Cybersecurity Analyst
Location
United States
Posted
2 days ago
Salary
Not specified
No structured requirement data.
Job Description
Role Description
The Cybersecurity Analyst protects enterprise systems, data, and users by monitoring, detecting, investigating, and responding to security events. This exempt role exercises independent judgment to analyze complex alerts, improve defenses, and drive preventive controls, while partnering with the IT Director, Legal/Compliance, and business stakeholders to reduce risk. This position will be considered fully remote, but travel will be required to UniTek locations as needed.
Job Responsibilities
-
Threat Monitoring & Incident Response
- Monitor SIEM and EDR tools; triage alerts, contain and eradicate threats, and perform root‑cause analysis.
- Lead incident response playbooks, coordinate post‑incident reviews, and document lessons learned.
-
Vulnerability & Patch Management
- Run regular scans, validate findings, prioritize remediation based on risk, and track closure.
- Collaborate with infrastructure/app teams to align patch windows and verify fixes.
-
Identity, Access & Endpoint Security
- Enforce MFA, least privilege, and privileged access reviews; support MDM and endpoint hardening baselines.
-
Security Engineering & Hardening
- Tune SIEM/EDR/IDS signatures, maintain logging/alerting rules, and improve detection fidelity.
- Support firewall, proxy, email security, and zero‑trust policy updates.
-
Governance, Risk & Compliance
- Map controls to frameworks (e.g., NIST CSF/800‑53, CIS), help with audits, and maintain security policies/standards.
- Contribute to third‑party risk assessments and vendor security due diligence.
-
Awareness & Training
- Provide targeted user training and phishing simulations; publish tips and KB articles.
-
Documentation & Metrics
- Maintain IR runbooks, architecture diagrams, and control evidence.
- Produce KPIs/KRIs (MTTD/MTTR, patch SLAs, phishing failure rates) for leadership.
Qualifications
- 3–5 years of experience in cybersecurity, SOC, incident response, or closely related IT security roles.
- Hands‑on experience with SIEM (e.g., Splunk, Sentinel), EDR (e.g., CrowdStrike, Defender for Endpoint), vulnerability management (e.g., Tenable, Qualys), MFA/IdP, and endpoint hardening.
- Solid grasp of networking, Windows/Linux, identity/access controls, and email/web security gateways.
- Strong analytical, written, and verbal communication skills; ability to act with autonomy (exempt‑level scope).
Preferred
- Bachelor’s degree in Cybersecurity, Information Systems, Computer Science, or related field (or equivalent experience).
- Certifications such as Security+, CySA+, GSEC, SSCP; higher‑level (CISSP, CISM) is a plus for advanced scope.
- Experience with cloud security (M365/Azure, AWS), zero‑trust, and automation/scripting (PowerShell, Python).
Work Conditions
- Periodic on‑call for security incidents; occasional after‑hours change windows.
- Ability to travel as needed for response/testing; otherwise remote.
Job Requirements
- 3–5 years of experience in cybersecurity, SOC, incident response, or closely related IT security roles.
- Hands‑on experience with SIEM (e.g., Splunk, Sentinel), EDR (e.g., CrowdStrike, Defender for Endpoint), vulnerability management (e.g., Tenable, Qualys), MFA/IdP, and endpoint hardening.
- Solid grasp of networking, Windows/Linux, identity/access controls, and email/web security gateways.
- Strong analytical, written, and verbal communication skills; ability to act with autonomy (exempt‑level scope).
- Preferred
- Bachelor’s degree in Cybersecurity, Information Systems, Computer Science, or related field (or equivalent experience).
- Certifications such as Security+, CySA+, GSEC, SSCP; higher‑level (CISSP, CISM) is a plus for advanced scope.
- Experience with cloud security (M365/Azure, AWS), zero‑trust, and automation/scripting (PowerShell, Python).
- Work Conditions
- Periodic on‑call for security incidents; occasional after‑hours change windows.
- Ability to travel as needed for response/testing; otherwise remote.
Related Guides
Related Categories
Related Job Pages
More Security Analyst Jobs
Cyber Security Specialist
SpiralyzeSpiralyze helps companies grow by providing data-driven performance Conversion Rate Optimization (CRO) services.
The specialist will be responsible for implementing, monitoring, and maintaining security tools across endpoints and networks, while also managing user access controls and enforcing security policies. Key duties include conducting vulnerability assessments, coordinating incident response, reviewing security configurations, and supporting various compliance frameworks.
The Department of War’s (DoW) Office of the Undersecretary of War for Research and Engineering (OUSW (R&E)) is at the forefront of supporting the DoW with the adoption of innovative technologies such as data, analytics, and artificial intelligence to help accelerate predictions...
The Subject Matter Expert reviews security and privacy complaints, data breach notifications, and incident reports to assess compliance with the HIPAA Security Rule and evaluates technical submissions from covered entities. This role involves documenting processes, developing technical security analysis reports with recommendations, and providing expertise on health information privacy policies and technologies.
This position will focus on learning how the organization operates and is expected to gain valuable insight that can further the chosen career field. This position reports to the Manager or Director of the department and is employed by Mosaic Health Systems. Support cybersecurity...