Cyber Security Analyst (Azure)

Insight Global
Los Angeles, CA, United States
about 1 month ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
6 years minimum
Compensation
$112,320.0 - $139,360.0
Working hours
Regular working hours

Tech stack

Data Analysis JIRA Microsoft Azure Microsoft Online Services Cloud Computing Cloud Computing Security Software Documentation Cyber Security Information Leak Prevention Network Security Pattern Recognition Phishing
+9 more
Kusto Query Language Microsoft SharePoint Security Information and Event Management Virtual Machines Firewalls (Computer Science) Azure Security Center Microsoft Sentinel Cloudwatch Servicenow

Job description

A travel client based in Woodland Hills is seeking a Level 2 Cyber Security Analyst to join their cybersecurity team, which consists of approximately ten members, including analysts, engineers, and project managers. This role is integral to identifying, analyzing, and responding to security incidents across the organization’s Azure-based environment. Key responsibilities include monitoring security alerts, conducting in-depth investigations, and escalating complex threats when necessary. The cloud infrastructure is centered on Microsoft Azure and includes tools such as Microsoft Sentinel, Microsoft Defender for Endpoint (MDE), Cloud Security Posture Management (CSPM), Data Loss Prevention (DLP), Microsoft Baseline Environment (MBE), among others. The analyst will be responsible for executing KQL queries and performing threat hunting within the Microsoft ecosystem. A strong foundation in Azure security services, SIEM tools, and network security principles is essential.

The role’s time allocation is approximately:

  • 30% incident response (with a 1-hour SLA)
  • 30% validating security posture and risk levels with cross-functional teams
  • 20% monitoring the InfoSec mailbox to identify phishing attempts and end-user reports (1-hour SLA)
  • 20% supporting ongoing security projects While critical incidents are rare, they carry a 15-minute SLA. Projects may include achieving NIST 3.0 compliance, enhancing documentation standards, implementing Azure security plugins, and more. This is a hybrid role requiring on-site presence in Woodland Hills, CA three days per week-Monday, Wednesday, and Thursday.

Requirements

  • 6+ years of cybersecurity experience, specifically in Azure security/Microsoft Sentinel environments
  • Proficiency with KQL queries for data exploration, anomaly detection, and pattern analysis (in Sentinel)
  • (Queries and table questions will come up on the interview) Advanced threat hunting - part of Microsoft Defender for cloud apps

Nice to Have Skills & Experience

  • Exposure to NIST 3.0 framework
  • Experience with PCI audits
  • Azure certifications
  • Experience with AWS CloudWatch and CloudTrail
  • Solid understanding of networking, virtual machines, and experience with Palo Alto firewalls Strong documentation and project management skills using tools like Jira, SharePoint, and ServiceNow

  • Experience in enterprise-scale environments (any industry)

Benefits & conditions

Benefit packages for this role will start on the 1st day of employment and include medical, dental, and vision insurance, as well as HSA, FSA, and DCFSA account options, and 401k retirement account access with employer matching. Employees in this role are also entitled to paid sick leave and/or other paid time off as provided by applicable law.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on jobs.insightglobal.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

14:14 min

Addressing audience inquiries on analytical implementation and career growth

Julian Joseph · LIVE

56 sec

Integrating automated approval workflows into the portal

Markus Eisele Markus Eisele · WWC 2025

1:29 min

Evaluating phishing emails that leverage artificial time constraints

Mauro Verderosa · LIVE

3:05 min

Integrating an assistant application with Jira software

Felix Augenstein · LIVE

2:27 min

Establishing a simulated technical environment for the workflow demo

Tobias Dunn-Krahn · LIVE

2:39 min

Exposing stored XSS and phishing attacks via markdown

Ramona Schwering Ramona Schwering · WWC Europe 2026

Videos

See all

Related articles

See all