Artemis Networks LLC
Security Analyst
New York City
Sponsorship not specified$100k-$140kDetected 42 days ago
SQLAWSCloud PlatformsCybersecuritySIEMKQLSOARSOC OperationsDetection EngineeringCommunicationMentoring
About the role
- Our exceptionally strong team includes software engineers, AI researchers, security engineers, and product designers hailing from Google, Abnormal AI, Wiz, Meta, AWS, CERN, SentinelOne, and more.
- Every case you review and every detection you improve directly protects real companies and real people.
- Our team includes some of the smartest and most driven people in the world.
Responsibilities
- Recommend and document case outcomes - Provide clear, well-reasoned verdicts (true positive, false positive, benign confirmed) with supporting evidence and written justifications that feed directly into customer-facing reports and product improvement loops.
- Fix and maintain the detection library - Identify misfiring or noisy detections through case review and fix them. Own the quality of the detection content you touch from initial triage through to shipped improvement.
- Investigate security incidents - Perform deeper triage on escalated or complex cases, piecing together attacker timelines and identifying lateral movement, persistence, or exfiltration across data sources.
- Contribute to investigation playbooks - Document investigation techniques, artifact patterns, and case patterns as structured playbooks that help scale consistent, high-quality analysis across the team.
- Engage with the detection engineering cycle - Partner with the security engineering team to surface patterns from case review, propose new detection ideas, and validate that shipped detections perform as expected in production environments.
- Recommend and document case outcomes
- Build and refine detections
- Fix and maintain the detection library
- Identify misfiring or noisy detections through case review and fix them. Own the quality of the detection content you touch from initial triage through to shipped improvement.
- Perform deeper triage on escalated or complex cases, piecing together attacker timelines and identifying lateral movement, persistence, or exfiltration across data sources.
Requirements
- 2-3+ years of hands-on experience in a SOC, MSSP, or MDR environment (Tier 2 or Tier 3 analyst level)
- Experience triaging and investigating alerts across on prem and cloud environments (AWS CloudTrail, Okta, Entra ID, GSuite, EDR or similar)
- Working knowledge of common attacker tactics, techniques, and procedures (MITRE ATT&CK)
- Comfort with log-based investigation and evidence analysis across multiple data sources
- Ability to write clear, concise case verdicts and communicate findings to technical and non-technical audiences
- Experience writing or tuning detection rules (Sigma, YARA-L, SPL, KQL, or similar)
- Familiarity with SQL or scripting for log analysis
- Experience with SIEM, EDR, or SOAR platforms
- We guarantee you will learn more in 1 year here than 10 years in another place.
- Strong attention to detail and an instinct for separating signal from noise
- Background in detection engineering or security content development
- Exposure to AI-assisted investigation or automation tooling
- Why Work at Artemis?
- Make a real world impact. Every case you review and every detection you improve directly protects real companies and real people. You're not working on theoretical security problems - you're on the front lines of active defense, with customers who depend on the quality of your analysis.
- Be challenged to be better than ever before. Our team includes some of the smartest and most driven people in the world. We guarantee you will learn more in 1 year here than 10 years in another place.
Compensation
- We offer a competitive compensation of $100,000-$140,000 per year, and a top-of-market equity component.
- A variety of factors are considered when determining the compensation, including a candidate's professional experience.
Benefits
- Work directly in the detection layer to reduce noise, close coverage gaps, and surface threats that matter.
Company info
- reviewing real security cases across customer environments, recommending outcomes, and continuously improving the detection logic that powers our platform.
- This role sits at the intersection of hands-on SOC work and modern AI-assisted security operations - you'll develop deep expertise in cloud, identity, and SaaS threats while directly shaping the detection content and investigation workflows that protect our customers.
Equal opportunity
- At Artemis, we believe the best ideas come from diverse teams.
- We're committed to creating an inclusive environment where people of all backgrounds, experiences, and perspectives can do their best work.
- We welcome everyone, regardless of race, gender, age, religion, identity, or anything else that makes you, you.
Apply directly at Artemis Networks LLC →Create a free account for alerts like thisView Artemis Networks LLC immigration profile
This listing is sourced directly from Artemis Networks LLC's careers page and normalized into a canonical job model.