Cybersecurity Analyst (6493)
Role details
Job location
Tech stack
Job description
- Monitor and analyze security events across corporate IT, remote sites, vessel networks, cloud platforms, and customer-connected environments to identify and respond to threats in real time.
- Lead initial cybersecurity incident triage and response activities, including containment, escalation, root cause analysis, recovery coordination, and post-incident documentation.
- Conduct proactive threat hunting and security analysis using SIEM, endpoint, network, and cloud telemetry to identify emerging threats and anomalous activity.
- Administer, maintain, and optimize cybersecurity technologies including SIEM, endpoint protection, firewalls, VPNs, MFA, and intrusion detection/prevention systems.
- Oversee vulnerability management activities including scanning, risk prioritization, remediation coordination, and validation with NOC IT Engineers and infrastructure teams.
- Manage identity and access security controls including VPN certificate lifecycle management, privileged access reviews, MFA enforcement, and least-privilege administration.
- Coordinate penetration testing, security assessments, and remediation activities for internal, external, and customer-facing systems and services.
- Maintain and strengthen the overall cybersecurity posture of the NOC and supporting infrastructure through continuous monitoring, hardening, and security best practices.
- Support cloud and infrastructure security initiatives across Azure, AWS, GCP, servers, endpoints, and network environments, ensuring secure configuration baselines and asset visibility.
- Ensure compliance with ISO 27001, customer security requirements, and internal cybersecurity policies through documentation, control validation, and continuous improvement activities.
- Support internal and external audits, regulatory reviews, and customer security assessments by maintaining audit-ready evidence, procedures, and training records.
- Develop and maintain cybersecurity dashboards, metrics, reports, policies, procedures, and security awareness training to improve operational readiness and visibility.
- Coordinate with NOC personnel, IT teams, vendors, MSPs, and customer stakeholders to support cybersecurity operations, remediation efforts, disaster recovery preparedness, and secure change management activities.
Requirements
- Bachelor's degree in Cybersecurity, Information Technology, or related field (or equivalent experience)
- Ability to monitor and analyze security events in a NOC/SOC environment
- Strong troubleshooting and incident triage skills
- Experience with scanning tools and remediation tracking
- Understanding of TCP/IP, VPNs, firewalls, and distributed networks
- Familiarity with endpoint protection, IDS/IPS, and security platforms
- Knowledge of ISO 27001, NIST, or similar frameworks
- Ability to collaborate across IT, NOC, and customer teams
- Excellent written and verbal communication skills
NOTE: This job description is not intended to be all-inclusive. Employee may perform other related duties as negotiated to meet the ongoing needs of the organization.
Candidates for positions with SubCom must be legally authorized to work in the United States. Employment eligibility verification will be required at the time of hire. Visa sponsorship is not available for this position.
Benefits & conditions
SubCom offers a comprehensive benefits package, including but not limited to: competitive salaries, medical, dental, vision, life and disability insurance coverages, FSA, HSA, generous vacation, paid sick leave, paid parental leave, paid holidays, tuition reimbursement, adoption assistance, and a 401(k) plan with generous company match. Additionally, some positions may be eligible for shift differential.