Stop applying to remote jobs that are already dead.
Every listing checked, aged honestly, expired when filled.

All listings

DraftKings via Workday

Senior Security Analyst

Bulgaria senior
still open verified 23h ago posted 8d ago seen just now
Apply at draftkings.wd1.myworkdayjobs.com

This is the employer's own posting, not a copy on a job board.

What we know

Is it still open?

Confirmed still open

Last checked 23h ago — checked against the employer's own applicant tracking system, which is the company answering directly.

We re-read the employer's own applicant tracking system and the posting was still there. That is the company answering directly.

Check this listing's status as JSON

How old is it?

Posted 8d ago

The date the source published, not the day we noticed it (2026-09-23). Last seen at its source just now.

We have tracked this listing since 23 Sep 2026 (8 days). The employer's own board has carried it every time we have read it, most recently just now.

Is it remote?

The listing says yes

The location field doesn't say remote, so our assessment is based on the title or the description. Read the listing before applying.

Who may apply?

Bulgaria

The description states no restriction of its own. This is the source's own tag.

Pay not stated

Similar roles pay $99.2k–195k/yr

Middle 50% of 34 listings that do state pay — Operations · all levels · Eastern Europe · USD/year. This employer has published no salary; this is what comparable listings we hold disclose, never converted between currencies or periods. How this is calculated.

Skills named in the ad

AWSAzureCI/CDGCPIncident ManagementMentoringPythonSIEM

Recognised terms only, from a fixed vocabulary — this is what CV matching compares against.

Carried by 1 source

The listing

At DraftKings, AI is becoming an integral part of both our present and future, powering how work gets done today, guiding smarter decisions, and sparking bold ideas. It’s transforming how we enhance customer experiences, streamline operations, and unlock new possibilities. Our teams are energized by innovation and readily embrace emerging technology. We’re not waiting for the future to arrive. We’re shaping it, one bold step at a time. To those who see AI as a driver of progress, come build the future together.

The Crown Is Yours

As a Senior Security Analyst, you'll lead investigations that protect our customers and the systems behind DraftKings, working across corporate and production environments. In this role, you'll operate as the senior escalation point, working across endpoint, identity systems, cloud environments, and production workloads. You'll own our most complex investigations, navigate incidents without an established playbook, and strengthen how the team responds while mentoring other analysts.

What You'll Do

  • Lead security investigations across endpoint, identity systems, cloud environments, and production workloads, covering triage, root-cause analysis, containment, and eradication.

  • Act as incident commander in your region, coordinating parallel work across IT, Engineering, Legal, HR, and other teams.

  • Investigate cases with no existing playbook: decide what data to collect, build the tools to analyze it, and document it for reuse.

  • Write and peer-review case summaries, incident reports, and timelines.

  • Hunt for novel threats, such as AI-assisted intrusions or supply-chain compromise. Convert findings into telemetry, detections, and automation that raise alert quality and reduce manual work.

  • Drive post-incident hardening with Security Engineering and mentor analysts through case review, escalation support, and knowledge sharing.

What You'll Bring

  • At least 6 years in cybersecurity, including 4 or more years in incident response, forensics, threat intelligence, or threat hunting.

  • Experience running major incidents with little supervision, under time pressure and incomplete facts, including briefing leadership and writing the post-incident reports for both engineers and executives.

  • Deep knowledge of how attackers operate today, including insider threat, and the frameworks such as MITRE ATT&CK, the Diamond Model, the kill chain, with the ability to assess an attacker’s capabilities as an investigation unfolds..

  • Hands-on experience with SIEM, EDR/NDR, and CSPM tooling.

  • Monitoring experience in endpoint, identity, SaaS or CI/CD environments, including incident investigation in at least one major cloud environment, such as AWS, Azure, or GCP.

  • Practical scripting skills in Python, PowerShell or a similar language, with experience utilizing YARA-L, Sigma, KQL, SPL or similar for investigation queries and detections.

#LI-TK1

#LI-REMOTE 

Join Our Team

We’re a publicly traded (NASDAQ: DKNG) technology company headquartered in Boston. As a regulated gaming company, you may be required to obtain a gaming license issued by the appropriate state agency as a condition of employment. Don’t worry, we’ll guide you through the process if this is relevant to your role.

Apply at draftkings.wd1.myworkdayjobs.com