Cyber Detection and Response Analyst

Commonwealth of Massachusetts

Chelsea (MA)

On-site

USD 76,000 - 113,000

Full time

6 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Commonwealth of Massachusetts is seeking a Cyber Detection and Response Analyst I for the EOTSS Security Operations Center in Chelsea, MA. The role focuses on incident triage, detection, response and remediation, working with Security Engineers and MSP partners to contain IT threats.

The position is based at 200 Arlington Street, Chelsea, with a hybrid schedule requiring in-office and remote work as needed, Monday through Friday, 9AM–5PM EST.

Qualifications

  • Bachelor's Degree in computer science, information systems, business administration or related field, or equivalent work experience.

Responsibilities

  • Manage day-to-day security monitoring and incident response activities including SIEM monitoring and EDR.
  • Assist in incident detection, reporting, tracking and security investigations.
  • Develop and deliver cybersecurity education and awareness initiatives for state government.
  • Prepare security reports using enterprise tools (Tenable, DHS, Expanse).

Skills

SIEM Splunk
TCP/IP networking
IDS/IPS testing
Windows/Linux
Network analysis
Proofpoint
Cloud computing

Education

Bachelor's degree in CS/IS/Business or related field

Tools

Cortex XDR

Job description

Job Description - Cyber Detection and Response Analyst (260005RW)

Cyber Detection and Response Analyst - ( 260005RW )

Description

EOTSS is the lead enterprise technology organization for the Commonwealth of Massachusetts. Charged with driving the ongoing alignment of business and technology across the Commonwealth's Executive Branch, EOTSS oversees and manages the enterprise technology, digital infrastructure and services, as well as the Commonwealth Security Operations Center and an enterprise Standard Operating Environment that includes an information security and risk management framework for over 125 state agencies and over 43,000 state employees. We directly serve our constituents by providing digital services and tools that enable taxpayers, drivers, businesses, visitors, families and other citizens to do business with the Commonwealth in a way that makes every interaction with government easier, faster, and more secure.

Our Mission: We provide technology leadership across the Commonwealth to enhance the quality of public service and foster positive community outcomes.

This position will be a member of a Security Operations Center's Cyber Detection and Response Team. The EOTSS SOC Cyber Detection and Response Analyst I is primarily responsible for incident triage, detection, response, and remediation activities that occur within the TSS SOC. Analysts in Security Operations work with Security Engineers, Managed Security Service Providers (NuHarbor) and SOC Managers to give situational awareness via detection, containment, and remediation of IT threats. SOC Analysts cooperate with other team members to detect and respond to information security incidents, develop, and follow security events such as alerts, and engage in security investigations.

The primary work location for this role will be at200 Arlington Street Chelsea, Massachusetts 02150. The work schedule for this position isMonday through Friday, 9AM to 5PM EST. This position would be expected to follow ahybridmodel of reporting to work that combines in-office workdays and work from home days as needed.

Duties and Responsibilities

Managing day-to-day security monitoring, and IR activities, including but not limited to SIEM monitoring, Endpoint Detection and Response using Palo Alto's Cortex XDR, notifying agencies of potential malicious activities, managing, and/or maintaining security incident response practices

Assist in detection and incident response functions including, but not limited to, Security Incident Reporting tickets, customer and constituent notification, tracking, and reporting. Conduct and/or participate in agency, state, regional, and/or national cyber security incident simulation exercises

Monitor, report, and respond to anomalous Internet, Extranet, and/or Intranet activity related information provided through internal operations and/or credible external third-party threat intelligence organizations. Work with EOTSS customer organizations and EDR vendor to test software revision, EDR client file updating, and/or EDR related status reporting

Assist in the development and delivery of cybersecurity education and awareness initiatives on behalf of state government.

Review third party alerts to maintain overall situational awareness of security issues affecting Commonwealth agencies, EOTSS customer organizations, and/or MS-ISAC members.

Conduct research into new threats that may affect Commonwealth agencies, EOTSS customer organizations, and/or local entities.

Provide and promote security awareness. Assist in phishing campaigns for all users across the Commonwealth while furthering overall security awareness programs.

Support the preparations of security reports to management on security system activities and performance utilizing enterprise security tools (Tenable, DHS, Expanse, etc.)

Support troubleshooting security related problems.

Other duties and responsibilities as assigned.

Preferred Knowledge, Skills, and Abilities
Technical Skills
  • Knowledge of SIEM (Security Information and Event Management) Splunk Preferred
  • TCP/IP, VLANs, computer networking, routing, and switching
  • IDS/IPS, penetration and vulnerability testing
  • Windows and Linux operating systems
  • Network protocols and packet analysis tools

Cloud computing (AWS/AZURE/GCP)

  • Understanding of Proofpoint and other email security tools.
Non-technical Skills
  • Critical thinking and problem-solving abilities.
  • Capability to communicate and listen to needs from organizational stakeholders.
Education and Certifications

Bachelor's Degree in computer science, Information Systems, Business Administration or other related field, or equivalent work experience.

Security certifications desired but not required.

Qualifications

First consideration will be given to those applicants that apply within the first 14 days.

Minimum Entrance Requirements

Applicants must have (A) at least one (1) year of full-time or equivalent part-time experience in the field of information technology security, or (B) any equivalent combination of the required experience and the substitutions below.

Substitutions

I. An Associate's degree in a related field may substitute for the required experience .

When you embark on a career with the Commonwealth, you are offered an outstanding suite of employee benefits that add to the overall value of your compensation package. We take pride in providing a work experience that supports you, your loved ones, and your future.

An Equal Opportunity / Aff Females, minorities, veterans, and persons with disabilities are strongly encouraged to apply.

The Commonwealth is an Equal Opportunity Employer and does not discriminate on the basis of race, religion, color, sex, gender identity or expression, sexual orientation, age, disability, national origin, veteran status, or any other basis covered by appropriate law. Research suggests that qualified women, Black, Indigenous, and Persons of Color (BIPOC)may self-select out of opportunities if they don't meet 100% of the job requirements. We encourage individuals who believe they have the skills necessary to thrive to apply for this role.

Official Title : Security Analyst I

Primary Location

United States-Massachusetts-Chelsea-200 Arlington Street

Job

Information Systems and Technology

Agency

Exec Office of Technology Services and Security

Schedule

Full-time

Shift

Day

Job Posting

Aug 21, 2026, 6:55:04 PM

Number of Openings

1

Salary

75,826.40 - 112,960.38 Yearly

If you have Diversity, Aff... contact Diversity Officer / ADA Coordinator : Emily Hartmann - 6176608300

Bargaining Unit : 06-NAGE - Professional Admin.

Confidential : No

Potentially Eligible for a Hybrid Work Schedule : Yes

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior ServiceNow Developer
Senior ServiceNow Developer

Worky • Chelsea (MA)

On-site
USD 107,164 - 157,374
Security Team Specialist I
Security Team Specialist I

Commonwealth of Massachusetts • Holyoke (MA)

On-site
USD 33,000 - 44,000
Security Operations Analyst
Security Operations Analyst

Mondo • Needham (MA)

Hybrid
USD 83,000 - 96,000
Health insurance
Dental insurance
Vision insurance
+1
Security Analyst
Security Analyst

CENTER FOR HEALTH INFORMATION AND ANALYSIS • Boston (MA)

Hybrid
USD 76,000 - 113,000
Hybrid work model
Flexible Spending Account
Retirement Savings Plan
+1
Security Analyst II
Security Analyst II

PBS • Alexandria (VA)

On-site
USD 155,000 - 165,000
Paid time off
Paid holidays
Disability insurance
+1
Cybersecurity Analyst / Incident Response Coordinator (On-Site)
Cybersecurity Analyst / Incident Response Coordinator (On-Site)

Oxley Enterprises, Inc. • Alexandria (VA)

On-site
USD 101,000 - 133,000
Health insurance
Life Insurance
Disability insurance
+1
Director of IT - Cloud and Developer Operations
Director of IT - Cloud and Developer Operations

Commonwealth of Massachusetts • Boston (MA)

Hybrid
USD 103,000 - 159,000
Security Analyst
Security Analyst

United States Digital Space LLC • Boston (MA)

On-site
USD 70,000 - 110,000
SOC Analyst
SOC Analyst

Mass Digital Health • Boston (MA)

On-site
USD 76,000 - 110,000
Medical, vision, and dental insurance
401(k) Profit Sharing Contribution
Paid Time Off and Holidays
+1
IT Network & System Administrator (Contract-to-Permanent)
IT Network & System Administrator (Contract-to-Permanent)

Commonwealth of Massachusetts • Boston (MA)

On-site
USD 69,000 - 76,000
Health and dental insurance
Paid leave
Paid holidays