DraftKings Logo

DraftKings

Senior Security Analyst

Posted 10 Days Ago
Be an Early Applicant
Remote or Hybrid
Hiring Remotely in Bulgaria
Senior level
Remote or Hybrid
Hiring Remotely in Bulgaria
Senior level
Lead complex cybersecurity investigations across endpoints, identity systems, cloud environments, and production workloads. Serve as regional incident commander, conduct root-cause analysis, containment, eradication, threat hunting, and post-incident hardening. Develop investigative tools, detections, telemetry, and automation; document incidents for technical and executive audiences; coordinate cross-functional response; and mentor security analysts.
The summary above was generated by AI
At DraftKings, AI is becoming an integral part of both our present and future, powering how work gets done today, guiding smarter decisions, and sparking bold ideas. It's transforming how we enhance customer experiences, streamline operations, and unlock new possibilities. Our teams are energized by innovation and readily embrace emerging technology. We're not waiting for the future to arrive. We're shaping it, one bold step at a time. To those who see AI as a driver of progress, come build the future together.
The Crown Is Yours
As a Senior Security Analyst, you'll lead investigations that protect our customers and the systems behind DraftKings, working across corporate and production environments. In this role, you'll operate as the senior escalation point, working across endpoint, identity systems, cloud environments, and production workloads. You'll own our most complex investigations, navigate incidents without an established playbook, and strengthen how the team responds while mentoring other analysts.
What You'll Do
  • Lead security investigations across endpoint, identity systems, cloud environments, and production workloads, covering triage, root-cause analysis, containment, and eradication.
  • Act as incident commander in your region, coordinating parallel work across IT, Engineering, Legal, HR, and other teams.
  • Investigate cases with no existing playbook: decide what data to collect, build the tools to analyze it, and document it for reuse.
  • Write and peer-review case summaries, incident reports, and timelines.
  • Hunt for novel threats, such as AI-assisted intrusions or supply-chain compromise. Convert findings into telemetry, detections, and automation that raise alert quality and reduce manual work.
  • Drive post-incident hardening with Security Engineering and mentor analysts through case review, escalation support, and knowledge sharing.

What You'll Bring
  • At least 6 years in cybersecurity, including 4 or more years in incident response, forensics, threat intelligence, or threat hunting.
  • Experience running major incidents with little supervision, under time pressure and incomplete facts, including briefing leadership and writing the post-incident reports for both engineers and executives.
  • Deep knowledge of how attackers operate today, including insider threat, and the frameworks such as MITRE ATT&CK, the Diamond Model, the kill chain, with the ability to assess an attacker's capabilities as an investigation unfolds..
  • Hands-on experience with SIEM, EDR/NDR, and CSPM tooling.
  • Monitoring experience in endpoint, identity, SaaS or CI/CD environments, including incident investigation in at least one major cloud environment, such as AWS, Azure, or GCP.
  • Practical scripting skills in Python, PowerShell or a similar language, with experience utilizing YARA-L, Sigma, KQL, SPL or similar for investigation queries and detections.

#LI-TK1
#LI-REMOTE
Join Our Team
We're a publicly traded (NASDAQ: DKNG) technology company headquartered in Boston. As a regulated gaming company, you may be required to obtain a gaming license issued by the appropriate state agency as a condition of employment. Don't worry, we'll guide you through the process if this is relevant to your role.

Similar Jobs at DraftKings

10 Days Ago
Remote or Hybrid
Senior level
Senior level
Digital Media • Gaming • Information Technology • Software • Sports • Esports • Big Data Analytics
Lead complex cybersecurity investigations across endpoint, identity, cloud, SaaS, CI/CD, and production environments. Serve as regional incident commander, conduct triage through eradication, investigate novel threats, develop detection and automation, document incidents, drive post-incident hardening, and mentor analysts. The role requires strong incident response, threat hunting, forensics, cloud monitoring, scripting, and security tooling expertise.
Top Skills: AWSAzureCspmEdrGCPKqlMitre Att&CkNdrPowershellPythonSIEMSigmaSplYara-L
2 Days Ago
Remote or Hybrid
Mid level
Mid level
Digital Media • Gaming • Information Technology • Software • Sports • Esports • Big Data Analytics
Lead design and delivery of scalable iOS build and release tooling, improve CI/CD performance, set architecture and coding standards, mentor engineers, optimize app performance and release processes, and align mobile tooling strategy with product and platform goals.
Top Skills: Automated TestingAzure DevopsBuild CachingCi/CdMvvmRelease AutomationSwiftSwift Package ManagerSwiftuiToolchain ManagementViperXcode
4 Days Ago
Remote or Hybrid
Senior level
Senior level
Digital Media • Gaming • Information Technology • Software • Sports • Esports • Big Data Analytics
Build and improve enterprise security tooling and automated workflows focused on EDR, DLP, email security, and cloud environments. Conduct threat hunting, investigate system behavior, develop detections, and strengthen protections across corporate IT. Partner with analysts and system owners, contribute to the enterprise security roadmap, manage complex changes, and mentor junior team members. Participate in periodic off-hours escalation rotations.
Top Skills: AutomationCloud SecurityDlpEdrFile SystemsMdmNetworkingOperating SystemsPublic Cloud

What you need to know about the Austin Tech Scene

Austin has a diverse and thriving tech ecosystem thanks to home-grown companies like Dell and major campuses for IBM, AMD and Apple. The state’s flagship university, the University of Texas at Austin, is known for its engineering school, and the city is known for its annual South by Southwest tech and media conference. Austin’s tech scene spans many verticals, but it’s particularly known for hardware, including semiconductors, as well as AI, biotechnology and cloud computing. And its food and music scene, low taxes and favorable climate has made the city a destination for tech workers from across the country.

Key Facts About Austin Tech

  • Number of Tech Workers: 180,500; 13.7% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Dell, IBM, AMD, Apple, Alphabet
  • Key Industries: Artificial intelligence, hardware, cloud computing, software, healthtech
  • Funding Landscape: $4.5 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Live Oak Ventures, Austin Ventures, Hinge Capital, Gigafund, KdT Ventures, Next Coast Ventures, Silverton Partners
  • Research Centers and Universities: University of Texas, Southwestern University, Texas State University, Center for Complex Quantum Systems, Oden Institute for Computational Engineering and Sciences, Texas Advanced Computing Center

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account