← back to jobs
> job detail
Y
👽Other

Cyber Threat Analyst

Yum! Brands · Plano, TX, United States
// classified as
Other (Adjacent or hard to classify.)
posted
2d ago
location
Plano, TX, United States
languages
python, sql
tools
aws, azure
> stack
pythonsqlawsazure
> description

The Cyber Threat Analyst supports Yum’s Global Security Operations by detecting, analyzing, and responding to cybersecurity threats across Yum’s brands and digital assets. This role focuses on triage, investigation, and data correlation, transforming security alerts and raw telemetry into actionable intelligence. Operating as part of Yum’s global cyber defense ecosystem, the Cyber Threat Analyst collaborates with incident responders, engineers, and threat hunters to ensure timely detection, containment, and reporting of potential security incidents. The ideal candidate is analytical, methodical, and curious — motivated by finding the “why” behind security alerts and continuously improving detection effectiveness.

  • Monitor security alerts and events across SIEM, EDR, and cloud monitoring platforms to identify anomalous activity.

  • Conduct initial triage and deep-dive analysis to determine event criticality, scope, and potential impact.

  • Correlate threat data across systems (network, endpoint, identity, and cloud) to validate incidents and identify root cause.

  • Escalate validated incidents to senior analysts or incident response teams with clear, well-documented evidence.

  • Support proactive threat intelligence integration by tagging indicators of compromise (IOCs) and validating threat feeds.

  • Maintain and update detection content (queries, dashboards, correlation rules) in collaboration with detection engineering teams.

  • Document analysis results, incident narratives, and recommended containment steps in the case management system.

  • Participate in shift handoffs, threat reviews, and team knowledge-sharing sessions.

  • Contribute to process improvement efforts that enhance detection fidelity or reduce false positives.

  • Solid understanding of cybersecurity fundamentals, network protocols, and threat actor behaviors.

  • Experience with SIEM tools (e.g., Splunk, Sentinel, QRadar) and EDR platforms (e.g., Defender, CrowdStrike, Carbon Black).

  • Familiarity with MITRE ATT&CK and the cyber kill chain model.

  • Ability to analyze logs and telemetry to identify potential compromises.

  • Competency in scripting or data query languages (KQL, Python, PowerShell, SQL) preferred.

  • Strong analytical thinking and problem-solving ability.

  • Excellent written and verbal communication skills with attention to detail.

  • Ability to work collaboratively in a 24x7 global operations environment.

  • Bachelor’s degree in Cybersecurity, Computer Science, or related field.

  •  2–4 years of experience in security operations, threat analysis, or digital forensics.

  • Relevant certifications preferred: CompTIA Security+, GSEC, GCIH, or similar.

  • Familiarity with cloud environments (AWS, Azure, GCP) a plus.

  • Proficient in written and spoken English.

Salary Range: ­­$$98,400 – 115,800 annually + bonus eligibility + benefits