Security Analyst, Incident Response- 2nd and 3rd shift (after hours)- Remote
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
Job description
The IT Support & Security Operations Analyst is responsible for monitoring, triaging, and responding to security incidents during after-hours operations while providing technical support to end users as needed. This role serves as the first line of defense for cybersecurity events and ensures timely resolution of user issues within the Microsoft 365 and Windows environment., Security Operations & Incident Response (Primary Responsibility) Monitor and triage security alerts generated from enterprise security platforms. Investigate, analyze, and escalate security incidents according to established procedures. Perform initial incident response activities, including threat validation, containment recommendations, and documentation. Utilize security monitoring and endpoint protection tools, including: CrowdStrike Microsoft Defender Darktrace Grafana Additional security and monitoring platforms as required Maintain accurate incident records and communicate findings to appropriate teams. Support ongoing security operations by identifying suspicious activity and potential threats.
End-User Support (Secondary Responsibility) Provide technical support to users operating in a Microsoft-based environment.
Troubleshoot and resolve issues related to: Windows 10 and Windows 11 Microsoft 365 applications Outlook and Exchange Online Microsoft Teams Microsoft Defender Other Microsoft 365 services Assist users with account management and access-related requests.
Perform administrative tasks within Microsoft 365, including: Group membership changes Role and permission assignments User account support License-related assistance (E3 and E5 environments) Escalate complex issues to appropriate support teams when necessary.
Requirements
Do you have experience in Windows?, Experience supporting Windows 10 and Windows 11 environments. Familiarity with Microsoft 365 administration and user support. Experience working with Microsoft 365 E3 and/or E5 licensing environments. Knowledge of cybersecurity principles, security monitoring, and incident response processes.
Hands-on experience with one or more of the following tools: CrowdStrike Microsoft Defender Darktrace Grafana Strong troubleshooting, analytical, and problem-solving skills. Excellent written and verbal communication abilities. Ability to prioritize multiple tasks and respond effectively in a fast-paced environment. AWS experience, Security certifications such as Security+, CySA+, SC-200, or equivalent. Experience working in a Security Operations Center (SOC) environment. Familiarity with Microsoft Entra ID (Azure AD), Exchange Online, and Microsoft Defender for Endpoint. Experience with ticketing and incident management systems. Work Schedule After-hours shift position. Primary focus on security monitoring and incident response. Secondary responsibility for end-user support and Microsoft 365 administration as operational needs require.
Benefits & conditions
3.63.6 out of 5 stars Remote $60 - $75 an hour
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on indeed.comGood distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Fully Remote Software Engineer Jobs
What Are The Top Skills Required For Azure Developers?
Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents
Dev Digest 134 - Where pixels sing?