We are looking for a detail-oriented and analytical Cybersecurity Analyst to support and strengthen our organization's cybersecurity operations. The role will be responsible for monitoring security events, investigating potential threats, responding to incidents, identifying vulnerabilities, maintaining security controls, and helping improve the organization's overall security posture.
Key Responsibilities
- Monitor security alerts, logs, and events using SIEM and security monitoring tools to identify suspicious or potentially malicious activity.
- Investigate and triage security incidents, including phishing, malware, unauthorized access, suspicious network activity, and endpoint threats.
- Perform initial incident response activities, document findings, escalate critical incidents, and support remediation efforts.
- Analyze security logs and data from firewalls, endpoints, servers, applications, identity systems, and network devices.
- Conduct vulnerability assessments and support the remediation of identified security vulnerabilities.
- Assist with endpoint security, network security, access management, and security configuration activities.
- Monitor and investigate authentication and access-related events, including unusual login activity and privilege-related issues.
- Support security incident documentation, root-cause analysis, and post-incident reviews.
- Assist in maintaining and improving security policies, procedures, standards, and operational documentation.
- Perform basic threat intelligence and security research to understand emerging threats and indicators of compromise.
- Support security audits, compliance activities, and evidence collection as required.
- Collaborate with IT, infrastructure, application, and business teams to address security risks and implement appropriate controls.
- Maintain accurate records of security incidents, vulnerabilities, investigations, and remediation activities.
- Contribute to ongoing improvements in cybersecurity monitoring, detection, and response processes.
Required Qualifications
- Bachelor's or Master’s degree in Cybersecurity, Computer Science, Information Technology, or a related field, or equivalent practical experience.
- 2+ years of professional experience in cybersecurity, information security, SOC, security operations, or a related field, with hands-on experience in security monitoring, alert investigation, incident triage, and security operations, along with exposure to vulnerability management processes.
- Working knowledge of SIEM platforms such as Microsoft Sentinel, Splunk, IBM QRadar, or similar tools.
- Familiarity with EDR/XDR, firewalls, IDS/IPS, endpoint security, and network security technologies.
- Understanding of common cybersecurity threats, attack techniques, and indicators of compromise.
- Knowledge of TCP/IP, DNS, HTTP/HTTPS, VPNs, networking, and common network protocols.
- Experience analyzing security logs and performing basic security investigations.
- Strong understanding of authentication, authorization, IAM, MFA, and access-control concepts.
- Familiarity with vulnerability scanning and remediation tools such as Nessus, Qualys, Rapid7, or similar platforms.
- Strong analytical, troubleshooting, documentation, and communication skills.
Pay: $95,986.11 - $124,026.28 per year
Benefits:
- 401(k)
- Dental insurance
- Health insurance
- Paid time off
- Vision insurance
Work Location: In person