Investigate incidents end-to-end: Review complex alert context, gather evidence from Chronicle UDM ... Your written analysis is the primary artifact of your work and should set the standard for Tier 1 ...
Investigate incidents end-to-end: Review complex alert context, gather evidence from Chronicle UDM ... Your written analysis is the primary artifact of your work and should set the standard for Tier 1 ...
Investigate incidents end-to-end: Review complex alert context, gather evidence from Chronicle UDM ... Your written analysis is the primary artifact of your work and should set the standard for Tier 1 ...
Quick apply
Investigate incidents end-to-end: Review complex alert context, gather evidence from Chronicle UDM ... Your written analysis is the primary artifact of your work and should set the standard for Tier 1 ...
Remote Operations Center OT Security Analyst
Olathe, KS ยท On-site +1
Support incident investigations, evidence collection, and forensic analysis of security breaches ... Follow process and procedures for both site-specific projects and the Remote Operations Center.
Remote Operations Center OT Security Analyst
Olathe, KS ยท On-site +1
Support incident investigations, evidence collection, and forensic analysis of security breaches ... Follow process and procedures for both site-specific projects and the Remote Operations Center.
Remote Operations Center OT Security Analyst
Olathe, KS ยท On-site +1
Support incident investigations, evidence collection, and forensic analysis of security breaches ... Follow process and procedures for both site-specific projects and the Remote Operations Center.
Remote Operations Center OT Security Analyst
Olathe, KS ยท On-site +1
Support incident investigations, evidence collection, and forensic analysis of security breaches ... Follow process and procedures for both site-specific projects and the Remote Operations Center.
Fire Investigator
Topeka, KS ยท Remote
Remote Schedule * Competitive Compensation Package * Bonus Opportunity * Career Growth * A Diverse ... Provides honest and unbiased analysis and consultation on various fires and explosions. * Field ...
Fire Investigator
Topeka, KS ยท Remote
Remote Schedule * Competitive Compensation Package * Bonus Opportunity * Career Growth * A Diverse ... Provides honest and unbiased analysis and consultation on various fires and explosions. * Field ...
Position is Not Patient Facing Remote Work Guidelines * Workspace is a quiet and distraction-free ... investigation, or otherwise opposes an unlawful employment act based upon the above classifications.
Position is Not Patient Facing Remote Work Guidelines * Workspace is a quiet and distraction-free ... investigation, or otherwise opposes an unlawful employment act based upon the above classifications.
HST Analyst
Leavenworth, KS ยท On-site +1
$61K - $141K/yr
Remote Work: No Job Number: R0244586 Location: Fort Leavenworth,KS,US Share job via: Share HST ... Applicants selected will be subject to a security investigation and may need to meet eligibility ...
HST Analyst
Leavenworth, KS ยท On-site +1
$61K - $141K/yr
Remote Work: No Job Number: R0244586 Location: Fort Leavenworth,KS,US Share job via: Share HST ... Applicants selected will be subject to a security investigation and may need to meet eligibility ...
HST Analyst
Leavenworth, KS ยท On-site +1
$61K - $141K/yr
Remote Work: No Job Number: R0242860 Location: Fort Leavenworth,KS,US Share job via: Share HST ... Applicants selected will be subject to a security investigation and may need to meet eligibility ...
HST Analyst
Leavenworth, KS ยท On-site +1
$61K - $141K/yr
Remote Work: No Job Number: R0242860 Location: Fort Leavenworth,KS,US Share job via: Share HST ... Applicants selected will be subject to a security investigation and may need to meet eligibility ...
Measurement Tech Analyst - Large Power/Wholesale Coordinator
Kansas City, MO ยท On-site +1
$54K - $68K/yr
... and investigate issues to ensure accuracy and reliability Serve as primary contact for daily ... A remote or hybrid work schedule (Monday through Friday) may be available based on business needs ...
Measurement Tech Analyst - Large Power/Wholesale Coordinator
Kansas City, MO ยท On-site +1
$54K - $68K/yr
... and investigate issues to ensure accuracy and reliability Serve as primary contact for daily ... A remote or hybrid work schedule (Monday through Friday) may be available based on business needs ...
Measurement Tech Analyst - Large Power/Wholesale Coordinator
Kansas City, MO ยท On-site +1
$54K - $68K/yr
... and investigate issues to ensure accuracy and reliability Serve as primary contact for daily ... A remote or hybrid work schedule (Monday through Friday) may be available based on business needs ...
Measurement Tech Analyst - Large Power/Wholesale Coordinator
Kansas City, MO ยท On-site +1
$54K - $68K/yr
... and investigate issues to ensure accuracy and reliability Serve as primary contact for daily ... A remote or hybrid work schedule (Monday through Friday) may be available based on business needs ...
Measurement Tech Analyst - Large Power/Wholesale Coordinator
Kansas City, MO ยท On-site +1
$54K - $68K/yr
... and investigate issues to ensure accuracy and reliability Serve as primary contact for daily ... A remote or hybrid work schedule (Monday through Friday) may be available based on business needs ...
Measurement Tech Analyst - Large Power/Wholesale Coordinator
Kansas City, MO ยท On-site +1
$54K - $68K/yr
... and investigate issues to ensure accuracy and reliability Serve as primary contact for daily ... A remote or hybrid work schedule (Monday through Friday) may be available based on business needs ...
Epic Research & Genomics Analyst
Wichita, KS ยท On-site +1
Work command center shifts to investigate during go-live, document, and resolve break-fix tickets ... Project Talent Model (PTM) is a model that is tailored specifically for long-term, remote client ...
Epic Research & Genomics Analyst
Wichita, KS ยท On-site +1
Work command center shifts to investigate during go-live, document, and resolve break-fix tickets ... Project Talent Model (PTM) is a model that is tailored specifically for long-term, remote client ...
This is a remote role in the United States. The Information Security Systems Analyst is responsible ... Participate in breach and information security related investigations, documentation, and ...
This is a remote role in the United States. The Information Security Systems Analyst is responsible ... Participate in breach and information security related investigations, documentation, and ...
Sr Data Scientist
Leawood, KS ยท On-site +1
Remote within the United States HOW YOU'LL SPEND YOUR TIME * Threat Detection & Behavioral Analysis ... Author detailed analytical reports supporting security investigations, including methodology ...
Sr Data Scientist
Leawood, KS ยท On-site +1
Remote within the United States HOW YOU'LL SPEND YOUR TIME * Threat Detection & Behavioral Analysis ... Author detailed analytical reports supporting security investigations, including methodology ...
Grant Coordinator
Lawrence, KS ยท On-site +1
$46K - $64K/yr
... Principal Investigator and in accordance with agency and university policies, including the ... Analyze and interpret the agency's request for proposal (RFP), which includes eligibility ...
Grant Coordinator
Lawrence, KS ยท On-site +1
$46K - $64K/yr
... Principal Investigator and in accordance with agency and university policies, including the ... Analyze and interpret the agency's request for proposal (RFP), which includes eligibility ...
Senior Geotechnical Bridge & Infrastructure Engineer
Olathe, KS ยท On-site +1
$125K - $160K/yr
New Remote Position-Alternate Delivery Requisition Sr. Geotechnical Engineer - Bridge, Tunnel ... This may include performing and/or leading field investigations, engineering analysis, calculations ...
Senior Geotechnical Bridge & Infrastructure Engineer
Olathe, KS ยท On-site +1
$125K - $160K/yr
New Remote Position-Alternate Delivery Requisition Sr. Geotechnical Engineer - Bridge, Tunnel ... This may include performing and/or leading field investigations, engineering analysis, calculations ...
Mission Command Systems Analyst
Leavenworth, KS ยท On-site +1
$61K - $141K/yr
Remote Work: No Job Number: R0235981 Location: Fort Leavenworth,KS,US Share job via: Share Mission ... Applicants selected will be subject to a security investigation and may need to meet eligibility ...
Mission Command Systems Analyst
Leavenworth, KS ยท On-site +1
$61K - $141K/yr
Remote Work: No Job Number: R0235981 Location: Fort Leavenworth,KS,US Share job via: Share Mission ... Applicants selected will be subject to a security investigation and may need to meet eligibility ...
Contract Investigator - Wichita, KS
Wichita, KS ยท On-site +1
Minimum of 1 year of specialized Federal Background investigative experience within the last 5 ... Ability to read, analyze, and interpret professional journals, technical procedures, or ...
Contract Investigator - Wichita, KS
Wichita, KS ยท On-site +1
Minimum of 1 year of specialized Federal Background investigative experience within the last 5 ... Ability to read, analyze, and interpret professional journals, technical procedures, or ...
Minimum of 1 year of specialized Federal Background investigative experience within the last 5 ... Ability to read, analyze, and interpret professional journals, technical procedures, or ...
Minimum of 1 year of specialized Federal Background investigative experience within the last 5 ... Ability to read, analyze, and interpret professional journals, technical procedures, or ...
Risk Claims Manager
Kansas City, KS ยท Remote
$85K - $95K/yr
This position has the potential to be remote. ESSENTIAL JOB DUTIES * Personally investigate and ... Excellent verbal and written communication, presentation, interpersonal, and analytical skills.
Risk Claims Manager
Kansas City, KS ยท Remote
$85K - $95K/yr
This position has the potential to be remote. ESSENTIAL JOB DUTIES * Personally investigate and ... Excellent verbal and written communication, presentation, interpersonal, and analytical skills.
Remote Investigative Analyst information
What is the difference between Remote Investigative Analyst vs Remote Fraud Analyst?
| Aspect | Remote Investigative Analyst | Remote Fraud Analyst |
|---|---|---|
| Required Credentials | Typically requires investigative certifications, security clearances, or related degrees | Often requires certifications like ACFE, fraud examination, or related degrees |
| Work Environment | Conducts investigations remotely or on-site, often in law enforcement or private investigation settings | Primarily remote, analyzing data and reports to detect fraudulent activities |
| Employer & Industry Usage | Used by law enforcement, private investigation firms, and corporate security | Commonly employed by financial institutions, insurance companies, and e-commerce firms |
Remote Investigative Analysts focus on conducting investigations into various issues, including criminal activities or security breaches, often requiring investigative skills and certifications. Remote Fraud Analysts specialize in detecting and preventing fraud, primarily analyzing data remotely to identify suspicious activities. While both roles involve investigation and analysis, their focus areas and typical employers differ, with the Investigative Analyst more aligned with law enforcement and security, and the Fraud Analyst centered on financial and transactional fraud detection.
What does a Remote Investigative Analyst do?
How does a Remote Investigative Analyst typically collaborate with team members despite working remotely?
What are the key skills and qualifications needed to thrive as a Remote Investigative Analyst, and why are they important?

Full-time
Medical, Dental, PTO
Posted 19 days ago
Job description
Foresite is seeking a Security Analyst II who has a passion for security, a keen eye for detail, and a drive to protect organizations from cyberattacks and can work fully remote, Monday - Friday from 5pm - 1pm CT. It\'s more than just a job; it\'s a launching pad for your cybersecurity career and a first step towards an exciting future at Foresite.
What You\'ll Do:
The Security Analyst II is a critical mid-level role within Foresiteโs Security Operations Center. You will work inside our 24/7 Cyber Fusion Center, handling escalated security alerts, leading complex investigations for our managed customers across Google Security Operations (Chronicle) and our SOAR platform, and serving as a subject matter expert for the broader team. You will leverage your advanced knowledge of our detection stack and customer environments to resolve intricate threats and will act as a mentor and escalation point for our Analyst I team.
-
Act as an escalation point: Serve as the primary point of escalation for our Tier 1 Analysts. You will handle complex event triage escalations, guide junior analysts through difficult dispositions, and provide decisive action on high-severity alerts.
-
Be a point of information and mentorship: Act as a knowledge resource for the Analyst 1 team. Answer questions regarding investigations, customer environments, and tool navigation to help upskill the shift.
-
Investigate incidents end-to-end: Review complex alert context, gather evidence from Chronicle UDM and supporting tools, reach a final disposition, and either close the ticket with a documented rationale or escalate to Tier 3/Incident Response with a clear handoff.
-
Optimize investigation playbooks: Follow established playbooks for the detection stack, but actively identify gaps, propose workflow improvements, and help draft new guidance alongside your Team Lead to improve overall SOC efficiency.
-
Communicate clearly in tickets: Every ticket you touch should be understandable by the next analyst, the customer, or an auditor reading it six months from now. Your written analysis is the primary artifact of your work and should set the standard for Tier 1 analysts.
-
Partner with customers: Lead communications through the ticketing system on routine and complex investigations, requests for information, and exclusion/suppression requests.
-
Meet SLA and quality targets: Consistently meet performance scorecards for time-to-resolve, triage accuracy, and ticket closure quality, setting a benchmark for the shift.
-
Contribute to detection fidelity: Actively hunt for noisy rules, false-positive patterns, and alert clusters. Submit highly detailed tuning requests and recommendations to the detection engineering team.
-
Participate in shift handoff: Brief the incoming shift on open investigations, anomalies observed, and escalated items waiting on customer response.
Who you are:
-
Experience: 2โ4 years of prior experience in a SOC, incident response, or dedicated cybersecurity role.
-
Advanced knowledge of core security concepts: Deep understanding of the cyber kill chain and MITRE ATT&CK framework, common attack vectors (phishing, credential abuse, malware delivery, lateral movement), and hands-on experience with detection, prevention, and response tactics.
-
Proficiency with a SIEM: You have hands-on experience navigating SIEM platforms. You understand how alerts are generated, how to build advanced search queries, and how to pivot seamlessly from an alert to supporting log evidence to build a timeline of events.
-
Strong written communication: You will be writing in tickets that customers read. Clear, concise, accurate writing is non-negotiable.
-
Attention to detail: False positives and true positives often look nearly identical. You are the analyst who reads the full log line, not the summary, and you teach others to do the same.
-
Ability to work Monday - Friday, 5pm - 1am CT
-
CompTIA Sec+, CompTIA CySA+, BTL1, or equivalent certification is required within 90 days of hire if not already held.
Nice to Have
-
Hands-on experience with Google Security Operations (Chronicle), Splunk, Elastic, or Microsoft Sentinel
-
BS of IT Security or Cyber Security
-
Familiarity with endpoint detection and response tools (CrowdStrike, SentinelOne, Defender for Endpoint, Carbon Black)
-
Intermediate scripting or query experience (Python, PowerShell, SQL, or YARA-L/SIEM query languages) to assist with automation or custom searches.
-
Prior MSSP or multi-tenant environment experience
-
Additional advanced certifications: GCIA, GCIH, Google Cloud Security Engineer, or similar.
Why Join Foresite?
We are a mission-driven partner helping organizations navigate an increasingly complex threat landscape. Founded by security practitioners, weโve grown into a global leader in SecOps and MDR by staying true to our core value: radical transparency. When you join Foresite, you are part of a "humans-first" culture where your expertise is valued, and your well-being is a priority. We leverage our Google Cloud Premier SecOps Partnership to stay at the cutting edge, but we know that our greatest asset is our people.
What We Offer
-
Comprehensive Health & Wellness: Robust medical insurance options to keep you and your family healthy.
-
Employer-Covered Insurance: We fully provide employer-paid Dental coverage, as well as Short-Term (STD) and Long-Term Disability (LTD).
-
Recharge & Refuel: We believe in a true work-life balance. Youโll start with 3 weeks of paid vacation, plus additional sick leave and paid company holidays to ensure you have time to recharge.
-
Growth & Mentorship: Access to world-class training and mentorship. We support your career trajectory, whether youโre looking to deepen your technical skills or move into leadership.
-
Impactful Work: Help protect global clients using the latest AI-enhanced security tools and GCP native technologies.