> Markdown version of [/jobs/ext/2519039-it-security-analyst-level-1](https://www.wearedevelopers.com/jobs/ext/2519039-it-security-analyst-level-1). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # IT Security Analyst Level 1 - **Company:** Spellman High Voltage - **Location:** New York, NY, United States (Remote available) - **Salary:** $64,000.0 - $80,000.0 - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Active Directory, Amazon Web Services, Microsoft Azure, Cloud Computing Security, CompTIA Security+, Cyber Security, Linux, Intrusion Detection and Prevention, Networking Basics, Cloud Services, Phishing, Zero Trust Network Access, Security Information and Event Management, Software Vulnerability Management, Cloud Platform System, Mitre Att&ck, Firewalls (Computer Science), Information Technology, Vulnerability Analysis - **Published:** August 4, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=325dbc5d13de171c ## About the Role * Bachelor's degree in Cybersecurity, Information Technology, or a related field * Minimum 1 year of experience in a security-related role * CompTIA Security+, CompTIA CySA+, (ISC)² SSCP or equivalent certification * Foundational understanding of security operations concepts, including threat detection, incident response, and vulnerability management * Familiarity with security tools such as SIEM, EDR, vulnerability scanners, firewalls, email security platforms, and identity/security controls * Basic knowledge of operating systems (Windows and Linux), networking fundamentals, and Active Directory or identity management systems * Understanding of modern security principles such as Zero Trust, least privilege access, and defense-in-depth * Awareness of common attack techniques (e.g., phishing, malware, credential attacks) and MITRE ATT&CK concepts * Ability to identify and assess security risks and vulnerabilities * Strong analytical and problem-solving skills with attention to detail * Willingness to learn, adapt, and stay current with evolving cybersecurity threats and technologies * Ability to work independently and collaboratively in a team environment * Ability to communicate effectively with both technical and non-technical stakeholders * Ability to work in a fast-paced, dynamic environment * Ability to collaborate with cross-functional teams * Exposure to cloud environments (e.g., Microsoft 365, Azure, AWS) and associated security controls is a plus * Understanding of security frameworks and standards such as NIST Cybersecurity Framework (CSF), NIST SP 800-53, CIS Critical Security Controls, or ISO 27001 preferred ## Description The Information Security Analyst I is responsible for supporting the organization's cybersecurity posture through monitoring, detection, response, and continuous improvement activities. This role contributes to protecting enterprise systems, data, and users by assisting with threat detection, vulnerability management, and control validation across hybrid environments (on-premises and cloud). The analyst operates within the Security Operations function and works closely with IT and security teams to operationalize security controls, support incident response, and ensure alignment with industry frameworks and regulatory requirements. What You Will Do * Monitor and analyze security events from SIEM, endpoint, network, email, and cloud security platforms to identify potential threats and anomalous activity * Triage security alerts and escalate or respond in accordance with defined incident response procedures * Support incident response activities including investigation, containment, eradication, and recovery, with appropriate documentation and evidence handling * Perform vulnerability scanning and assist with risk-based prioritization and remediation tracking * Maintain and improve security documentation, including runbooks, standard operating procedures (SOPs), and knowledge base articles * Assist in the implementation, configuration, and validation of security controls across endpoints, identity systems, networks, and cloud services * Collaborate with infrastructure, application, and business teams to remediate findings and strengthen security posture * Contribute to continuous improvement of detection capabilities, including tuning alerts and reducing false positives * Support audit and compliance activities by maintaining evidence, control documentation, and participating in assessments * Research emerging threats, vulnerabilities, and attack techniques to enhance detection and prevention strategies. * Generate clear and concise reports on incidents, vulnerabilities, and security metrics for technical and non-technical stakeholders. * Provide occasional on-site or remote support for security implementations and assessments across multiple locations. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Passkeys: Truly Phishing-Resistant? Implementation and Pitfalls](https://www.wearedevelopers.com/videos/100156-passkeys-truly-phishing-resistant-implementation-and-pitfalls) - [Docker exec without Docker](https://www.wearedevelopers.com/videos/1094-docker-exec-without-docker) - [Skynet wants your Passwords! The Role of AI in Automating Social Engineering](https://www.wearedevelopers.com/videos/770-skynet-wants-your-passwords-the-role-of-ai-in-automating-social-engineering) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers)