Cyber Security Analyst
Indexed description
Job Summary
The Cyber Security Analyst 1 is responsible for monitoring, investigating, and responding to cybersecurity threats across enterprise environments. This role supports Security Operations Center (SOC) activities by analyzing security alerts, investigating incidents, identifying potential risks, and implementing response actions to protect business systems and data. The role works with security tools including SIEM, EDR, MDR, email security platforms, and cloud security solutions to detect threats, perform incident analysis, and support continuous improvement of security operations.
Job Description
• Monitor and investigate security alerts from SIEM, EDR, MDR, email security platforms, and endpoint monitoring tools.
• Analyze phishing attempts, Business Email Compromise (BEC) incidents, and other security events to determine severity and impact.
• Perform incident investigations including evidence collection, root cause analysis, and documentation of findings.
• Execute incident response procedures and security playbooks to contain and mitigate threats.
• Conduct threat hunting activities to proactively identify suspicious activity and potential vulnerabilities.
• Review security logs, network activity, and endpoint data to identify indicators of compromise.
• Support security monitoring across cloud environments including AWS, Azure, or GCP.
• Assist with security improvements, automation initiatives, and response process optimization.
• Communicate technical findings and recommendations to both technical and non-technical stakeholders.
• Maintain accurate documentation of security incidents, investigations, and response activities.
Screening Criteria
• Bachelor's degree in Information Technology, Computer Science, Cybersecurity, or related field.
• Minimum of three (3) years of experience in IT Security Operations, preferably in a multi-client (MSP) environment.
• Certifications such as CompTIA Security+, CEH, GCIH, or similar.
• Experience monitoring and responding to security alerts using SIEM, EDR, or MDR platforms.
• Experience with Microsoft Office 365 and Azure, Barracuda, Proofpoint and other Business Email Filter platforms.
• Experience working with security monitoring tools and vulnerability assessment processes.
• Must have stable employment history.
Required Qualifications
• Experience with cloud security monitoring in AWS, Azure, GCP.
• Familiarity with compliance frameworks like NIST, or CIS Controls.
• Practical experience with forensic tools and methodologies.
• Familiarity with network security architecture, including segmentation, VPNs, and secure protocols.
• Knowledge of incident response processes, threat analysis, and security investigation techniques.
• Demonstrates strong understanding of incident response frameworks and digital forensics.
• Proven ability to communicate technical findings effectively to both technical and non-technical stakeholders.
• Proven ability to analyze security events, prioritize risks, and work independently.
• Clear and coherent both written and verbal communication skills in English.
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search