Cyber Security Analyst
Location
United States
Posted
8 days ago
Salary
0
Seniority
Mid Level
Job Description
Cyber Security Analyst
Vigilant LLC
Role Description Vigilant is hiring a Security Analyst to join our Security Services team. In this position, you will ensure that our first line of response is assessing information security events and incidents across Vigilant's client environments. In this role, you will collaborate and use problem-solving skills as you work among a team of skilled analysts to address complex problems and add value to the organization and our clients. Security Analysts will be responsible for delivering regular scheduled security briefings to our clients. Primary Responsibilities: - The SOC Analyst provides incident detection and response services for our CyberDNA managed Network Security Monitoring service. - This role performs and participates in proactive hunts to identify anomalous activity indicative of active compromise, previous compromise, misconfigurations, or other notable observations to support the protection of our customers' environments. - When not hunting, this role triages and investigates alerts generated from multiple detection technologies & takes necessary action to identify, scope, and guide customers to a rapid and successful remediation. - You will use your knowledge of Information Security to monitor SIEM and logging environments for security events and alerts to potential (or active) threats, intrusions, and/or compromises. - You will work to understand the global threat landscape by working with Vigilant Cyber Threat Intelligence team to maintain awareness. - You will assist with containment of threats and remediation of environment during or after an incident. - You will leverage your knowledge to write comprehensive reports of incident investigations. - Engage with other teams to ensure detections are working as intended. - Provide feedback to the Threat Detection team regarding the logic of existing detections to reduce false-positive rates, and align them more consistently with their intent. - Ensure that security-relevant data is flowing to appropriate systems. - Collaborate across teams for training, development opportunities, and service improvement. - Ensure that documentation, workflows, and processes remain accurate and up-to-date. Qualifications - Expert at analyzing and dissecting PCAP data to validate security events, interpret network traffic, and extract indicators. - Skilled with data collection, log analysis tools, pattern recognition, and managing dashboards. - Baseline knowledge of network protocols, network analysis tools, and general network architecture. - You have a passion for learning. - You possess a demonstrated ability to speak with people with varying knowledge in IT Security concepts and can tailor your message to the audience. - Excellent interpersonal skills and ability to see things through the customer's eyes. - Tremendous attention to detail. - Eligible to work in the United States without company sponsorship. - Bachelor's degree in computer science, information security or related discipline is required or equivalent work experience. Requirements - Prior SOC/CSIRT experience in a 24x7 watch desk environment preferred. - Experience using industry standard EDR tools and platforms including (SentinelOne, Carbon Black, Crowdstrike, Defender ATP). - Strong knowledge of attacker tools, malware families, and known threat actor/group TTPs. - You have a deep understanding of Incident Response framework, root cause analysis. - Capability to look at a process to identify opportunities for cycle-time reduction. - Experience hunting for unknown threats, as well as tracking existing campaigns and adversaries. - Experience providing managed NSM services to multiple customers is a plus. - Hands-on experience with firewalls, routers, and other security appliances. Benefits - This role leverages a flex-schedule that may involve non-traditional working hours and after-hours on-call as needed. - Must be able to work from a Vigilant office (Cincinnati, OH) or remotely from a home office, depending on the candidate's skills and experience. - This position is eligible to US citizens physically residing in the US; any offer of employment is contingent upon background, drug screen, and reference checks.
Related Guides
Related Categories
Related Job Pages
More Security Analyst Jobs
Fractional Cyber Security Analyst – Advisor Network
ArootahExecutive Coaching and Business Consulting
• Advisors are deployed on project-based engagements when client needs match their expertise. • Joining the network does not guarantee placement; it provides access to opportunities as they arise. • Work with Hedge Fund and Family Office clients to provide expert advice. • Lead the firm's vulnerability management program and conduct annual cybersecurity assessments.
Senior Security Analyst
DigitalOceanThe cloud ☁️ of choice for developers, startups, and growing digital businesses around the world.
• Lead real-time monitoring, triage, and analysis of complex security events, providing verifiable assessments of threats and incident severity. • Engineer and automate advanced detection use cases across DigitalOcean's cloud and corporate environments, leveraging deep knowledge of adversary TTPs to design and implement scalable alerting solutions. • Develop, track, and report on key metrics for security monitoring effectiveness and incident response performance, using data to drive improvements. • Own and evolve the security monitoring program strategy, ensuring alignment with evolving threat landscapes and business priorities. • Work closely with Infrastructure Security Engineers to identify log sources, integrate, and maintain data pipelines (e.g., log sources, forwarders, parsing, enrichment). • Perform proactive threat hunting and hypothesis-driven investigations and investigate anomalous activity to uncover hidden or emerging threats within DigitalOcean’s environments. • Mentor and guide lower level analysts, reviewing escalated incidents and providing technical leadership during incident response. • Coordinate threat analysis using historical data and architecture diagrams to identify attack vectors. • Collaborate with multiple teams to close monitoring gaps and improve overall security. • Optimize security tools and processes to reduce false positives, improve detection fidelity, and automate response workflows where appropriate. • Lead the creation and maintenance of detailed playbooks, runbooks, and documentation to standardize detection and response efforts.
End Point Security Analyst
A.T. Still University - ATSUA.T. Still University - ATSU is a health sciences university. Andrew Taylor Still founded the school in 1892 as the American School of Osteopathy. Today, A.T. S
End Point Security Analyst (remote) Job Type Full-time Description A.T. Still University (ATSU) is seeking a full-time exempt Endpoint Security Analyst. This is a fully remote position. This position will plan, implement, upgrade, or monitor security measures for the protection of computer networks and information, specializing in endpoint security, vulnerability management, and application security. In addition, ensure that appropriate security controls are in place and safeguard digital files and vital electronic infrastructure. May respond to computer security incidents and malware. Duties & Responsibilities: - Windows endpoint administration: Windows patches, 3rd Party Patches, Firewall, Vulnerability management - Manage Active Directory / Group Policy infrastructure - Mobile device management: Encryption, Multi-Factor authentication - Provide computer security consulting support for the university - Monitor security logs on all systems and address any incidents or anomalies recorded - Document computer security and emergency measures, policies, procedures, and testing protocols - Assure end-point protection software is kept current in accordance with departmental policy - Analysis of applications/software/polices in enterprise environment and the effects of workflows to the end-user - Ability to use powershell to automate security processes, parse security logs, and secure the environment - Confer with users to discuss issues such as computer data access needs, security violations, and programming changes - Coordinate implementation of computer system plan with establishment personnel and outside vendors - Monitor use of data files and regulate access to safeguard information in computer files - Desktop architecture - Microsoft Server and Active Directory administration - Group policy management - Building and deploying secure golden OS images Requirements - 4 year Degree Computer Science or a related degree plus ability to acquire CCNA Security 3-5 years experience in: - Ivanti, Computer hardware, Microsoft Windows Server, TCP/IP, Google e-mail systems, ethernet, fastethernet and Cisco equipment, Nessus, ISE, and endpoint protection - Network and computer forensic analysis, data security, electronic threat identification and mitigation - PCI/DSS, HIPAA, FERPA, copyright laws - Management of monitoring software/service, ie. Orion - Management of asset/inventory/patching software/service, ie. Ivanti and Ordr - Management of password management software/service, ie. Secret Server The salary for this position is $70,000 to $87,523 based on experience and location. ATSU offers a comprehensive benefits package including medical, dental, and vision coverages, among more. If eligible, employee-elected benefits would begin the first of the month following hire date. For more information, please visit: atsu.edu/employment/benefits. A.T. Still University (ATSU) does not discriminate on the basis of race, color, religion, ethnicity, national origin, sex (including pregnancy), sexual orientation, age, disability, or veteran status in admission or access to, or treatment or employment in its programs and activities.
• Manage the full lifecycle of vulnerabilities in operating systems, applications, and other assets • Identify, analyze, and prioritize vulnerabilities using industry-recognized methodologies • Assess the impact, severity, and risk of vulnerabilities, converting this information into clear indicators to support decision-making • Route vulnerabilities to the responsible teams and monitor remediation plans and deadlines • Provide technical support to teams during the vulnerability remediation process • Monitor metrics, track SLAs, and escalate to leadership when necessary • Support the continuous improvement of Vulnerability Management processes and the organization’s security posture


