Lead Cybersecurity
2 weeks ago
Job Description:
This position requires office presence of a minimum of 5 days per week and is only located in the location(s) posted. No relocation is offered.
Join AT&T and help shape the future of communications and technology that connect the world. We value innovators who seek to explore the unknown and challenge the status quo. Bring your bold ideas and fearless spirit to redefine connectivity and transform how people share stories and experiences. At AT&T, you won't just imagine the future—you'll build it.
The Lead Cybersecurity Insider Risk Analyst is responsible for leading the response to high-priority and escalated cybersecurity incidents, overseeing the detection, analysis, response, reporting, and prevention of threats across AT&T employees, contractors and third-party vendors. This senior analyst proactively drives the creation and deployment of new detection rules, adapting to active threats and evolving suspicious behaviors. The role requires a high degree of organization, advanced technical acumen, and the ability to manage complex incidents, mentor team members, and communicate effectively with both executive leadership and business units. The ideal candidate will excel in incident response leadership, technical investigation, and continuous improvement of security operations.
General Responsibilities
The Lead Cybersecurity Insider Risk Analyst leads escalated incident management as the primary investigator and incident handler, ensuring all tasks are executed efficiently and thoroughly. This role plays a key part in developing incident response processes, driving remediation, contributing to threat intelligence, and providing executive-level communication. The analyst also supports tabletop exercises and serves as a mentor and subject matter expert across the cybersecurity team.
Core Responsibilities
- Manage all cases as Lead Handler for escalated cybersecurity incidents.
- Oversee all tasks related to escalated cases as Lead Investigator.
- Investigate all escalated security events, ensuring comprehensive analysis and response.
- Assist with "Micro-hunts" to discover, analyze, and report on actionable threat intelligence.
- Support the development and continuous improvement of incident response processes.
- Drive remediation efforts for all cybersecurity incidents assigned to the team.
- Perform skilled triage of threats using advanced technical and business knowledge.
- Mentor team members in triage, leveraging business knowledge and incident response frameworks.
- Assist with scenario development for tabletop exercises across the Incident Response team.
- Document and communicate findings and after-action reports in formats required by leadership.
- Function as a mentor and subject matter expert to other Incident Responders.
- Serve as a scribe when requested, maintaining accurate records of incidents.
- Provide executive-level communications to leadership and stakeholders.
Technical Responsibilities
- Utilize case management tools, host/network analysis, and threat intelligence platforms for incident response.
- Apply strong knowledge in incident handling processes, lifecycle, and attack frameworks.
- Conduct in-depth analysis of threats, exploits, vulnerabilities, and malware families.
- Perform investigations across Windows, OSX, and Lenox operating systems.
- Leverage Endpoint Detection and Response (EDR) technologies and conduct cloud security analysis.
- Use SPLUNK and other analytics tools for advanced investigations and reporting.
- Understand company infrastructure, including VPNs, AVPNs, and business partner connectivity.
- Demonstrate expert familiarity with networking, internet communication methods, and general computing protocols.
- Design and implement new security detection methods in response to emerging threats.
- Collaborate with other Threat Analytic teams, understanding their functions and interactions.
- Mentor team members in skilled triage and advanced practices.
- Generate reports and documentation related to incident response activities.
- Maintain knowledge of SaaS services, mobility threats, and security in cloud environments.
- Exhibit strong understanding of scripting languages (e.g., Python, PowerShell, Bash) for automation and analysis.
- Assist with algorithm development and advanced threat intelligence analysis.
Technical Skills
- Working knowledge of at least four of the following: incident management technologies, OS hardening, cloud environments, host analysis, network forensics, malware reversing, intrusion detection, anomaly detection, threat research, threat intelligence, security alert design, data analysis.
- Strong knowledge of incident handling, lifecycle, and attack frameworks.
- Advanced proficiency in incident response, triage, and remediation.
- Expertise in host and network analysis, EDR technologies, and SPLUNK.
- Good understanding of cloud security analysis, internet-based threats, and SaaS services.
- Strong familiarity with company infrastructure (VPNs/AVPNs), mobility threats, and networking.
- Expert familiarity with general computing protocols and malware/network attack vectors.
- Experience designing and implementing security detection methods.
- Understanding of scripting languages for automation and analysis.
- Ability to mentor and train others at a senior level.
Soft Skills & Traits
- Excellent analytical and problem-solving skills, with the ability to perform core root cause analysis.
- Quick learner, able to absorb and teach new technologies and concepts.
- Highly effective collaborator, especially in remote or distributed teams.
- Excels in business communication methods and general soft skills.
- Strong understanding of the business, its entities, and how cybersecurity impacts the broader organization.
- Professional integrity and discretion in handling sensitive information.
- Commitment to continuous learning and staying current with emerging cybersecurity threats and best practices.
Education/Experience:
Bachelor's degree (BS/BA) desired in Computer Science or Cybersecurity. 5+ years of related experience. Certification is required in some areas.
Our Lead Cybersecurity earns between $128,400-$192,600 USD Annual, not to mention all the other amazing rewards that working at AT&T offers. Individual starting salary within this range may depend on geography, experience, expertise, and education/training.
Joining our team comes with amazing perks and benefits:
- Medical/Dental/Vision coverage
- 401(k) plan
- Tuition reimbursement program
- Paid Time Off and Holidays (based on date of hire, at least 23 days of vacation each year and 9 company-designated holidays)
- Paid Parental Leave
- Paid Caregiver Leave
- Additional sick leave beyond what state and local law require may be available but is unprotected
- Adoption Reimbursement
- Disability Benefits (short term and long term)
- Life and Accidental Death Insurance
- Supplemental benefit programs: critical illness/accident hospital indemnity/group legal
- Employee Assistance Programs (EAP)
- Extensive employee wellness programs
- Employee discounts up to 50% off on eligible AT&T mobility plans and accessories,
- AT&T internet (and fiber where available) and AT&T phone.
#LI-Onsite – Full-time office role-
Ready to join our team? Apply today.
Weekly Hours:
40Time Type:
RegularLocation:
USA:NC:Charlotte / Research Dr - Dat:9139 Research DrSalary Range:
$128, $215,800.00It is the policy of AT&T to provide equal employment opportunity (EEO) to all persons regardless of age, color, national origin, citizenship status, physical or mental disability, race, religion, creed, gender, sex, sexual orientation, gender identity and/or expression, genetic information, marital status, status with regard to public assistance, veteran status, or any other characteristic protected by federal, state or local law. In addition, AT&T will provide reasonable accommodations for qualified individuals with disabilities. AT&T is a fair chance employer and does not initiate a background check until an offer is made.
-
Lead Cybersecurity
2 weeks ago
Dallas, Texas, United States AT&T Full timeJob Description:This position requires office presence of a minimum of 5 days per week and is only located in the location(s) posted. No relocation is offered.Join AT&T and help shape the future of communications and technology that connect the world. We value innovators who seek to explore the unknown and challenge the status quo. Bring your bold ideas and...
-
Manager Cybersecurity
13 hours ago
Dallas, Texas, United States Southwest Airlines Full time $151,000 - $170,000Department:TechnologyOur Company PromiseWe are committed to provide our Employees a stable work environment with equal opportunity for learning and personal growth. Creativity and innovation are encouraged for improving the effectiveness of Southwest Airlines. Above all, Employees will be provided the same concern, respect, and caring attitude within the...
-
Principal Cybersecurity Integrated Architect
2 weeks ago
Dallas, Texas, United States Cox Automotive Full timeThe Principal Integrated Cybersecurity Architect is responsible for leading the evangelization of the agreed upon cybersecurity architectural principles, standards, and design patterns, and advising engineering teams on how to build secure products and enterprise tools for multi-cloud and on-premises environments. This role is focused on being an integrated...
-
Cybersecurity Intern
2 weeks ago
Dallas, Texas, United States Lensa Full timeLensa is a career site that helps job seekers find great jobs in the US. We are not a staffing firm or agency. Lensa does not hire directly for these jobs, but promotes jobs on LinkedIn on behalf of its direct clients, recruitment ad agencies, and marketing partners. Lensa partners with DirectEmployers to promote this job for AT&T. Clicking "Apply Now" or...
-
Vice President of Sales–Cybersecurity Services
13 hours ago
Dallas, Texas, United States Inspira Enterprise Full timeRole SummaryThis Vice President of Sales role is ideal for ahands-on, quota-carrying sales leaderwho excels atbuilding pipeline, closing deals, and driving sustained revenue growthacross cybersecurity and Microsoft services. The role offers the opportunity to shape enterprise security and cloud transformation while delivering measurable business impact.Role...
-
Associate Director Cybersecurity
13 hours ago
Dallas, Texas, United States Lensa Full timeLensa is a career site that helps job seekers find great jobs in the US. We are not a staffing firm or agency. Lensa does not hire directly for these jobs, but promotes jobs on LinkedIn on behalf of its direct clients, recruitment ad agencies, and marketing partners. Lensa partners with DirectEmployers to promote this job for AT&T. Clicking "Apply Now" or...
-
Cybersecurity Automation Engineer
2 weeks ago
Dallas, Texas, United States Jobs via Dice Full timeDice is the leading career destination for tech experts at every stage of their careers. Our client, Mindlance, is seeking the following. Apply via Dice todayJob Title:Cloud Security Automation EngineerJob Description:Onsite Dallas TXMUST HAVE Python AutomationDevSecOps' expertise in building and supporting security solutions for Windows, Linux, above...
-
Dallas, Texas, United States Jobs via Dice Full timeDice is the leading career destination for tech experts at every stage of their careers. Our client, Rivago infotech inc, is seeking the following. Apply via Dice todayRole: Senior Python Developer Cybersecurity Process AutomationLocation: Charlotte, NC / Dallas, TX (Hybrid)Role OverviewWe re looking for a hands-on Senior Developer to design, build, and...
-
Lead IT Security Endpoint Engineer
2 weeks ago
Dallas, Texas, United States The Depository Trust & Clearing Corporation (DTCC) Full timeAre you ready to make an impact at DTCC?Do you want to work on innovative projects, collaborate with a dynamic and supportive team, and receive investment in your professional development? At DTCC, we are at the forefront of innovation in the financial markets. We are committed to helping our employees grow and succeed. We believe that you have the skills...
-
Lead, Information Systems
2 weeks ago
Dallas, Texas, United States Baylor Scott & White Health Full timeJob SummaryThe Lead, Information Systems (IS) leads the delivery, governance, and continuous improvement of enterprise Microsoft platforms that support patient care and healthcare operations. This role combines a strong engineering background, people leadership, and ethical decision-making in a highly regulated, mission-driven environment.The IS Lead owns...