Enable job alerts via email!

Cyber Security Analyst (Tier 2)

CyberSheath

Great Falls Crossing (VA)

Remote

USD 70,000 - 100,000

Full time

3 days ago
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

A rapidly growing Security and IT Managed Services Provider is seeking a Cyber Security Analyst to join their Security Operations team. The role involves advanced security incident triage, investigation, and response across Microsoft environments. The ideal candidate will have strong analytical skills, experience in SOC, and proficiency in scripting. This fully remote position offers a competitive salary and the opportunity to be part of a dynamic team focused on enhancing cybersecurity for the Defense Industrial Base.

Qualifications

  • 3-5 years in cybersecurity with 2+ years SOC experience.
  • Deep knowledge of hybrid Microsoft environments.

Responsibilities

  • Investigate and respond to escalated security incidents.
  • Perform advanced incident analysis using Microsoft Defender suite.
  • Develop and maintain incident response playbooks.

Skills

Analytical Skills
Communication Skills
Scripting Proficiency
Incident Handling
Threat Intelligence Analysis

Education

Microsoft Certified: Security Operations Analyst (SC-200)
EC-Council CSA
CompTIA Security+

Tools

Microsoft Defender
Azure Sentinel
PowerShell
Python

Job description

CyberSheath Services International LLC is a rapidly growing Security and IT Managed Services Provider primarily focused on providing Cybersecurity services to the Defense Industrial Base (DIB). We are excited to be expanding our staff due to our growth and are looking to add a Cyber Security Analyst to our Security Operations team!

CyberSheath integrates compliance and threat mitigation efforts and eliminates redundant security practices that don't improve and, in fact, may weaken an organization's security posture. Our professionals tell clients where to stop spending, where to invest, and how to take what they are already doing and integrate it in a way that delivers improved security.

Successful candidates for CyberSheath are self-motivated, think out of the box, work, and solve issues independently. Additionally, our most successful people are self-starters and willing to put on many hats in order to succeed. CyberSheath is fast-growing and seeks candidates who want to be part of our upward trajectory.

Job Overview

The Cyber Security Analyst (Tier 2) is responsible for advanced security incident triage, investigation, and response across Microsoft 365, Azure, and on-premises infrastructure. Serves as the escalation point for complex security incidents while implementing containment and remediation procedures in hybrid environments.

Key Responsibilities

  • Investigate and respond to escalated security incidents across Microsoft cloud and on-premises environments
  • Perform advanced incident analysis using Microsoft Defender suite and Azure Sentinel
  • Conduct security assessment of Azure/Microsoft 365 configurations and implement hardening recommendations
  • Analyze and respond to advanced Active Directory attacks (Kerberoasting, Pass-the-Hash, Golden Ticket)
  • Monitor and investigate Exchange Server logs, email flow patterns, and phishing campaigns
  • Analyze federation security including ADFS token-based attacks and SAML token manipulation
  • Configure and tune WAF/firewall rule sets and investigate related security incidents
  • Develop network segmentation strategies and identify lateral movement attempts
  • Develop and maintain incident response playbooks for various attack scenarios
  • Coordinate incident response activities with cross-functional teams

Required Qualifications

  • 3-5 years in cybersecurity with 2+ years SOC experience
  • Deep knowledge of hybrid Microsoft environments (Microsoft 365, Azure, on-premises AD)
  • Experience with SIEM platforms and security monitoring tools
  • Scripting proficiency (PowerShell, Python)
  • Strong analytical and communication skills
  • Microsoft Certified: Security Operations Analyst (SC-200)
  • One additional security certification: EC-Council CSA, CompTIA Security+, or similar

Preferred Qualifications

  • Microsoft Certified: Azure Security Engineer (AZ-500)
  • Microsoft Certified: Identity and Access Administrator (SC-300)
  • CrowdStrike Certified Falcon Responder (CCFR) or equivalent EDR certification
  • CISSP, SSCP, CCSP

Skills & Expertise

  • Strong Proficiency with Microsoft Defender suite (Endpoint, Office 365, Identity, Cloud Apps)
  • Azure Sentinel KQL query development and alert configuration
  • Azure AD/Entra ID security configuration and attack path analysis
  • Active Directory security assessment including GPOs, trust relationships, and delegation
  • Email security and phishing detection/response
  • Cloud security posture management
  • Incident handling and digital forensics
  • Threat intelligence analysis and implementation

Work Environment

  • CyberSheath is a fully remote organization, and this will be a work-from-home position
  • Travel requirements: 0-5% yearly.

CyberSheath is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, gender identity, national origin, age, protected veteran status, among other things, or status as a qualified individual with a disability.

Budgeted Pay Range

$70,000—$100,000 USD
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Cyber Security Analyst (Tier 2)

Freddie Mac

Remote

USD 70,000 - 100,000

Today
Be an early applicant

Cyber Security Analyst (Tier 2) New United States - Remote

CyberSheath Services International

South Carolina

Remote

USD 70,000 - 100,000

2 days ago
Be an early applicant

Network Engineer

Vitality Living

Brentwood

Remote

USD 80,000 - 100,000

5 days ago
Be an early applicant

Sr Software Engineer in Support I (Sr. Tier-3 Engineer)

Blackboard

Remote

USD 80,000 - 110,000

4 days ago
Be an early applicant

Sr Software Engineer in Support II (Sr. Tier-3 Engineer)

Blackboard

Remote

USD 80,000 - 100,000

5 days ago
Be an early applicant

IT Specialist

Microbac Laboratories, Inc.

Remote

USD 60,000 - 80,000

3 days ago
Be an early applicant

IT Specialist

Microbac Laboratories, Inc.

Cranberry Township

Remote

USD 70,000 - 90,000

5 days ago
Be an early applicant

Information Security Analyst, Scholars Operations Center

Florida Virtual School

Remote

USD 66,000 - 127,000

10 days ago

Information Security Analyst, Scholars Operations Center

Florida Virtual School

Orlando

Remote

USD 66,000 - 127,000

10 days ago