Job Closed

This listing is no longer active.

CyberSheath logo
CyberSheath

Assess, Implement, Manage (AIM™)

Cyber Security Analyst II

Security AnalystSecurity AnalystOtherRemoteSeniorTeam 51-200Since 2012H1B No SponsorCompany SiteLinkedIn

Location

United States

Posted

143 days ago

Salary

$70K - $100K / year

Seniority

Senior

Bachelor Degree3 yrs expEnglishAzurePython

Job Description

Cyber Security Analyst II

CyberSheath

• Investigate and respond to escalated security incidents across Microsoft cloud and on-premises environments • Perform advanced incident analysis using Microsoft Defender suite and Azure Sentinel • Conduct security assessment of Azure/Microsoft 365 configurations and implement hardening recommendations • Analyze and respond to advanced Active Directory attacks (Kerberoasting, Pass-the-Hash, Golden Ticket) • Monitor and investigate Exchange Server logs, email flow patterns, and phishing campaigns • Analyze federation security including ADFS token-based attacks and SAML token manipulation • Configure and tune WAF/firewall rule sets and investigate related security incidents • Develop network segmentation strategies and identify lateral movement attempts • Develop and maintain incident response playbooks for various attack scenarios • Coordinate incident response activities with cross-functional teams

Job Requirements

  • 3-5 years in cybersecurity with 2+ years SOC experience
  • Deep knowledge of hybrid Microsoft environments (Microsoft 365, Azure, on-premises AD)
  • Experience with SIEM platforms and security monitoring tools
  • Scripting proficiency (PowerShell, Python)
  • Strong analytical and communication skills
  • Microsoft Certified: Security Operations Analyst (SC-200)
  • One additional security certification: EC-Council CSA, CompTIA Security+, or similar

Benefits

  • CyberSheath is a fully remote organization, and this will be a work-from-home position
  • Travel requirements: 0-5% yearly

Related Job Pages

More Security Analyst Jobs

Sharp HealthCare logo

IAM Epic Security Analyst III

Sharp HealthCare

We are San Diego's health care leader.

Security Analyst143 days ago
OtherRemoteTeam 10,001+Since 1946H1B No Sponsor

• Provides leadership and guidance to the IAM Security team, organization and business partners on Sharp HealthCare's Identity and Access Management (IAM) and Epic Security strategy; ensuring policies and security standards are met • Responsible for the design, implementation, and maintenance of identity and access management systems, ensuring authorized individuals have appropriate access to systems and data • Efficiently and effectively, respond to IAM and Epic Security incidents, service requests, application access requests and audits • Provides leadership and support to peers as well as various other departments of the organization • Responsible for coordinating activities with multiple IT teams and Sharp departments to develop, maintain, support, and enhance Epic access and security

California
$53.6K - $77.4K / year
Job Closed
Boston Medical Center (BMC) logo

Applications Security Analyst III – Senior

Boston Medical Center (BMC)

We’re providing accessible and exceptional care to make a healthier Boston.

Security Analyst144 days ago
OtherRemoteTeam 5,001-10,000Since 1996H1B No Sponsor

• Own and execute work in a high-volume ServiceNow queue, consistently handling hundreds of tickets per week for joiner/mover/leaver access changes, troubleshooting, and triage • Prioritize and route requests using impact, urgency, patient-care considerations, risk, and defined SLAs; escalate complex/high-risk issues appropriately • Troubleshoot access end-to-end (request intent, user attributes, role mapping, provisioning outcomes, in-application authorization) and document decisions/outcomes clearly for auditability • Serve as the senior escalation point for Epic access design/build and complex access issues; ensure access is scalable, supportable, and aligned to policy • Develop and maintain standardized access patterns Attribute Based Access Control (ABAC) /templates, privileged/elevated access controls) aligned to least privilege • Partner with Epic application teams and operational leaders to translate workflows into durable access models and reduce one-off exceptions • Maintain an Epic access catalog (roles/entitlements, risk tiers, prerequisites, approval paths) and keep it current as workflows evolve • Support access reviews/attestations for high-risk roles and privileged access; drive remediation of findings and control gaps • Support investigations related to inappropriate access/privacy concerns and contribute to corrective action plans • Partner with IAM/IGA stakeholders during SailPoint implementation to ensure Epic is “automation-ready” (clean entitlements, requestable roles, approvals, constraints, and edge-case handling) • Help align access with authoritative source systems (HR, operations, credentialing, etc.) by defining needed attributes and lifecycle scenarios (joiner/mover/leaver, LOA, contractors, students) • Support testing/UAT and rollout readiness by validating that automated provisioning yields correct in-application authorization and usable audit trails • Mentor and quality-review work performed by Level II analysts; establish standard work, runbooks, knowledge articles, and queue hygiene practices • Track and improve key operational metrics (turnaround time, rework/defect rate, exception volume, access quality) and drive measurable process improvement.

United States
$83K - $120.5K / year
Job Closed
Full TimeRemoteTeam 51-200Since 2009H1B No Sponsor

Role Description To our CloudAV team, we're looking for a strong leader with enough technical depth to steer confidently in complex environments. CloudAV team processes massive datasets, builds intelligent detection pipelines, and leverages modern AI to stay ahead of emerging threats. You’ll set direction, enable the team, and turn strategy into results while building advanced security systems used by hosting providers worldwide, helping protect millions of websites and the businesses behind them. You also will: - Lead at the edge of AI-driven cybersecurity and influence decisions across the global web hosting ecosystem - Combine strategy, execution, and team leadership in a high-visibility role - Define direction and priorities for a high-impact security engineering team - Convert business goals into focused technical initiatives - Build a high-performance team culture through mentorship, feedback, and growth - Work in a culture that values autonomy, speed, and innovation Qualifications - Experience leading an engineering team - Strong judgment in prioritization, trade-offs, and execution under uncertainty - Comfort working in Python-centric environments and discussing system design choices - Practical understanding of Linux-based production systems and engineering workflows - Familiarity with modern data-driven platforms (large-scale processing, automation, analytics) - Confidence with Git-based development, quality practices, and CI/CD culture - Clear English communication and strong stakeholder management Benefits - A focus on professional development - Interesting and challenging projects - Fully remote work with flexible working hours, that allows you to schedule your day and work from any location worldwide - Paid 24 days of vacation per year, 10 days of national holidays, and unlimited sick leaves - Compensation for private medical insurance - Co-working and gym/sports reimbursement - Budget for education - The opportunity to receive a reward for the most innovative idea that the company can patent

Worldwide
Job Closed
PCI Pharma Services logo

Security Analyst I

PCI Pharma Services

PCI Pharma Services is a pharmaceutical manufacturing company that strives to be a “bridge between life-changing therapies and patients.” As an employer, th

Security Analyst147 days ago

• Monitor security alerts from SIEM, EDR, and other security tools during assigned shifts • Perform initial triage and classification of security events following established playbooks • Escalate confirmed incidents to senior analysts with appropriate documentation • Conduct basic threat intelligence research to support ongoing investigations • Assist with vulnerability scan execution and results analysis using Nessus • Support phishing email analysis and user security awareness activities • Document security incidents, actions taken, and lessons learned • Maintain security metrics dashboards and operational reports • Assist with access review campaigns and identity verification processes • Support security tool administration including rule tuning and false positive reduction • Participate in tabletop exercises and incident response drills • Contribute to security awareness training content and delivery

Pennsylvania
Job Closed