Cyber Security Analyst - Associate

SMBC

Charlotte (NC)

Hybrid

USD 90,000 - 130,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Hybrid work model

Job summary

SMBC is seeking a Cyber Security Analyst to join a high‑performing SOC team, focusing on monitoring, detection engineering, incident response, and continuous improvement. You will work to protect SMBC Group and adapt to a rapidly changing threat landscape.

Responsibilities include investigating alerts, leading technical incident analysis, tuning detections, and driving improvements to preventative controls.

Qualifications

  • 2–5 years cyber security experience, SOC/DFIR/CSIRT preferred.
  • Strong verbal and written communication; ability to document work clearly.
  • Certs are a plus (GCIH, GNFA, OSCP, CISSP, CEH, etc.).
  • Self‑directed, able to work independently and multi‑task in a fast environment.
  • Analytical and problem‑solving skills with understanding of security controls.

Responsibilities

  • Analyze security alerts and respond to security events and incidents.
  • Maintain and update monitoring and response playbooks.
  • Conduct proactive threat hunting and incident investigations.
  • Lead technical analysis of incidents and track attacker actions.
  • Tune detections and improve preventive controls to reduce false positives.
  • Collaborate with DFIR, threat intel, automation and detection engineering teams.
  • Share knowledge to deepen SOC capabilities and SME roles.

Skills

SOC experience
DFIR
CSIRT
Strong communication
Independent worker
Multitasking
Analytical skills
MITRE ATT&CK
Windows
Linux
AD (Active Directory)
SIEM
EDR
NDR
XDR
UEBA

Tools

SIEM
EDR
NDR
XDR
UEBA
Windows
Linux
Active Directory

Job description

Role Description

As a Cyber Security Analyst you will be a key part of a high performing SOC team, with a desire to continually improve and advance our capabilities to protect SMBC Group. You will bring your passion for Cybersecurity to a team of like‑minded professionals and leverage this passion to ensure our monitoring and response capabilities are effective and efficient and that we keep pace with a rapidly changing threat landscape.

You will relish your core role in supporting the monitoring and response of cyber security alerts and incidents by digging into and investigating them to find the root cause and identifying the gap in controls that allowed a threat to reach that point in the kill chain. If you identify an incident, you will lead that technical analysis, tracking down the actions of that threat actor as part of the incident response, while supported by the wider Incident response process and members of the SOC and CSIRT teams. If you identify a false positive, you will drive the effort to tune or refine our detections, or to drive improvements to our preventative controls to prevent a recurrence, freeing more time for the SOC to focus on improving our skills and capabilities.

As part of a wider team of SOC analysts, you may focus on an area you are passionate about, or if sufficiently experienced, take the lead. You will develop expertise and expand our capabilities in domains ranging from across Purple Teaming, Threat hunting, Digital Forensics and Incident Response (DFIR), Security Automation, Detection Engineering and Threat Intelligence and share this knowledge to develop the depth of knowledge of the SOC. As part of a Financial Group with offices and data centers across the Globe, you will have access and exposure to leading technologies and tools. If there is a gap in our toolset, you can help us identify and bridge that gap by acting as Subject Matter Expert to do so. You will bring fresh ideas, challenge the status quo, and seek always to answer - how can we improve?

This role is best suited for candidates who enjoy and have experience within SOC or CSIRT teams and enjoy investigating and finding the root of an issue or incident and working on getting the most from leading edge security toolsets and platforms and processes. Candidates who excel will think critically to find ways to resolve security challenges. This role would suit an experienced and self‑motivated cyber security professional with strong technical skills and knowledge combined with a passion for cyber security.

Role Objectives
  • Act as a core member of the SOC including Cyber Monitoring & Response/Purple Teaming/Threat Hunting/Digital Forensics/Incident Response.
  • Analyze security alerts and respond to security events and incidents.
  • Maintain and update monitoring & response playbooks.
  • Conduct proactive threat hunting.
  • Develop expertise in our monitoring systems and technology to act as an SME in working with our detection engineering and automation teams to enhance our abilities to prevent, detect & respond.
  • Test new adversary TTPs and our ability to detect and respond to them.
  • Identify opportunities for efficiency, work hand in hand with Security Automation team to automate and improve our response processes.
  • Assist in the implementation and ongoing support of security systems.
  • Execute tasks or support projects to enhance team’s capabilities.
  • Follow standards for security excellence within the SOC.
  • Bring a positive outlook and seek to motivate and inspire your fellow team members.
  • Demonstrate comprehensive understanding of cyber security best practices, risk vectors, mitigation techniques and protection software. Display knowledge of network security concepts and tools such as firewalls, proxy servers, email security and suspicious traffic flows. Exhibit analytical ability in incident response. Show ability to convey cyber security polices and concepts to employees and understand security best practices.
  • Strong understanding of MITRE ATT@CK Cyber Kill Chain and similar frameworks.
  • Strong knowledge of security controls related to the detection, analysis, and response (SIEM, EDR, NDR, XDR, UEBA).
  • Strong knowledge of Windows and Linux systems, Active Directory, Cloud technologies.
Qualifications and Skills
  • 2-5 years of experience in cyber security experience required, ideally in a SOC, DFIR, or CSIRT role.
  • Strong verbal and written communication skills with experience in documenting their work to a high level.
  • Professional Certifications an advantage but not essential if have requisite role knowledge, GCIH, GNFA, GFCA, Certified Ethical Hacker (CEH), OSCP, CISSP or similar certifications a plus.
  • Must be self‑directed with the ability to work independently.
  • Ability to multi‑task and remain productive in a service‑driven and results oriented environment.
  • Demonstrated strong organizational, analytical, and problem‑solving skills.
Additional Requirements

SMBC’s employees participate in a Hybrid workforce model that provides employees with an opportunity to work from home, as well as, from an SMBC office. SMBC requires that employees live within a reasonable commuting distance of their office location. Prospective candidates will learn more about their specific hybrid work schedule during their interview process. Hybrid work may not be permitted for certain roles, including, for example, certain FINRA‑registered roles for which in‑office attendance for the entire workweek is required.

SMBC provides reasonable accommodations during candidacy for applicants with disabilities consistent with applicable federal, state, and local law. If you need a reasonable accommodation during the application process, please let us know at accommodations@smbcgroup.com.

EOE, including Disability/veterans

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Security Analyst - Associate
Cyber Security Analyst - Associate

SMBC Group • Charlotte (NC)

Hybrid
USD 70,000 - 110,000
Hybrid work model
Sr. Cyber Security Analyst
Sr. Cyber Security Analyst

SMBC Group • Charlotte (NC)

Hybrid
USD 120,000 - 150,000
Sr. Cyber Security Analyst
Sr. Cyber Security Analyst

SMBC • Charlotte (NC)

Hybrid
USD 120,000 - 170,000
Hybrid work model
Cyber Security Engineer, VP
Cyber Security Engineer, VP

SMBC Group • Charlotte (NC), Northern (KY)

Hybrid
USD 138,000 - 208,000
Hybrid work model
Accommodations for disabilities
Hybrid Cyber Security Analyst: Threat Hunting & IR
Hybrid Cyber Security Analyst: Threat Hunting & IR

SMBC • Charlotte (NC)

Hybrid
USD 90,000 - 130,000
Hybrid work model
Sr. SOC Analyst
Sr. SOC Analyst

HW3 • Village of Great Neck (NY)

On-site
USD 130,000 - 170,000
Cybersecurity Audit Associate
Cybersecurity Audit Associate

SMBC • Charlotte (NC)

Hybrid
USD 85,000 - 138,000
Competitive benefits portfolio
Hybrid workforce model
Annual discretionary incentive award
Senior Cyber Threat Analyst
Senior Cyber Threat Analyst

Brown Brothers Harriman • Jersey City (NJ)

On-site
USD 110,000 - 160,000
Senior Cyber Security Analyst
Senior Cyber Security Analyst

Ampcus Inc • Washington

On-site
USD 90,000 - 120,000
Cyber Security Analyst -
Cyber Security Analyst -

thehivecareers.co • Oregon (WI)

Hybrid
USD 75,000 - 95,000