Back to jobs

Senior Security Analyst

DraftKings Inc.AnywhereAdded 3d ago
Security Operations Analyst
Craft my tailored resume free

Free to start · No card

Job description

At DraftKings, AI is becoming an integral part of both our present and future, powering how work gets done today, guiding smarter decisions, and sparking bold ideas. It’s transforming how we enhance customer experiences, streamline operations, and unlock new possibilities. Our teams are energized by innovation and readily embrace emerging technology. We’re not waiting for the future to arrive. We’re shaping it, one bold step at a time. To those who see AI as a driver of progress, come build the future together. The Crown Is Yours As a Senior Security Analyst, you'll lead investigations that protect our customers and the systems behind DraftKings, working across corporate and production environments. In this role, you'll operate as the senior escalation point, working across endpoint, identity systems, cloud environments, and production workloads. You'll own our most complex investigations, navigate incidents without an established playbook, and strengthen how the team responds while mentoring other analysts. What You'll Do - Lead security investigations across endpoint, identity systems, cloud environments, and production workloads, covering triage, root-cause analysis, containment, and eradication. - Act as incident commander in your region, coordinating parallel work across IT, Engineering, Legal, HR, and other teams. - Investigate cases with no existing playbook: decide what data to collect, build the tools to analyze it, and document it for reuse. - Write and peer-review case summaries, incident reports, and timelines. - Hunt for novel threats, such as AI-assisted intrusions or supply-chain compromise. Convert findings into telemetry, detections, and automation that raise alert quality and reduce manual work. - Drive post-incident hardening with Security Engineering and mentor analysts through case review, escalation support, and knowledge sharing. What You'll Bring - At least 6 years in cybersecurity, including 4 or more years in incident response, forensics, threat intelligence, or threat hunting. - Experience running major incidents with little supervision, under time pressure and incomplete facts, including briefing leadership and writing the post-incident reports for both engineers and executives. - Deep knowledge of how attackers operate today, including insider threat, and the frameworks such as MITRE ATT&CK, the Diamond Model, the kill chain, with the ability to assess an attacker’s capabilities as an investigation unfolds.. - Hands-on experience with SIEM, EDR/NDR, and CSPM tooling. - Monitoring experience in endpoint, identity, SaaS or CI/CD environments, including incident investigation in at least one major cloud environment, such as AWS, Azure, or GCP. - Practical scripting skills in Python, PowerShell or a similar language, with experience utilizing YARA-L, Sigma, KQL, SPL or similar for investigation queries and detections. Join Our Team We’re a publicly traded (NASDAQ: DKNG) technology company headquartered in Boston. As a regulated gaming company, you may be required to obtain a gaming license issued by the appropriate state agency as a condition of employment. Don’t worry, we’ll guide you through the process if this is relevant to your role.

Prepare your application

Use the description above to assess your fit for DraftKings Inc.. This checklist is guidance from Resumize, rather than additional requirements from the employer. Imported listings can be shortened or change after collection, so confirm the complete description and current availability before sending an application.

Match requirements to evidence

Identify the responsibilities and skills the employer explicitly names. For each important requirement, choose one example from your work, education, training, or projects. Explain what you did, how you did it, and what changed as a result. Include a measurable outcome when you can support it. If you lack a requirement, describe related experience accurately instead of adding an unfamiliar skill to your resume.

Put the most relevant examples near the top of your resume. Keep job titles, dates, qualifications, and contact details consistent across your application materials. Use the employer’s terminology when it describes your experience accurately; a copied list of keywords does not explain your contribution. A short, specific bullet is easier to review than a paragraph that mixes several unrelated duties.

Check the working arrangement

Confirm the location, schedule, employment type, and any eligibility requirements on the employer’s site. A remote label does not establish worldwide eligibility or flexible hours. If compensation, benefits, equipment, travel, or contract duration are missing from this listing, write down your questions for the recruiter. Do not assume details from another opening at the same company apply to this role.

Review before submitting

Follow the employer’s requested file format and application instructions. Open your exported resume and check that its text is selectable, its sections read in order, and its links work. Proofread names, dates, and contact information. Share confidential work samples only when you have permission, and use an anonymized example when necessary.

Submit through a trusted employer or recruiting destination. If the original listing has disappeared, search the employer’s careers page for the title rather than assuming the vacancy remains open. Save the application date, job reference, and the version of your resume you sent. Those details help you prepare for a later conversation and avoid submitting conflicting information through several job boards.

Review your resume for writing and readability feedback, or browse other openings if this opportunity is unavailable.