IT Cybersecurity Analyst
Location
United States
Posted
3 days ago
Salary
0
Seniority
Senior
Job Description
IT Cybersecurity Analyst
Chromalloy
• Monitor, triage, and investigate security alerts using SIEM and EDR tooling (ReliaQuest GreyMatter MDR, CrowdStrike Falcon, Microsoft Defender, Palo Alto); validate severity and scope and document findings. • Serve as an internal escalation point for the 24/7 MDR provider; lead containment and remediation (isolate endpoints, disable accounts, block indicators, reset credentials) and track actions to closure. • Execute and continuously improve incident response processes and maintain playbooks/runbooks for common scenarios (phishing, malware, account compromise, ransomware), aligned to CYBER-002/CYBER-003. • Operate and tune the FY26 security platform portfolio as assigned: SailPoint IGA (identity lifecycle, access reviews), Delinea PAM (and CyberArk evaluation), Titus and DSPM (data classification/posture), AI governance tooling (Securiti.AI, Harmonic), Palo Alto IoT/OT security, and the GRC platform. • Own and run the security awareness program: phishing simulation campaigns, weekly user training, and monthly security culture communications; engage end users during investigations with clear, empathetic guidance. • Coordinate and support the annual tabletop exercise, penetration test, and purple team engagement – including scoping, facilitation, and tracking all findings through remediation to closure with audit-ready evidence. • Support governance and assurance: control evidence collection, policy/standard reviews, and third-party/vendor risk activities aligned to NIST 800-171, CMMC, DFARS 252.204-7012, ISO 27001, and CIS Controls. • Create and tune detection content (queries, correlation rules, indicators) to improve signal quality and reduce false positives; maintain threat-intelligence awareness and translate it into actionable detections and hardening. • Perform vulnerability management activities and basic malware triage and forensic collection as needed.
Job Requirements
- BS in Computer Science, Engineering, Information Technology, or equivalent experience.
- 3–5 years in a cybersecurity / SOC / IT security operations role with hands-on incident triage, investigation, and coordinated response.
- Working knowledge of security frameworks and how they translate into operational controls: NIST 800-171/800-53, CMMC, DFARS, ISO 27001/27002, CIS Controls.
- Experience with common security tooling preferred: SIEM, EDR (CrowdStrike preferred), email security, vulnerability scanning, and identity/PAM platforms (SailPoint, Delinea/CyberArk); SOAR a plus.
- U.S. person status required for ITAR/CUI access (see Location & Eligibility).
- Security+ required; CySA+, GCIH, GCIA, CEH, or SSCP preferred.
- Strong written and verbal communication; able to explain risk and response to end users and stakeholders, produce incident documentation, and present post-incident findings.
- Ability to participate in a shared after-hours and weekend on-call rotation.
- Able to travel as needed, sometimes up to 30%.
Related Guides
Related Categories
Related Job Pages
More Security Analyst Jobs
Cybersecurity Analyst
Remote RecruitmentRemote Recruitment operates as a full-service employment agency providing recruitment/staffing for UK based companies
• Manage and support the monitoring of security systems, alerts, and incident response processes • Handle vulnerability assessments, penetration testing support, and risk analysis tasks • Communicate effectively with internal teams and external stakeholders across time zones • Maintain accurate records of security incidents, audits, and compliance documentation • Use relevant tools such as SIEM platforms, endpoint protection software, and threat intelligence tools • Support the wider team with security awareness training and policy development • Identify opportunities to strengthen the organisation's security posture and reduce risk exposure.
Information Security Analyst
Ajaia | AI ConsultancyWe help businesses go from AI curious to AI capable by building what others only propose
• Monitor, assess, and improve the company's security posture across cloud infrastructure, internal systems, and compliance programs. • Work hands-on with security tools, cloud configurations, and compliance requirements to protect company and client data. • Cover the full security lifecycle: monitoring and detection, vulnerability management, access control enforcement, compliance support (HIPAA, SOC 2), and incident response. • Investigate alerts, validate controls, conduct assessments, manage access reviews, and support audit preparation. • Use AI tools to analyze logs, automate reporting, and accelerate daily work.
• Take lead role in CDCN external audit coordination for SOC2, HiTrust, and payer audits. • Conduct internal controls assessments. • Investigate and remediate malware, phishing, and endpoint alerts. • Perform root cause analysis on moderate-level incidents and escalate as needed. • Assist with vulnerability scanning and remediation activities. • Provide peer mentoring and training in clear, non-technical language. • Monitor logs and alerts to detect and respond to security events. • Collaborate with IT teams to implement patches and strengthen system protections. • Contribute to security-related projects from inception through completion. • Develop and maintain documentation to ensure accurate processes and procedures. • Comply with applicable legal requirements, standards, policies, and procedures. • Ensure compliance with industry standards and best practices for system security and data protection. • Stay current with emerging threats, industry best practices, and tools. • Attend relevant conferences, seminars, and workshops as assigned. • Demonstrates dependability. • Other duties as assigned.
• Conduct cybersecurity assessments aligned to CIS Controls, NIST Cybersecurity Framework, and Roper security standards. • Identify security risks, control gaps, and improvement opportunities across endpoint, identity, network, cloud, and operational environments. • Partner with security leaders, engineers, administrators, and analysts to develop practical remediation plans. • Support security hardening initiatives and help organizations improve their overall cybersecurity maturity. • Document findings, recommendations, and remediation progress for both technical and business audiences. • Track remediation activities and follow up on outstanding findings. • Communicate risks and recommendations clearly to stakeholders with varying levels of technical expertise. • Contribute to the continuous improvement of cybersecurity assessment methodologies, standards, and tools. • Support Roper's cybersecurity due diligence in mergers and acquisitions by assisting in security assessments of acquisition targets.




