Security Operations Analyst

enVista LLC
Carmel-by-the-Sea, CA, United States
6 days ago
Apply on www.careerbuilder.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours

Tech stack

Microsoft Azure Cloud Computing Cloud Computing Security CompTIA Security+ Cyber Security Information Systems Internet Security Intrusion Detection and Prevention Information Systems Security Architecture Professional Microsoft Security Essentials Microsoft Software PCI Data Security Standards
+7 more
Phishing Data Logging Scripting Software Security Information Technology Microsoft Sentinel Vulnerability Analysis

Job description

  • Independently lead complex investigations involving multiple systems, technologies, data sources, or security domains.
  • Correlate endpoint, identity, network, cloud, email, application, and threat intelligence data to determine incident scope, cause, impact, confidence, and required response.
  • Coordinate technical response activities for significant security incidents and provide timely stakeholder communications.
  • Conduct root cause analysis and develop practical corrective and preventive recommendations.
  • Develop, tune, test, and document security detections, correlation rules, investigative procedures, and response playbooks.
  • Develop scripts, queries, integrations, and workflow automation that improve investigation quality, response time, and service consistency.
  • Lead vulnerability analysis and risk-based remediation discussions with system owners, clients, and technical teams.
  • Lead technical discussions with clients and translate findings into clear business and risk implications.
  • Review analyst investigations, reports, case documentation, and recommendations for quality, accuracy, and completeness.
  • Mentor analysts and provide technical guidance during investigations, escalations, and operational initiatives.
  • Serve as the operational owner for an assigned security platform, process, service component, procedure, or technical capability.
  • Identify material gaps in logging, monitoring, detection coverage, response procedures, or service delivery and lead corrective improvements.
  • Operates independently with minimal oversight.
  • Demonstrates advanced technical expertise across multiple security domains.
  • Exercises strong risk-based judgment and communicates recommendations clearly.
  • Serves as a trusted technical resource, reviewer, and mentor.

Requirements

  • Bachelor’s degree in Cybersecurity, Information Technology or equivalent practical experience
  • 5-8 years of relevant cybersecurity experience, including substantial hands-on security operations or incident response responsibility
  • Demonstrated experience independently leading complex investigations and response activities
  • Experience with Microsoft Defender, Microsoft Sentinel, Entra ID, Azure security technologies, and the Microsoft security ecosystem
  • Experience with cloud security monitoring and cloud security posture management technologies
  • Familiarity with SOC 2, ISO 27001, NIST Cybersecurity Framework, PCI DSS, and related compliance frameworks
  • Experience supporting or governing third-party managed security service providers
  • Experience with phishing simulations, security awareness campaigns, and related communications
  • Relevant certifications such as Security+, CySA+, GSEC, SC-200, GCIH, GCIA, GCED, GMON, AZ-500, CISSP, or equivalent demonstrated expertise are strongly preferred
  • Experience developing detections, automations, operational improvements, or security workflows
  • Experience presenting technical findings and risk information to clients, business leaders, and technical teams
  • Strong understanding of threat detection, incident response methodologies, and security operations practices
  • This role will be based in our Carmel office in a hybrid capacity, Analysis Skills, Applications Security, Automation, CISSP - Certified Information Systems Security Professional, Campaigns, Cloud Computing, Communication Skills, CompTIA Security+, Computer Security, Consulting, Documentation, Ecosystems, GCIA - GIAC Certified Intrusion Analyst, GCIH - GIAC Certified Incident Handler, GSEC - GIAC Security Essentials Certification, ISO (International Organization for Standardization), Incident Response, Information Technology & Information Systems, Insurance, Internet Security, Mentoring, Microsoft Product Family, Microsoft Windows Azure, Operational Audit, Operational Improvement, PCI-DSS, Phishing, Problem Solving Skills, Profit & Loss, Protective Services, Quality Management, Risk, Robotics, Root Cause Analysis, Scripting (Scripting Languages), Security Analysis, Security Infrastructure, Security Monitoring, Service Delivery, Supply Chain, Technical Leadership, Technical Presentation, Technical Strategy, Technical Support, Testing, Thought Leadership, Time Management, U.S. National Institute of Standards and Technology (NIST)

Benefits & conditions

  • Competitive Pay + Performance Bonuses- Your impact matters, and we make sure it shows in your paycheck
  • Comprehensive Health Coverage- Medical, Dental, and Vision and Prescription coverage, along with HSA/FSA options that work for you and your family
  • Time to recharge and give back- Flexible paid time off (PTO), holidays and unlimited volunteering days
  • Paid Sabbatical- After seven years of service, take a well-earned break to rest, recharge, or explore
  • Financial security & retirement- Employed matched 401k, planning and hardship resources, disability and life insurance
  • Flexible Work Options- Balance life and work with hybrid and remote opportunities that support how you thrive
  • Employee Referral Bonus- Know someone amazing? Get rewarded for bringing top talent into the enVista family

About the company

enVista is stronger than ever-focused, energized, and ready to lead the future of supply chain and enterprise consulting. As the premier provider of supply chain technology and strategy services, material handling automation and robotics, Microsoft solutions, and IT managed services, we bring more than 20 years of unmatched domain expertise to thousands of leading brands. We don’t just solve problems, we help our clients transform the way they work, grow, and compete.

The Senior Security Operations Analyst is an experienced individual contributor who independently leads complex investigations, coordinates significant response activities, improves detection and response capabilities, and mentors developing analysts. This role exercises advanced technical judgment across multiple security domains and may own an assigned platform, process, service component, or technical capability.

This is more than just a technical role, it’s an opportunity to be a thought leader and change-maker at a pivotal time in enVista’s journey. We are investing in our people, systems, and future, and we’re looking for bold innovators who want to build with us.

Why enVista?

Our associates are at the forefront of commerce, supply chain, and technology-developing smart, sustainable solutions that improve profitability and positively impact the world. We support our people with comprehensive onboarding and training, award and recognition programs, volunteer and affinity groups, and a strong mentoring culture. We’re committed to growing top talent-and giving them the tools to thrive.

If you’re ready to step into a high-impact role with a company that’s growing, innovating, and leading the market, this is your moment.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.careerbuilder.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

52 sec

Defining application, pipeline, and security operations roles

Aarno Aukia · LIVE

1:29 min

Evaluating phishing emails that leverage artificial time constraints

Mauro Verderosa · LIVE

1:04 min

Introduction to Bitcoin script parsing tools

Steve Shadders · LIVE

1:10 min

Exposing sensitive information through partial search logs

Dennis Schulz Dennis Schulz +1 · World Congress 2026 Europe

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

2:39 min

Exposing stored XSS and phishing attacks via markdown

Ramona Schwering Ramona Schwering · World Congress 2026 Europe

Videos

See all

Related articles

See all