Job Description
Position Summary
We are seeking a motivated Cybersecurity Analyst to support the organization's security operations, threat monitoring, incident response, and vulnerability management activities. The successful candidate will help protect systems, applications, and sensitive information by investigating alerts, identifying risks, documenting findings, and supporting practical security improvements across the environment.
Key Responsibilities
-
Monitor and investigate security alerts from SIEM, endpoint detection and response, email security, identity, network, and cloud security platforms.
-
Perform initial triage of suspected security incidents, collect relevant evidence, document findings, and escalate events according to established procedures.
-
Assist with incident response activities, including containment, eradication, recovery, and post-incident documentation.
-
Review system, network, application, authentication, and security-tool logs to identify suspicious behavior or indicators of compromise.
-
Support vulnerability scanning, risk validation, remediation tracking, and coordination with infrastructure and application teams.
-
Investigate phishing messages, suspicious domains, URLs, attachments, and account activity.
-
Assist with identity and access management activities, including access reviews, account validation, and policy compliance.
-
Support security audits and compliance activities by collecting evidence and maintaining accurate records.
-
Maintain security procedures, investigation notes, metrics, knowledge articles, and operational documentation.
-
Participate in security awareness activities and stay informed about emerging threats, vulnerabilities, and defensive techniques.
Required Qualifications
-
Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field, or equivalent practical experience.
-
2+ years of experience in cybersecurity, IT support, system administration, network operations, or a related technical role.
-
Foundational understanding of networking, Windows operating systems, authentication, access control, and common security principles.
-
Familiarity with Microsoft 365, Active Directory or Entra ID, endpoint security, and cloud environments.
-
Knowledge of common cybersecurity threats, attack techniques, vulnerabilities, and mitigation strategies.
-
Ability to analyze technical information, document findings clearly, manage priorities, and escalate issues appropriately.
-
Strong written and verbal communication skills with a customer-service mindset.
Preferred Qualifications
-
Experience with cybersecurity tools supporting endpoint protection, threat detection, security monitoring, identity management, vulnerability management, and incident response.
-
Experience reviewing security logs, investigating phishing, or supporting vulnerability management and incident response workflows.
-
Entry-level or associate cybersecurity certification, such as CompTIA Security+, CompTIA CySA+
Success Measures
-
Timely and accurate triage, documentation, and escalation of security alerts and incidents.
-
Consistent progress toward vulnerability remediation and closure of assigned security tasks.
-
Complete and audit-ready investigation records, evidence, and operational documentation.
-
Adherence to security policies, response procedures, service-level expectations, and escalation requirements.
-
Positive collaboration with IT, business, compliance, and security stakeholders.
Career Growth
This position provides an opportunity to build hands-on experience across security operations, incident response, vulnerability management, cloud security, identity security, and compliance. Successful performance can support progression into senior analyst, security engineering, threat detection, incident response, or security operations roles.