IT Cybersecurity Analyst
You will manage incident response and threat mitigation to protect the network and preserve evidence for analysis.
Responsibilities
- Execute incident response to eliminate threats and identify root causes while following established playbooks.
- Monitor SIEM and logging systems for potential network intrusions, compromises, or threats.
- Conduct active cyber hunting to identify and eliminate known and unknown network threats.
- Triage service requests from automated sensors and internal assistance requests.
- Develop and maintain reporting metrics to measure team performance and ensure process consistency.
- Propose countermeasures for containment and advise leadership on incident status.
Required Skills
- 1-3 years of experience as a security analyst or in a similar role.
- Ability to lead shifts within a Security Operations Center (SOC).
- Knowledge of industry frameworks including Kill Chain, Diamond Model, MITRE ATT&CK, and NIST Incident Response.
- Thorough understanding of fundamental security and network concepts.
- Proven ability to perform triage and investigations using multiple security sensors.
- Experience documenting and debriefing security incidents.
- Security+ or equivalent certifications.
- CCNA Cyber Ops, GCIA, GCIH, CEH, CySA+, or OSCP.
- Programming or scripting skills in C+, Python, or PowerShell.
Preferred Skills
- Experience with network monitoring in a SOC environment.
- Experience conducting cyber threat analysis originating from phishing emails.
- Hands-on experience with firewalls, proxies, IPS/IDS, full packet capture (FPC), and email platforms.