> Markdown version of [/jobs/ext/1188736-security-analyst-iii](https://www.wearedevelopers.com/jobs/ext/1188736-security-analyst-iii). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Security Analyst III - **Company:** ECARE OPCO INC - **Location:** United States (Remote available) - **Experience:** Expert - **Salary:** $110,000.0 - $125,000.0 - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Cloud Computing, Cloud Computing Security, Cyber Security, Identity and Access Management, Information Technology Operations, Intrusion Detection and Prevention, Network Security, Microsoft Security Essentials, Performance Tuning, Phishing, Runbook, Security Information and Event Management, Software Vulnerability Management, Information Technology, Microsoft Sentinel - **Published:** July 5, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=638bf8a74522dccd ## About the Role * 7-10+ years of experience in cybersecurity, IT security operations, or related fields * Demonstrated experience with SIEM platforms (e.g., Microsoft Sentinel, SUMO, or equivalent) including design, tuning, and operational ownership * Proven experience developing and enforcing security policies and governance frameworks (SOC 2 required) * Experience leading or supporting SOC 2 audits, including control ownership and evidence management a plus * Hands-on experience with security awareness platforms such as KnowBe4, including program rollout and management * Experience with incident response, vulnerability management, and endpoint security tooling * Experience working with managed security providers (MDR/eSOC) * Strong project management and cross-functional collaboration skills Education: * Bachelor's degree in Info Tech, Cybersecurity, Computer Science, or related field is preferred but not required * Relevant experience may be considered equivalent Technical Skills: * SIEM platforms (Microsoft Sentinel, SUMO) * Endpoint protection and EDR tools * Vulnerability management platforms * Identity and access management controls * Cloud and SaaS security monitoring Microsoft 365 security ecosystem preferred Certifications & Licenses (Preferred): * CISSP, CISM, or similar advanced security certification * Microsoft Security certifications (e.g., SC-200, SC-300) * SOC 2 / compliance-related training or certifications ## Description The Security Analyst III at Staritas is responsible for leading the organization's security operations, governance, and compliance programs. This role serves as a key contributor to the design, implementation, and enforcement of security policies and standards, ensuring alignment with SOC 2 and other regulatory frameworks. The Security Analyst III owns the security monitoring ecosystem, including SIEM operations, leads enterprise-wide security awareness initiatives (e.g., KnowBe4), and manages audit readiness and control effectiveness. This position partners closely with IT Operations, leadership, and the Information Security Officer to proactively reduce risk, improve security posture, and ensure compliance. Essential Functions * Lead security monitoring and response operations leveraging SIEM and integrated security platforms; tune alerts, develop use cases, and drive continuous improvement in detection capabilities * Own SIEM platform management, including onboarding new log sources, correlation rule development, and integration with endpoint, cloud, and network security tools * Develop, implement, and enforce security policies, standards, and procedures aligned with SOC 2 and industry best practices * Lead incident response activities, including investigation, containment, root cause analysis, and documentation; coordinate with internal and external stakeholders as required * Manage vulnerability management program, including scanning, prioritization, remediation tracking, and reporting to leadership * Own and administer the security awareness program, including KnowBe4 rollout, phishing simulations, reporting, and targeted training campaigns * Serve as primary owner for SOC 2 compliance activities, including control documentation, evidence collection, audit coordination, and continuous control monitoring * Develop and maintain security documentation, including policies, procedures, runbooks, and audit artifacts * Partner with IT Operations to implement and enforce secure configurations, access controls, and endpoint protection strategies * Lead evaluation, selection, and implementation of new security technologies, including cost analysis and operational integration planning * Manage third-party security services and vendors (e.g., MDR/eSOCproviders) and ensure contractual and operational expectations are met * Oversee BYOD and endpoint security programs, including MDM enforcement and secure access policies * Support client and regulatory security inquiries, including RFP responses and due diligence requests * Stay current with evolving threat landscape, compliance requirements, and security best practices Additional Responsibilities: * Other duties, as assigned., Up to 10% travel, based on business needs. While our roles are 100% remote, we do get together a few times a year for up to one week. Employees are given ample notice and attendance is expected. Work Environment This position operates in a professional work environment and requires the use of standard office equipment such as a computer, keyboard, mouse, webcam, and phone. Equal Opportunity / Affirmative Action Statement Staritas is committed to providing equal employment opportunities to all employees and applicants for employment without regard to race, color, religion, sex, national origin, age, disability, genetic information, sexual orientation, gender identity, or veteran status. As a federal contractor, Staritas complies with all applicable federal, state, and local laws regarding nondiscrimination and affirmative action. We are committed to creating a workplace that is fair, inclusive, and grounded in merit-based decision-making. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Technical Documentation - How Can I Write Them Better and Why Should I Care?](https://www.wearedevelopers.com/videos/681-technical-documentation-how-can-i-write-them-better-and-why-should-i-care) - [Passkeys: Truly Phishing-Resistant? Implementation and Pitfalls](https://www.wearedevelopers.com/videos/100156-passkeys-truly-phishing-resistant-implementation-and-pitfalls) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Checkmate: 5 Real Incidents That Can End a Software Company](https://www.wearedevelopers.com/videos/100126-checkmate-5-real-incidents-that-can-end-a-software-company) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Top-Paying Tech Jobs (with Salaries)](https://www.wearedevelopers.com/magazine/372-top-paying-tech-jobs-with-salaries) - [Data Analyst Salary in the UK](https://www.wearedevelopers.com/magazine/278-data-analyst-salary-in-the-uk)