Cybersecurity Analyst I
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+14 more
Job description
Build a long-term career in cybersecurity while contributing immediately bringing your prior experience with technical support, endpoint, Microsoft 365, Active Directory, email, networking, or security support experience.
The Security Operations Support Analyst will be working onsite with the team in Brooklyn, NY and will assist with endpoint security, email security, vulnerability remediation, security alert review, and incident documentation. This role will work closely with security, infrastructure, desktop, application, and business teams to help investigate suspicious activity, coordinate remediation, and support operational security controls.
Over time, this role will continue to grow into deeper cybersecurity operations responsibilities, including EDR investigation, vulnerability management, SIEM/log review, phishing/BEC investigation, incident response, and security metrics reporting., * Review, triage, and document security alerts from endpoint, email, vulnerability, and monitoring tools.
- Assist with endpoint investigations involving malware concerns, suspicious activity, unauthorized access, or account compromise.
- Support phishing and suspicious email investigations, including message trace, header review, user follow-up, and remediation tracking.
- Help coordinate vulnerability remediation with desktop, infrastructure, and application teams.
- Support patching, endpoint remediation, access review, and secure configuration activities.
- Assist with investigation and documentation of incidents, technical findings, troubleshooting steps, and response actions.
- Learn and support security tools such as EDR, SIEM, vulnerability scanning platforms, Microsoft Defender, Exchange Online, and related technologies.
- Work with IT teams to address security gaps and operational risks.
- Maintain accurate tickets, incident notes, reports, and process documentation.
- Participate in security improvement activities, training, and mentoring.
Requirements
Do you have experience in Technical documentation?, The ideal candidate is either an early-career cybersecurity professional looking to deepen their security operations experience, or an experienced Level 2 desktop, field services, endpoint, or technical support professional ready to move into security.
This person should be curious, resourceful, coachable, and comfortable learning new tools. They should enjoy troubleshooting, documenting findings, working with users and IT teams, and researching issues they have not seen before., * Experience in one or more of the following areas:
- Security operations, SOC support, cybersecurity support, incident response support, vulnerability remediation, or endpoint/email security
- Desktop Support, Field Services, Endpoint Support, Systems Support, Technical Support, or similar hands-on IT support role
- Strong troubleshooting skills across Windows endpoints, user access, business applications, and common IT issues.
- Experience with Active Directory user, group, password, permission, and access support.
- Familiarity with Microsoft 365, Exchange Online, email troubleshooting, mailbox support, or user support.
- Basic networking knowledge, including TCP/IP, DNS, DHCP, VPN, firewalls, and subnetting.
- Exposure to endpoint protection, antivirus, EDR, phishing tickets, security alerts, patching, or vulnerability remediation.
- Strong interest in cybersecurity operations and willingness to continue building security skills.
- Strong documentation, communication, follow-up, and problem-solving skills.
- Ability to research unfamiliar issues, learn quickly, and work independently when needed.
- Positive attitude, adaptability, resourcefulness, and willingness to be coached.
Preferred Qualifications
- CompTIA Security+, Network+, CySA+, A+, ISC2 CC, or similar certification.
- Cybersecurity degree, certificate program, bootcamp, or active security training.
- Exposure to CrowdStrike Falcon, Microsoft Defender, Sentinel, Splunk, Rapid7, Tenable, Qualys, or similar security tools.
- Experience investigating phishing emails, suspicious links, malware alerts, compromised accounts, or security tickets.
- Experience with Exchange Online message trace, mail flow rules, Microsoft Defender for Office 365, or similar email security tools.
- Experience with Intune, SCCM, endpoint management, device compliance, or patching.
- PowerShell scripting or automation exposure.
- Experience in healthcare, hospital, HIPAA, or another regulated environment.
- Familiarity with NIST, HIPAA Security Rule, MITRE ATT&CK, vulnerability management, or incident response concepts., * Field Support/End User/Desktop Engineering/Tech Support: 2 years (Required)
- passion for moving career into security: 1 year (Required)
Benefits & conditions
Pulled from the full job description
- 401(k)
- Health insurance
- 401(k) matching
- Paid time off
- Vision insurance
- Health savings account
- Dental insurance, * 401(k)
- 401(k) matching
- Dental insurance
- Flexible spending account
- Health insurance
- Health savings account
- Life insurance
- Paid time off
- Vision insurance
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on indeed.comGood distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Dev Digest 134 - Where pixels sing?
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
System change: restart as developer?
Understanding and Mitigating Common Web Vulnerabilities