hours

    EY

    San Antonio, TX
    4 days ago
  • General Dynamics Information Technology is seeking an Information System Security Manager to lead cloud security and governance for the AWAKEN initiative. This role requires deep expertise in cloud environments, cybersecurity compliance, and strong communication skills... 
    Senior

    General Dynamics Information Technology

    San Antonio, TX
    14 hours ago
  • SWBC is seeking an Information Security Team Leader to manage IAM controls and oversee security analytics across multiple systems. The ideal candidate should possess a bachelor’s degree in a related field and have at least 3-4 years of relevant experience. This role involves... 

    SWBC

    San Antonio, TX
    14 hours ago
  • $130.2k - $265.3k

     ...reverse engineering. Certifications like CISSP, GIAC GREM, or CREA are needed. You will work on identifying threats, documenting findings, and strengthening security. Competitive pay range is from $130,200 to $265,300 USD depending on experience. #J-18808-Ljbffr Accenture... 
    Senior

    Accenture Federal Services

    San Antonio, TX
    3 days ago
  •  ...bring the expertise in all facets of Information Operations, making sure our fleet is...  ...objective. This role may include: Leading the planning, development, testing and...  ...analyzing maritime activities that pose a threat to national security, such as drug smuggling, illegal... 
    Part time
    Worldwide

    U.S. Navy

    San Antonio, TX
    1 day ago
  •  ...seeking an Endpoint Protection Administrator to manage and deploy endpoint security tools like ESS and Microsoft Defender. You will be responsible for monitoring compliance, responding to threats, and providing operational support. The ideal candidate has a Bachelor's... 
    Senior

    Agil3 Technology Solutions (A3T)

    San Antonio, TX
    3 days ago
  •  ...Senior Security Specialist The primary purpose of this position is: To serve as the Senior Security Specialist. Providing management oversight for information systems and personnel security program policies in support of USAF, DoD, and National level Special Access... 

    US Government Jobs

    San Antonio, TX
    6 days ago
  • SWBC is seeking a talented individual to serve as an information security team leader to analyze and execute an enterprise-wide identity and...  ...for information systems, applications, and data; oversees IAM analysts, programs, and processes supporting information security... 
    For contractors
    Work at office
    Local area
    Remote work

    SWBC

    San Antonio, TX
    14 hours ago
  •  ...offer exciting opportunities to work with leading industry experts, business consultants...  ...vulnerability management, and enforcement of security controls across the PTT cybersecurity...  ...DoD cybersecurity requirements. The Information Security Specialist supports incident response... 
    Temporary work
    Immediate start

    Yakshna Solutions, Inc.

    San Antonio, TX
    14 hours ago
  • An established industry player is seeking a Business Analyst to bridge the gap between business stakeholders and technical teams in the Investments domain. This dynamic role involves analyzing financial models, gathering requirements, and optimizing operational workflows... 

    TechDigital Group

    San Antonio, TX
    14 hours ago
  • $17.75 per hour

     ...Security Specialist/HARPS Guard I - PT schedule w/ Floater hours Part Time Service Worker...  ...answer all telephone calls within the HARPS/Information Desk Control Area. This area is defined...  ...or circumstances, which may pose a threat to the security of DoD personnel, contractor... 
    Hourly pay
    Part time
    For contractors
    Work at office
    Shift work
    Weekend work

    Defense Consulting Services LLC

    San Antonio, TX
    1 day ago
  •  ...Prevention Officer maintains a safe and secure environment by performing protective and...  ...emergencies, undesired conduct, disturbances and threats to life and property. Essential Job...  ...to federal employment laws. For further information, please review the Know Your Rights... 
    Hourly pay
    Full time
    Part time
    Flexible hours
    Night shift
    Weekend work

    Crescent Hotels & Resorts

    San Antonio, TX
    4 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Information Security Analyst Sr. Lead - Threat Hunter. Be the first to apply!