iT1
Security Analyst
United States
Sponsorship not specifiedDetected 35 days ago
CybersecuritySIEMSOC OperationsDetection EngineeringIncident ResponseComplianceFirewallLeadershipCollaborationProblem SolvingOrganizational Skills
About the role
- You will be exposed to many of the top technology offerings in the market and can work with some of the most talented people in the country.
- As a Cybersecurity Analyst, you are expected to have a strong technical background in security operations, threat detection, and incident response.
Responsibilities
- Investigate and triage alerts, respond to incidents, and document findings, root cause, and remediation actions.
- Security Operations and Tooling: Maintain and tune security tools including SIEM, EDR, firewalls, and intrusion detection/prevention systems.
- Process Development and Runbooks: Develop and maintain security operations processes, SOPs, and incident response runbooks to support consistent and scalable service delivery.
- Deliver training on security tools, processes, and escalation procedures Enable teams to identify, triage, and escalate security events appropriately Provide ongoing guidance to improve cross-team collaboration and response effectiveness Governance, Compliance, and Documentation: Support development and enforcement of security policies, standards, and procedures.
- Participate in audits and maintain documentation aligned to frameworks such as ISO 27001, NIST, SOC 2, and CMMC.
- Recommend and implement improvements to strengthen security posture across internal and customer environments.
- Develop and maintain security operations processes, SOPs, and incident response runbooks to support consistent and scalable service delivery.
Skills
- Monitor security tools and platforms for suspicious activity and potential threats.
- Analyze logs and telemetry to identify threats and improve detection capabilities.
- Threat Monitoring and Incident Response: ·Monitor security tools and platforms for suspicious activity and potential threats.
Company info
- Serve as the primary operational interface between customers, MDR providers, and internal teams for security events and escalations.
- Coordinate incident response activities across MDR partners and internal teams Communicate security incidents, risks, and remediation status to customers Participate in incident reviews, RCA discussions, and customer meetings Ensure MDR services align with customer SLAs and contractual requirements Escalate critical risks and ensure timely resolution across stakeholders
- Perform vulnerability assessments and coordinate remediation activities across environments.
- Identify and prioritize risks and recommend mitigation strategies to internal leadership and customers.
- MDR Customer and Partner Interface: Serve as the primary operational interface between customers, MDR providers, and internal teams for security events and escalations.
- Create repeatable workflows for incident detection, escalation, and remediation Continuously refine playbooks based on lessons learned and threat intelligence Support onboarding of new customers by defining operational procedures Training and Enablement (Help Desk & Infrastructure): Partner with Help Desk and Infrastructure teams to build security awareness and operational readiness.
- Create repeatable workflows for incident detection, escalation, and remediation Continuously refine playbooks based on lessons learned and threat intelligence Support onboarding of new customers by defining operational procedures
This listing is sourced directly from iT1's careers page and normalized into a canonical job model.