IT Security Analyst

Code
Boston, MA, United States
3 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
2 years minimum
Working hours
Regular working hours
Job source

Tech stack

Amazon Web Services Audit Trail Microsoft Azure Cloud Computing Security Cyber Security DevOps Intrusion Detection and Prevention Phishing Security Information and Event Management Software Vulnerability Management Information Technology Cybercrime

Job description

We are seeking a mid-level Security Analyst to join our team. This role will focus on monitoring, analyzing, and improving the security posture of Code Metal’s enterprise and enclave environments.

In this role, you will work closely with engineering, DevOps, and leadership to detect threats, investigate security events, and escalate incidents as needed. You will help operationalize security across the organization while supporting vulnerability management, compliance initiatives, and continuous security improvement.

Requirements

Core Responsibilities

  • Monitor and analyze alerts from SIEM, EDR, and other security tools to detect suspicious or malicious activity.
  • Investigate security events and incidents, perform triage, and escalate issues to appropriate teams for remediation.
  • Conduct threat hunting activities to proactively identify potential risks and anomalous behavior.
  • Support vulnerability management processes, including scanning, analysis, prioritization, and tracking remediation efforts.
  • Assist in the execution and improvement of incident response procedures and runbooks.
  • Analyze system, network, and audit logs across enterprise and enclave environments.
  • Support endpoint security controls, including application whitelisting and privilege/elevation management.
  • Participate in phishing simulations and user awareness initiatives to improve organizational security posture.
  • Collaborate with DevOps and engineering teams to communicate findings and support remediation efforts.
  • Assist with compliance activities, including evidence collection and control validation.
  • Maintain clear and accurate documentation of incidents, processes, and standard operating procedures.

Requirements

Do you have experience in Threat detection & response?, Do you have a Bachelor’s degree?, * Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or a related field, or equivalent professional experience.

  • 2+ years of experience in a security analyst or similar role.
  • Experience working with security tools such as SIEM, EDR, and vulnerability management platforms.
  • Strong understanding of common attack techniques, threat detection, and incident response workflows.
  • Experience analyzing logs and correlating events across multiple data sources.
  • Familiarity with endpoint security controls, including application whitelisting and privilege management.
  • Ability to assess and prioritize security alerts and escalate appropriately.
  • Strong communication and documentation skills.
  • Eligible to obtain and maintain an active U.S. Top Secret security clearance, * Experience working in both enterprise and secure (e.g., enclave or regulated) environments.
  • Familiarity with compliance frameworks such as SOC 2, NIST, or FedRAMP.
  • Experience with threat hunting methodologies and tools.
  • Knowledge of cloud security principles (AWS, Azure, or GCP).
  • Experience conducting or supporting phishing simulations and security awareness programs.
  • Relevant certifications (e.g., Security+, CySA+, GCIH, or similar).
  • Active U.S. security clearance (Secret or Top-Secret)

Benefits & conditions

Pulled from the full job description

  • Health insurance
  • 401(k) matching
  • Paid time off
  • Vision insurance
  • 401(k) 5% Match
  • Dental insurance
  • Relocation assistance, * Pay depends on experience, but we strive to be at the upper end of the salary range
  • Health care plan with 100% premium coverage, including medical, dental, and vision.
  • 401k with 5% matching.
  • Paid Time Off (Uncapped Vacation, plus Sick & Public Holidays).
  • Flexible hybrid or remote work arrangement.

About the company

Code Metal is redefining code translation for mission-critical industries, helping partners move more quickly and reliably from algorithm to silicon. Our platform accelerates deployment of DSP, RF, communications, and embedded signal processing algorithms onto heterogeneous compute targets, including GPUs, FPGAs, ASICs, and edge SoCs. We support automotive, aerospace, defense, and semiconductor partners deploying complex algorithms onto constrained hardware with speed and rigor.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:17 min

Mapping the maturity roadmap for scaled devops adoption

Dominik Krichbaum Dominik Krichbaum · WWC Europe 2026

1:29 min

Evaluating phishing emails that leverage artificial time constraints

Mauro Verderosa · LIVE

4:34 min

Motivational categories behind modern cybercriminal activities

Mauro Verderosa · LIVE

26:47 min

Exploring pathways to application security careers and research workflows

Vandana Verma Sehgal · LIVE

3:18 min

Scaling global network engineering through DevOps culture

Stuart Clark · LIVE

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · WWC 2022

Videos

See all

Related articles

See all