OT
Cybersecurity Analyst
Ova Technologies
- πΊπΈ United States
- Remote
- Senior
- 15 hours ago
- SIEM
- Vulnerability Management
- Incident Response
- Microsoft Sentinel
- Splunk
- triage
- Microsoft Defender
- CrowdStrike
- TCP/IP
- DNS
- Windows
- Linux
- Threat Intelligence
- Tenable
- Qualys
- Python
- PowerShell
- Bash
- EDR
- Azure
- AWS
- GCP
- Azure AD
- IAM
- RBAC
- CompTIA Security+
- CySA+
- CEH
- CISSP
- Network Security
- Fortinet
- Cisco
- ServiceNow
- Jira
15 hours ago
Experience: 2β6 years
Location: [Location / Remote]
Employment Type: Full-timeJob SummaryWe are seeking a skilledCybersecurity Analyst to monitor, detect, investigate, and respond to security threats across the organization's IT environment. The ideal candidate will have hands-on experience with SIEM, endpoint security, vulnerability management, incident response, and security monitoring.Key ResponsibilitiesMonitor security alerts and events usingSIEM platforms such as Microsoft Sentinel, Splunk, QRadar, or similar tools. Investigate and respond to security incidents, alerts, and potential threats. Performsecurity event analysis, threat detection, and incident triage. Analyze logs from firewalls, endpoints, servers, applications, network devices, and cloud environments. Conduct incident investigations and performroot-cause analysis. Create and maintain incident reports, investigation documentation, and security metrics. Perform vulnerability assessments and coordinate remediation of identified vulnerabilities. Monitor endpoint security solutions such asMicrosoft Defender, CrowdStrike, SentinelOne, or similar platforms. Assist with threat hunting and identification of Indicators of Compromise (IOCs). Support phishing investigations, malware analysis, and suspicious-user activity investigations. Implement and monitor security controls based on organizational security policies. Collaborate with IT, network, cloud, application, and infrastructure teams during security incidents. Participate in security audits, compliance activities, and risk assessments. Stay updated on emerging cyber threats, vulnerabilities, attack techniques, and security trends.Required Technical SkillsStrong understanding ofcybersecurity fundamentals. Hands-on experience withSIEM tools such as: Microsoft Sentinel Splunk IBM QRadar Knowledge ofSecurity Operations Center (SOC) processes. Experience withIncident Response and Threat Detection. Good understanding of networking concepts: TCP/IP DNS HTTP/HTTPS VPN Firewalls Proxies Knowledge of Windows and Linux security. Experience analyzing security logs and events. Knowledge ofMITRE Telecommunication&CK, IOC, TTPs, and threat intelligence. Familiarity with vulnerability-management tools such asTenable, Qualys, or Rapid7. Basic scripting knowledge inPython, PowerShell, or Bash is preferred. Understanding of endpoint detection and response (EDR) technologies.Cloud SecurityBasic to intermediate knowledge ofAzure, AWS, or GCP security. Experience monitoring cloud security events and logs. Knowledge ofMicrosoft Entra ID/Azure AD, IAM, MFA, and RBAC. Familiarity with cloud security monitoring and security best practices.Preferred CertificationsCompTIA Security+ CompTIA CySA+ Certified SOC Analyst (CSA) CEH GIAC certifications Microsoft SC-200 CISSP β preferred for senior-level rolesSoft SkillsStrong analytical and problem-solving skills. Good communication and documentation skills. Ability to work effectively under pressure during security incidents. Strong attention to detail. Ability to work in a 24Γ7 SOC environment when required.Typical ToolsSIEM: Microsoft Sentinel, Splunk, QRadar
EDR: Microsoft Defender, CrowdStrike, SentinelOne
Vulnerability Management: Qualys, Tenable, Rapid7
Network Security: Palo Alto, Fortinet, Cisco
Threat Intelligence: VirusTotal, MISP, Recorded Future
Cloud: Azure, AWS, Microsoft Entra ID
Ticketing: ServiceNow, JiraExperience LevelsJunior Cybersecurity Analyst (1β3 years):
Focus on alert monitoring, incident triage, log analysis, ticket management, and basic investigation.Cybersecurity Analyst (3β6 years):
Focus on incident investigation, threat hunting, vulnerability management, SIEM administration, and security improvements.Senior Cybersecurity Analyst (6+ years):
Focus on advanced threat hunting, incident response leadership, detection engineering, security architecture, automation, and mentoring analysts.
Cybersecurity Analyst Β· Ova Technologies