Information Security Analyst Sr. Lead - Threat Hunter
Entergy
Information Security Analyst Sr. Lead - Threat Hunter
Job Title: Information Security Analyst Sr. Lead - Threat Hunter Work Place Flexibility: Hybrid Legal Entity: Entergy Services, LLC ***This position is based out of The Woodlands, TX, New Orleans, LA, Little Rock, AR or Jackson, MS. Those outside of these areas would be required to relocate. Relocation assistance and sponsorship is not available for this posting.*** Job Summary/Purpose: The Cyber Threat Hunter will work proactively to detect and respond to advanced threats that evade traditional and modern security tools. Threat Hunters will leverage threat intelligence, behavioral analytics, advanced threat detection, artificial intelligence (AI) and Agentic AI tools to uncover hidden risks and ensure the security of our systems and data The Cyber Threat Hunter will coordinate the results of threat hunts with the Entergy Consolidated Security Operations Center (CSOC) which is responsible for preventing, identifying, containing and eradicating threats through monitoring, intrusion detection and preventive measures to assets including LAN/WAN, IT-OT and cloud infrastructure. The CSOC is responsible for continuous improvement to detection of threats, rapid response, and reports of suspected or confirmed security incidents. The role will report to the Manager of the CSOC and will manage day-to-day tasks as noted below, with additional projects as they arise. We are looking for a skilled information security professional having the experience in identifying, isolating and resolving advanced threats within the organization. The threat hunter will play a prominent role in combating threats using foundational and advanced detection techniques, use automation to perform threat hunts across environments as well as implement deception capabilities. This position will actively search for vulnerabilities and uncover system and software flaws in order to help to mitigate risks that could affect the organization. The Information Security Analyst Sr Lead will be responsible for assisting in investigating and responding to more advanced security incidents, understanding, and mitigating attack vectors, leveraging agentic AI tools for operations and staying abreast of the evolving threat landscape. This is a hybrid position that can be filled in The Woodlands, TX, Little Rock, AR, Jackson, MS, New Orleans, LA. Primary Responsibilities : Create threat models to better understand the Entergy IT enterprise, identify gaps to improve defensive controls, expand offensive security capabilities and prioritize mitigations Utilize Threat Models along with Threat Intelligence to create threat hypothesis Build hypothesis, execute automated hunting techniques, gather and analyze results, perform forensic activities, deliver reports Orchestrate AI agents to perform threat hunts Run and manage security controls for AI systems within threat hunting operations Develop and maintain work instructions, SOPs, playbooks, system workflows Assist in expanding and maintaining the Forensics program Proactively and iteratively search through systems and networks to detect advanced threats Analyze network, host, and application logs Analyze malware and code Have an understanding and knowledge of deception capabilities against advanced threats Experience implementing, deploying and/or operating deception technologies and tactics Prepare and report risk analysis and threat findings to appropriate stakeholders Able to lead hunt missions with minimal to no supervision or guidance Recommend course of actions, best practices and mitigating actions to improve security practices Experience briefing senior level leaders and executives as well as the ability to translate technical topics into non-technical terms for decision making Develop queries for the CSOC for new detections to new attacks Ability to stay up to date for maintaining and understanding the cyber threat landscape, threat actors and activity to enhance Entergy's cybersecurity posture. Identify, track and investigate high priority threat campaigns, malicious actors of interest, capabilities and TTPs Create workflows and automation within the security tools Collaborate and coordinate with business units to improve threat detection, response and improve the overall security posture Participate in post-incident reviews to identify lessons learned and best practices. Knowledgeable in Industrial Control Systems (ICS) and Operational Technology (OT) to protect critical infrastructure and operational assets. Available to travel up to 25% Will be responsible for: Reviewing current and emerging cyber threat intelligence to maintain situational awareness and initiate hunts Maintaining threat hunts along with providing support to the CSOC as needed during advanced incident escalations Creating and providing weekly briefings of reports Collecting, aggregating and reporting on metrics from threat hunts and security cases Conducting in-depth technical analysis on host-based, network-based, cloud-focused, and mobile systems to identify advanced threats that evade traditional detection systems and signatures MINIMUM REQUIREMENTS Minimum education required of the position. Bachelor's degree (i.e. Cybersecurity, Information security, IT, computer science, etc.) or 5-10 years of prior relevant experience. Additional experience and certifications may be considered in lieu of a degree. Minimum experience required of the position Information Security Analyst Sr – Threat Hunter 5+ years recent experience in a technical role in the areas of Security Operations, incident response, detection engineering, offensive security/red team, or cyber threat intelligence Experience performing threat hunting in an active corporate environment Experience with host-based and network-based security monitoring using cybersecurity capabilities Experience with offensive security strategies and assessment methodology Experience using AI and agentic AI tools Ability to see the larger picture when dealing with competing requirements and needs Ability to navigate and work effectively across a complex organization Experience with more than one or more enterprise EDR and SIEM tool Experience with digital forensics or incident response on major security incidents Ability to apply Cyber Threat Intelligence through enrichment, correlation and attribution Experience consuming and analyzing Cyber Threat Intelligence for actionable takeaways Experience working with log analysis tools Experienced developing scripts to support cyber threat detection Ability to work independently with minimal direction; self-starter / self-motivated Minimum knowledge, skills and abilities required of the position Good planning, organizational and time management skills; detail and process-oriented; able to juggle multiple priorities. Understanding of MITRE ATT&CK Framework Understanding of AI, AI models, Agentic AI capabilities for threat hunting Good problem-solving/decision making ability Good written and verbal communication skills. Good interpersonal skills, including teamwork. Highly collaborative, able to work cross-functionally; possessing the ability to forge relationships and partner effectively Resourceful and self-motivated, able to work independently when required Good analytical, critical thinking and decision-making skills Cloud, IT-OT understanding of secure monitoring and incident response Understanding of systems (including industrial control systems) Good report writing and communication and ability to effectively communicate across the organization Demonstrated commitment to customer service with excellent oral and written communication skills Self-motivated, with ability to work independently and in a team setting while following up on multiple tasks Any certificates, licenses, etc. required for the position One or more technical or InfoSec certifications are a plus, i.e., CompTIA, ISACA, EC-Council, or ISC2. GIAC Certified Incident Handler GIAC Certified Forensic Analyst CISSP SANS GCIA – Intrusion Analyst SANS GMON – Continuous Monitoring Certification CCSP – Certified Cloud Security Professional GIAC Penetration Tester Kali Linux Offensive Security Certified Professional (OSCP) Technical Competencies Hands-on technical engineering and process management skills and the ability to advocate positive transformation Knowledgeable about security operations, cyber security monitoring, intrusion detection, and secured networks Knowledgeable about artificial intelligence and agentic AI In-depth knowledge of common networking protocols Understanding of complex Enterprise networks to include routing, switching, firewalls, proxies, load balancers Expertise in network and host-based analysis and investigation and investigation Proficient with scripting languages such as PowerShell or Python Master knowledge of multiple UNIX OS platforms and Windows-based operating systems Master knowledge of current IT Security trends and best practices in technology, as well as monitoring best practices and tools Master knowledge of security, risk, and control frameworks and standards such as ISO 27001 and 27002, SANS-CAG, NIST, FISMA, COBIT, COSO and ITIL Work Conditions Office environment with minimal physical requirements. As a provider of essential services, Entergy expects its employees to be available to work additional hours, to work in alternate locations, and/or to perform additional duties in connection with storms, outages, emergencies, or other situations as deemed necessary by the company. Exempt employees may not be paid overtime associated with such duties. An Equal Opportunity Employer, Minority/Female/Disability/Vets. Please click here to view the EEO page, or see statements below. EEO Statement: The Entergy System of Companies provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, sex, gender, sexual orientation, gender identity or expression, national origin, age, disability, genetic information, marital status, amnesty, or status as a protected veteran in accordance with applicable federal, state and local laws. The Entergy System of Companies complies with applicable state and local laws governing non-discrimination in employment in every location in which the company has facilities. This policy applies to all terms and conditions of employment including, but not limited to, recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation, and training. The Entergy System of Companies expressly prohibits any form of unlawful employee harassment based on race, color, religion, sex, gender, sexual orientation, gender identity or expression, national origin, age, genetic information, disability, or veteran status. Improper interference with the ability of the Entergy System of Company employees to perform their expected job duties is absolutely not tolerated. Accessibility: Entergy provides reasonable accommodations for online applicants. Requests for a reasonable accommodation may be made orally or in writing by an applicant, employee, or third party on his or her behalf. If you are an individual with a disability and you are in need of an accommodation for the recruiting process please click here and provide your name, contact number, the accommodation requested and the requisition number that you are requesting the accommodation for. Employee Services will contact you regarding your request. Know Your Rights: Workplace Discrimination is Illegal The non-confidential portions of the affirmative action program for individuals with disabilities and protected
$96.7k - $148.1k
...Senior Information Security Analyst The Senior Information Security Analyst is responsible for monitoring, analyzing, and responding to cybersecurity threats across enterprise IT and (as applicable) ICS/OT environments. This is a SOC-focused role supporting day-to-day...SeniorFull time- ...Information Security Analyst Information security analysts are responsible for providing security solutions for their companies. Their main duties... ...have advanced skills when it comes to finding security threats and other vulnerabilities. They conduct assessments of...SeniorWork at office
- A leading healthcare institution in San Antonio seeks a Senior Information Security Analyst to protect the confidentiality, integrity, and availability of information systems. The role involves developing security strategies, conducting research on emerging security protocols...Senior
- ...Network Security Analyst LOCATION San Antonio, TX 78208 CLEARANCE TS/SCI Full... ...network infrastructure against potential threats and vulnerabilities. You will be... ...implementing measures to safeguard sensitive information. Collaborating with cross-functional...SuggestedTemporary workFor contractorsImmediate startFlexible hours
$74.3k - $90k
...Position Overview The Tier 1 Cyber Security Analyst serves as a front-line SOC analyst responsible... ...by staying current on common cyber threats and detection techniques relevant to... ...secondary education in Cybersecurity, Information Technology, or Computer Science. Compensation...SuggestedContract workWork at officeShift workAfternoon shift- ...for production support. Minimum Qualifications ~ Associates Degree or equivalent relevant experience; Bachelor's Degree in Information Technology, Computer Science or a related field preferred. ~2-5 years of experience in information technology, systems administration...Contract workWork at officeRemote work
- ...Security Analyst The Security Analyst is responsible for managing third-party vulnerability data, executing scans using Sompo’s proprietary... ...technical teams. Education ~ Bachelor’s degree in Information Technology or a related field is preferred but not required....
- ...Technology is proud to partner with an award-winning US Managed Security Services Provider (MSSP) on a critical project supporting a major utility powerhouse. We are seeking a full-time SOC Tier 1 Analyst to join a 24x7 rotating shift team based on-site in San Antonio,...Permanent employmentFull timeShift workNight shiftRotating shift
- A leading technology firm in San Antonio is seeking a detail-oriented Key Access Control Analyst to manage and safeguard access to critical systems. The... ..., ensure compliance with security policies, and monitor access to sensitive information. A Bachelor's Degree in Cybersecurity...Flexible hours
- A cybersecurity consulting firm in San Antonio is seeking a Network Security Analyst to monitor and protect its network infrastructure. Responsibilities include incident response, maintaining security measures, and collaborating with teams to enhance security. The ideal...
- A cybersecurity firm in San Antonio is looking for a Cyber Security Analyst I to monitor security alerts, investigate incidents, and provide... ...a High School Diploma and at least 1 year of experience in information security or networking, with skills in various cybersecurity...Full time
$100k - $115k
...Recruiter at Insight Global Position: Lead Cyber Security Analyst Organization: Community First Health... ...‑on experience with MITRE ATT&CK for threat detection, threat hunting, and/or... ...role requires a deep understanding of information security protocols and the ability to...Permanent employmentFull timeContract work- CHRISTUS Health is seeking an Application System Analyst I to serve as a liaison between system end-users and operational leaders. Responsibilities... ...needs. The ideal candidate has a degree in healthcare or information systems and at least 1 year of experience. The position...Full timeMonday to Friday
- ...ideal candidate has a minimum of 4 years of experience in IT audit and strong understanding of IT risk assessments and information security. You will lead audit engagements, assess IT systems, and enhance the Credit Union's operations. We offer a comprehensive benefits...Senior
- ...join the team. The Loss Prevention Officer maintains a safe and secure environment by performing protective and enforcement functions... ...while coping with emergencies, undesired conduct, disturbances and threats to life and property. Situated in the heart of downtown...Full timeFlexible hoursNight shiftWeekend work
- Affinius Capital is seeking a Senior Associate Information Security to lead the organization's cybersecurity program in a hybrid Microsoft Azure environment. Responsibilities include managing security operations, governance, risk management, and incident response while...SeniorFull time
- VIA Metro Transit is seeking a Senior Security Engineer to enhance its information security posture through strong technical and operational leadership. The ideal candidate will have a Bachelor's degree in a relevant field and a minimum of five years of experience in information...Senior
- PAE Government Services Inc. is seeking a Senior Information System Security Officer to join their team in San Antonio, Texas. This role supports... ...will include maintaining security evidence and leading the creation of information security policies to ensure compliance...Senior
$170.6k - $390k
...practice – the best place in the world to grow your career in information security! The opportunity The Senior Network Security... ...solutions. Protect sensitive data against a myriad of threats while leading cross-departmental initiatives that align security measures...SeniorSummer holidayRemote workFlexible hours- General Dynamics Information Technology is seeking an Information System Security Manager to lead cloud security and governance for the AWAKEN initiative. This role requires deep expertise in cloud environments, cybersecurity compliance, and strong communication skills...Senior
- SWBC is seeking an Information Security Team Leader to manage IAM controls and oversee security analytics across multiple systems. The ideal candidate should possess a bachelor’s degree in a related field and have at least 3-4 years of relevant experience. This role involves...
$130.2k - $265.3k
...reverse engineering. Certifications like CISSP, GIAC GREM, or CREA are needed. You will work on identifying threats, documenting findings, and strengthening security. Competitive pay range is from $130,200 to $265,300 USD depending on experience. #J-18808-Ljbffr Accenture...Senior- ...bring the expertise in all facets of Information Operations, making sure our fleet is... ...objective. This role may include: Leading the planning, development, testing and... ...analyzing maritime activities that pose a threat to national security, such as drug smuggling, illegal...Part timeWorldwide
- ...seeking an Endpoint Protection Administrator to manage and deploy endpoint security tools like ESS and Microsoft Defender. You will be responsible for monitoring compliance, responding to threats, and providing operational support. The ideal candidate has a Bachelor's...Senior
- ...Senior Security Specialist The primary purpose of this position is: To serve as the Senior Security Specialist. Providing management oversight for information systems and personnel security program policies in support of USAF, DoD, and National level Special Access...
- SWBC is seeking a talented individual to serve as an information security team leader to analyze and execute an enterprise-wide identity and... ...for information systems, applications, and data; oversees IAM analysts, programs, and processes supporting information security...For contractorsWork at officeLocal areaRemote work
- ...offer exciting opportunities to work with leading industry experts, business consultants... ...vulnerability management, and enforcement of security controls across the PTT cybersecurity... ...DoD cybersecurity requirements. The Information Security Specialist supports incident response...Temporary workImmediate start
- An established industry player is seeking a Business Analyst to bridge the gap between business stakeholders and technical teams in the Investments domain. This dynamic role involves analyzing financial models, gathering requirements, and optimizing operational workflows...
$17.75 per hour
...Security Specialist/HARPS Guard I - PT schedule w/ Floater hours Part Time Service Worker... ...answer all telephone calls within the HARPS/Information Desk Control Area. This area is defined... ...or circumstances, which may pose a threat to the security of DoD personnel, contractor...Hourly payPart timeFor contractorsWork at officeShift workWeekend work- ...Prevention Officer maintains a safe and secure environment by performing protective and... ...emergencies, undesired conduct, disturbances and threats to life and property. Essential Job... ...to federal employment laws. For further information, please review the Know Your Rights...Hourly payFull timePart timeFlexible hoursNight shiftWeekend work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Information Security Analyst Sr. Lead - Threat Hunter. Be the first to apply!
- senior data management analyst San Antonio, TX
- data center analyst San Antonio, TX
- senior information security analyst San Antonio, TX
- manufacturing data analyst San Antonio, TX
- data warehouse analyst San Antonio, TX
- data visualization analyst San Antonio, TX
- entry level data analyst no experience San Antonio, TX
- data analyst full time San Antonio, TX
- entry level information security analyst San Antonio, TX
- sas data analyst San Antonio, TX



