Job Description
The Cybersecurity Analyst is responsible for monitoring, detecting, analyzing, and responding to cybersecurity threats and incidents. This position supports the organization's defense posture by leveraging Microsoft 365 Defender, Microsoft Purview, Azure security tools, and a SIEM platform. The role is aligned with the NIST NICE Cybersecurity Workforce Framework, specifically the System Security Analyst (Work Role ID: PR-CDA-001), and focuses on protecting information systems through analysis, incident response, and threat mitigation activities. Responsibilities • Monitor Security Information and Event Management (SIEM) platforms, including Microsoft Sentinel, for alerts, anomalies, and indicators of compromise (IOCs).
• Investigate and triage security incidents using data from Microsoft Defender for Endpoint, Microsoft 365 Defender (Office 365, Identity), Microsoft Purview, cloud firewalls (e.g., Meraki, Azure), and Web Application Firewalls (WAF).
• Identify, assess, and track vulnerabilities across assets using internal and third-party tools; work with system owners to ensure timely remediation.
• Document and report security incidents with clear findings, severity ratings, impact assessments, and remediation recommendations.
• Collaborate across IT, infrastructure, and cloud teams to contain threats, execute incident response actions, and support system recovery efforts. Conduct forensic analysis and advanced threat investigations using KQL queries, audit logs, and endpoint telemetry to determine scope, impact, and attribution.
• Tune detection rules and analytics in SIEM and other security platforms to improve fidelity, reduce false positives, and address evolving threat actor tactics.
• Contribute to the development and refinement of security policies, alert logic, response playbooks, and standard operating procedures.
• Support compliance and audit readiness by monitoring Data Loss Prevention (DLP) policies, insider risk signals, and access control logs.
• Stay current on emerging threats, MITRE ATT&CK techniques, vulnerability disclosures (CVEs), and relevant threat intelligence. Execute assigned projects related to security improvements, risk mitigation, and process optimization.
• Perform other duties assigned to support organizational security objectives. Required Skills EDUCATION
...Join our fast-growing, family-operated independent insurance agency as a Life Insurance Agent, where you can work from anywhere while making a meaningful impact in the lives of families. We are seeking motivated, purpose-driven professionals who are ready to take control...