Sr Information Security Analyst
Allegan, MI, US, 49010
At Perrigo, we are driven by our mission to Makes Lives Better Through Trusted Health and Wellness Solutions, Accessible to All. We are proud to be a Top 10 player in the European Consumer Self-Care market and the largest U.S. store brand provider of over the counter and infant formula. Dedicated to providing The Best Self-Care for Everyone, we are the people behind the brands you trust. We are Opill®, Compeed®, Solpadeine®, NiQuitin®, and many more. We Are Perrigo. We are committed to enhancing the wellbeing of our colleagues and consumers alike. We pride ourselves on fostering an inclusive, collaborative culture where each person can experience a sense of belonging.
Join us on our One Perrigo journey as we evolve to win in self-care.
Description Overview
The Senior Information Security Analyst is a senior individual contributor within the Cyber Defense team responsible for leading security investigations, incident response, threat detection and hunting, and the continuous improvement of enterprise security operations. The role works across endpoint, identity, email, cloud, and data security technologies to identify, contain, and remediate threats.
The successful candidate will be an experienced, hands-on security professional who can independently lead complex investigations, improve detections and response processes, mentor other analysts, and take ownership of key Cyber Defense capabilities. Experience with data loss prevention (DLP) and data security is strongly preferred.
Scope of the Role
Security Operations & Incident Response
• Lead investigation, containment, remediation, and post-incident review of cybersecurity incidents across endpoint, identity, email, cloud, and network environments
• Investigate suspicious activity using SIEM, EDR/XDR, identity, email security, and other enterprise security telemetry
• Develop incident timelines, determine scope and root cause, document findings, and communicate risk and recommended actions to technical and leadership stakeholders
• Perform proactive threat hunting and identify opportunities to improve detection and response coverage
• Serve as an escalation point and mentor for other security analysts during complex investigations
Detection, SIEM & Automation
• Develop, tune, and improve security detections and correlation logic based on threats, incidents, and observed control gaps
• Use enterprise SIEM platforms to investigate threats, hunt across security telemetry, and improve monitoring coverage
• Support security orchestration and automation use cases, including playbooks for investigation, enrichment, containment, and notification
• Identify repetitive SOC processes that can be automated or streamlined
Endpoint, Identity & Cloud Threat Detection
• Investigate endpoint threats using CrowdStrike Falcon or comparable enterprise EDR/XDR platforms
• Investigate identity-based attacks involving Active Directory, Microsoft Entra ID, authentication, privileged accounts, OAuth applications, and session/token abuse
• Analyze Microsoft 365 and cloud security events and work with engineering and infrastructure teams on containment and remediation
• Use threat intelligence and indicators of compromise to scope incidents and proactively hunt for related activity
Data Security & DLP
• Support and improve enterprise DLP and data security monitoring across endpoint, email, cloud, and collaboration platforms
• Investigate potential data-loss, sensitive-data exposure, and policy-violation events and coordinate appropriate response
• Assist with tuning DLP policies and workflows to improve detection quality while reducing unnecessary business impact
• Partner with security, privacy, legal, and business stakeholders as appropriate during sensitive-data investigations
Cyber Defense Program Improvement
• Identify gaps discovered through incidents, threat hunting, and operational analysis and recommend practical improvements
• Develop and maintain investigation procedures, response playbooks, and operational documentation
• Collaborate with Security Engineering, IAM, Network, Cloud, and other technology teams to strengthen preventive and detective controls
• Take ownership of assigned Cyber Defense technologies or operational capabilities and drive their continued maturity
Experience Required
• Bachelor’s degree in Cybersecurity, Information Technology, or a related field, or equivalent professional experience
• 7+ years of relevant cybersecurity experience, including significant hands-on security operations, incident response, threat detection, or threat hunting experience
• Demonstrated ability to independently investigate and lead complex cybersecurity incidents
• Hands-on experience with enterprise SIEM and EDR/XDR technologies
• Strong understanding of endpoint, identity, network, email, and cloud attack techniques
• Working knowledge of Active Directory and Microsoft Entra ID security concepts
• Strong analytical, troubleshooting, documentation, and communication skills
Desired Technical Experience
• CrowdStrike Falcon, including EDR and/or Identity Protection
• Splunk Enterprise Security, CrowdStrike Next-Gen SIEM, Microsoft Sentinel, or comparable enterprise SIEM platforms
• Cortex XSOAR or comparable SOAR/security automation platforms
• Microsoft 365 and Entra ID security investigations
• Enterprise DLP/data security technologies such as Proofpoint, Microsoft Purview, or comparable platforms
• Email security and account-takeover investigation
• PowerShell, Python, SPL, KQL, or other scripting/query languages used for security investigation and automation
• Threat intelligence, vulnerability/exposure management, and hybrid enterprise environments
Benefits
We believe our people are our greatest asset. Alongside competitive compensation, we offer benefits tailored to supporting you and your family, as well as career development opportunities to ensure you feel valued and supported, both professionally and personally.
Find out more about Total Rewards at Perrigo.
Hybrid Working Approach
We love our offices and the setting they provide for in-person collaboration and celebration. But we also appreciate the opportunity to work remotely can energise you too, so we promote flexibility with the ability to work two days a week from home in many roles.
We are proud to be included in the Forbes list of "America's Best Employers by State 2024". Find out more here
Applicants please note: To apply to this position please click the APPLY button at the bottom of the application. (The SAVE button will only save your profile information but not submit an application for this open position.) All application materials, including resumes and CVs, must be submitted in English. Thank you.
We are an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, status as a protected veteran, or other characteristics protected by law. #weareperrigo
Nearest Major Market: Grand Rapids