Cyber Security Analyst
The Cyber Security Analyst at Confidential Client is responsible for monitoring and investigating security alerts, performing incident response, and managing vulnerabilities to protect organizational systems and data. This role involves collaboration across IT and security teams to ensure timely remediation, compliance, and continuous improvement of security posture. The position offers growth opportunities in various cybersecurity domains including threat detection, incident response, and cloud security within a hybrid work environment.
About Careertakes
👉 Important disclosure: Careertakes is a third-party recruiting platform supporting this hiring process. If selected, you will be employed directly by our client, IT.
Applicants for this role may also receive access to additional matched opportunities through the Careertakes platform.
What You’ll Do
This Cyber Security Analyst role supports security operations, monitoring, incident response, and vulnerability management for a confidential client in the IT industry. You will investigate alerts, validate risks, document findings, and help implement practical security improvements across systems and cloud environments.
- Monitor and investigate security alerts from SIEM, EDR, email security, identity, network, and cloud security platforms
- Perform initial triage of suspected incidents: collect evidence, document findings, and escalate per procedures
- Assist with incident response activities (containment, eradication, recovery) and post-incident documentation
- Review system, network, application, authentication, and security-tool logs to identify suspicious activity and indicators of compromise
- Support vulnerability scanning, validation, remediation tracking, and coordination with infrastructure and application teams
- Investigate phishing messages, suspicious domains/URLs/attachments, and account activity
- Assist with identity and access management tasks: access reviews, account validation, and policy compliance
- Support security audits and compliance evidence collection
- Maintain investigation notes, runbooks, metrics, knowledge articles, and operational documentation
- Participate in security awareness activities and stay current on threats, vulnerabilities, and defensive techniques
Qualifications
Required
- Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or equivalent practical experience
- 2+ years in cybersecurity, IT support, system administration, network operations, or a related technical role
- Foundational understanding of networking, Windows OS, authentication and access control, and security fundamentals
- Familiarity with Microsoft 365, Active Directory / Entra ID, endpoint security, and cloud fundamentals
- Knowledge of common threats, attack techniques, vulnerabilities, and mitigation strategies
- Strong documentation, analytical, prioritization, and communication skills; customer-service mindset
Preferred
- Hands-on experience with SIEM, EDR, endpoint protection, identity management, vulnerability management, and incident response tools
- Experience investigating phishing and reviewing security logs
- Entry-level or associate cybersecurity certification (CompTIA Security+, CompTIA CySA+, etc.)
- Experience with vulnerability scanning tools, CVSS, CISA KEV, patch management, and remediation prioritization
- Familiarity with PowerShell, Python, Bash, REST APIs, or automation for security operations
- Experience with Azure, AWS, or GCP and compliance frameworks (NIST, PCI DSS, ISO 27001, CIS Controls)
Success Measures
- Timely and accurate triage, documentation, and escalation of security alerts and incidents
- Measurable progress toward vulnerability remediation and closure of assigned issues
- Complete, audit-ready investigation records and operational documentation
- Adherence to security policies, response procedures, and SLAs
- Positive collaboration with IT, business, compliance, and security stakeholders
Workplace & Eligibility
- This position is full-time and primarily based on-site. The confidential client values in-person collaboration; employees are expected to work on-site with limited flexible remote days (up to three remote days per month) as described by the hiring team.
- Sponsorship for work authorization is not available for this posting. Candidates must be authorized to work in the U.S. without restrictions now or in the future.
Career Growth & Additional Info
This role provides hands-on exposure across security operations, incident response, vulnerability management, cloud and identity security, and compliance. Strong performance can lead to advancement into senior analyst, security engineering, threat detection, or incident response roles.
Equal Opportunity & Hiring Transparency
Careertakes and our client are Equal Opportunity Employers committed to building a diverse and inclusive workforce. We prohibit discrimination or harassment of any kind. To support a fair and efficient hiring process, AI tools may be used to assist with application review or resume screening. These tools do not replace human decision-making. Final hiring decisions are made by people.
If you have questions about how your data is used, please contact us directly.
Negotiate a higher salary! Check the salary ranges for this job type in your area.
View My Salary Range