> Markdown version of [/jobs/ext/3272776-it-security-analyst](https://www.wearedevelopers.com/jobs/ext/3272776-it-security-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # IT Security Analyst - **Company:** BorgWarner - **Location:** Auburn Hills, MI, United States - **Experience:** Experienced - **Salary:** $62,000.0 - $85,250.0 - **Contract:** Permanent contract - **Skills:** Active Directory, Artificial Intelligence, Data Analysis, Software as a Service, Cyber Security, Identity and Access Management, Intrusion Detection and Prevention, Network Security, Network Troubleshooting, Security Information and Event Management, Software Vulnerability Management, Computer Network Technologies, Malware, Cyber Threat Analysis, Firewalls (Computer Science), Web Filtering, Information Technology, Cybercrime - **Published:** September 26, 2026 - **Apply:** https://www.careerjet.com/job/us3df9fab1b8e788f76f9fb7d5c653c2f4/eaa ## About the Role * Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or related field * 2+ years of experience in IT Security, with a focus on Incident Response and security operations * Strong understanding of security principles, threat landscapes, and incident response * Experience with SIEM, EDR, DLP, VM, Email Security, and Threat Intelligence platforms * Relevant certifications (e.g., Sec+, GSEC, GCIA, CEH, CISSP) are preferred * Foreign languages: Fluent in English, written and verbal * Deep understanding of security systems, firewalls, authentication systems, log management, content filtering, network security and networking technologies * Has worked with and managed at least one of the following technologies: SIEM, EDR, DLP, VM, Email Security * Proven knowledge in the following security disciplines: advanced threats, information security incident detection and response, forensic investigative practices * Experience in developing, collecting and analyzing threat intelligence * Experience in AI and autonomous response * Experience in cyber intelligence analytic methodologies such as Kill Chain, threat modelling, threat hunting * Relevant experience in an international environment * Identifying problems; recognizing significant threats and risks; making connections between data; * Tracing possible causes of problems; investigating relevant data * Upholding generally accepted social and ethical standards in job-related activities * Strong written, oral and presentation skills ## Description Working as part of the Security Operations Team, the Security Analyst helps build, maintain and optimize security tools, develop detection capabilities, and drive automation to improve response efficiency. The position plays a key role in strengthening BorgWarner's overall security posture in a continuously evolving threat landscape. The Security Analyst supports BorgWarner's global cybersecurity operations by detecting, analyzing, and responding to security threats across the enterprise. This role ensures the integrity and protection of systems and data through multilayered security tooling, continuous monitoring and incident response., * On a day-to-day basis respond to, remediate, and coordinate incident response actions with other stakeholders, both internal and external * Monitor security alerts and logs from SIEM and other securing alerting tools * Creates searches and necessary reports to prevent disruption or unavailability of information assets and assess the impact * Analyses security attacks and decides and or advises ways to solve them by configuring new security tools * Use AI-powered security operations platforms to investigate, correlate, and triage security events. * Develop, validate, and optimize AI-assisted detection and response workflows. * Evaluate AI-generated findings and ensure accuracy through analyst verification. * Partner with engineering teams to automate investigation and response processes using agentic workflows. * Develop and maintain technical runbooks and process documents * Conduct in-depth analysis of suspicious activities and attempted attacks, during and post incident through and not limited to the analysis of malware, packets, alerts and logs for signs of malicious activity * Monitor and investigate security events across cloud platforms and SaaS applications * Investigate identity-based attacks, account compromise, MFA bypass attempts, and privilege escalation events * Stay current with incident response technology, methodology and legal requirements * Develop scripts and automation to streamline security operations tasks * Ensure that all investigations are performed in-line with regulatory requirements and internal corporate policies, standards and procedures * Provide metrics for management and periodic intelligence reports and lessons learned on various threat actors and IOCs * Build upon existing capabilities through continuous improvement of relevant intelligence sources and methods, recommending new tools and procedures to detect threats and protect intellectual property and assets * Maintain and optimize security tools such as endpoint protection, EDR, DLP, and Email Security * Assist in support of formal investigations and/or inquiries to resolve insider threat related matters, acceptable use policy violations * Identify areas for improvement in internal processes along with possible solutions * Work with the Security Operations Lead to define and document standard operating procedures for security incident handling, malware analysis, vulnerability management etc. * Maintains the confidentiality related to the professional secret and the security of the documents manipulated and administrated by him / her, Responsibilities Provide daily end-user support, including troubleshooting hardware, software, and networking issues. Administer and maintain Microsoft Active Directory (users,… + 2 months ago + ## Related Videos - [Fighting the Next Wave of Cybercrime](https://www.wearedevelopers.com/videos/100331-fighting-the-next-wave-of-cybercrime) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Lies, Damned Lies and Large Language Models](https://www.wearedevelopers.com/videos/1231-lies-damned-lies-and-large-language-models) - [Enhancing Workload Security in Kubernetes](https://www.wearedevelopers.com/videos/356-enhancing-workload-security-in-kubernetes) - [Deep Fakes: The Lies We Can’t See](https://www.wearedevelopers.com/videos/1187-deep-fakes-the-lies-we-can-t-see) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [The Most Popular IT Jobs on the Market](https://www.wearedevelopers.com/magazine/376-the-most-popular-it-jobs-on-the-market) - [Top-Paying Tech Jobs (with Salaries)](https://www.wearedevelopers.com/magazine/372-top-paying-tech-jobs-with-salaries)