> Markdown version of [/jobs/ext/1497337-cybersecurity-analyst](https://www.wearedevelopers.com/jobs/ext/1497337-cybersecurity-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cybersecurity Analyst - **Company:** RAVENWOOD CORPORATION - **Location:** Charlotte, NC, United States - **Experience:** Experienced - **Salary:** $88,000.0 - $96,000.0 - **Contract:** Permanent contract - **Skills:** Active Directory, Microsoft Azure, Border Gateway Protocol, CompTIA Security+, Cyber Security, Computer Networks, Domain Name System (DNS), Hypertext Transfer Protocols (HTTP), Network Protocols, Phishing, Security Information and Event Management, TCP/IP, Software Vulnerability Management, EndPointSecurity, Cloud Platform System, Okta, QRadar, Information Technology, Microsoft Sentinel, Splunk, SentinelOne Expertise, Qualys - **Published:** July 30, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=9081ea399154fbeb ## About the Role * 2 to 4 years of hands-on experience in a SOC, threat monitoring, or cybersecurity analyst role. * Direct working experience with enterprise SIEM platforms (Splunk, Sentinel, or QRadar) and EDR tools (CrowdStrike, Defender, or SentinelOne). * Solid understanding of network protocols (TCP/IP, DNS, HTTP/S, BGP) and enterprise authentication models (Active Directory, Entra ID, Okta). * Active industry certification required (CompTIA Security+, CySA+, GIAC GSEC, or Network+). * Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or equivalent practical work experience. * Must hold valid US work authorization without requiring current or future employer sponsorship. ## Description Our Charlotte technology team is hiring a Cyber Security Analyst to support daily Security Operations Center (SOC) monitoring, threat detection, and incident response. In this role, you will analyze security alerts escalated from Tier 1, investigate potential endpoint and network compromises, and manage vulnerability remediation across our enterprise infrastructure. You will work closely with our infrastructure and network engineering teams to tune SIEM correlation rules, perform root-cause analysis on security incidents, and ensure compliance with framework standards., * Monitor enterprise SIEM dashboards (Splunk / Microsoft Sentinel) to analyze, triage, and investigate escalated security events and potential alerts. * Conduct initial incident response for phishing attempts, unauthorized access, malware infections, and credential abuse across endpoints and cloud environments (Azure / M365). * Run weekly vulnerability scans using Qualys or Tenable, prioritize critical CVE exposure, and collaborate with system administrators to verify patch deployment. * Review firewalls, EDR agents (CrowdStrike / Defender for Endpoint), and email security gateway logs to identify anomalous network traffic or suspicious process executions. * Write incident post-mortem reports, document indicators of compromise (IOCs), and update internal Security Orchestration, Automation, and Response (SOAR) playbooks. * Assist in internal access certification reviews, privileged access management (PAM) audits, and third-party vendor security risk assessments. ## Related Videos - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers)