Cyber Security Operations Analyst

Vanasse Hangen Brustlin, Inc.

Orlando (FL)

Hybrid

USD 70,000 - 100,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Best-in-class benefits
Hybrid work environment
Learning and development support

Job summary

Vanasse Hangen Brustlin, Inc. (VHB) is seeking a Cyber Security Operations Analyst to join our IT Security team.

The role reports to the Cyber Security Operations Manager and collaborates with infrastructure, systems, network, endpoint, and cloud teams to monitor, investigate, and respond to security events. The ideal candidate has hands-on IT/system experience, strong curiosity, and a focus on improving security visibility and response.

Qualifications

  • Bachelor's degree in Cybersecurity, IT, CS or equivalent experience.
  • 3–5+ years in IT roles such as system/network/infrastructure support or cybersecurity.
  • Strong understanding of Windows systems and enterprise IT environments.
  • Ability to investigate technical issues using logs and system data.
  • Solid written communication and documentation skills.
  • Ability to collaborate with infrastructure, network, endpoint, and support teams.

Responsibilities

  • Monitor security alerts, SIEMs, dashboards, and endpoints to identify threats.
  • Investigate events using logs, endpoints, cloud, email, and network data to determine root cause.
  • Support incident response activities: containment, escalation, documentation, and coordination.
  • Perform threat hunting and vulnerability management; track remediation.
  • Develop and tune detections, alert logic, and security workflows.
  • Create and maintain incident response procedures and playbooks.
  • Collaborate with cross‑functional teams to improve monitoring coverage.
  • Support phishing simulations and security awareness initiatives.

Skills

Security monitoring
SIEM
Incident response
Log analysis
Windows systems
Networking fundamentals
Documentation
Team collaboration
Communication

Education

Bachelor's degree in Cybersecurity/IT/CS

Tools

Microsoft Defender
Microsoft 365 security tools
Microsoft Entra ID
Microsoft Sentinel
Azure security services
SIEM platforms
Endpoint detection and response
PowerShell

Job description

Overview
ABOUT THE POSITION
Cyber Security Operations Analyst

VHB is seeking a Cyber Security Operations Analyst to join our IT Security team. This role reports to the Cyber Security Operations Manager and works closely with infrastructure, systems, network, endpoint, and cloud teams to help monitor, investigate, and respond to security events across the enterprise.

This is a hands‑on operational role suited for someone with a strong background in IT systems, networking, infrastructure, or security operations who is interested in growing deeper into cybersecurity. The ideal candidate is naturally curious, organized, and enjoys digging into system behavior, logs, alerts, and technical details to understand what happened, why it happened, how to prevent recurrence, and how to improve security visibility and response.

This role will contribute to the continued maturity of VHB's security operations program by helping improve monitoring, detection logic, documentation, response procedures, vulnerability management, and automation.

Please note: applicants must be legally authorized to work for VHB in the U.S. without employer sponsorship.

Responsibilities
  • Monitor security alerts, SIEM tools, dashboards, and endpoint platforms to identify threats and suspicious activity across the enterprise.
  • Investigate security events through log, endpoint, authentication, cloud, email, and network analysis to determine root cause, scope, and impact.
  • Support incident response activities, including investigation, containment, escalation, documentation, and coordination with IT teams.
  • Perform threat hunting and vulnerability management by analyzing suspicious behavior, reviewing scan results, prioritizing findings, and tracking remediation.
  • Develop and tune SIEM detections, alert logic, monitoring use cases, and security operations workflows.
  • Create and maintain incident response procedures, alert triage playbooks, investigation documentation, and case management records.
  • Collaborate with infrastructure, network, cloud, endpoint, and support teams to resolve security-related issues and improve monitoring coverage.
  • Support phishing simulations, security awareness initiatives, reporting, automation, and continuous improvement efforts.
Skills and Attributes
  • Strong troubleshooting, analytical, and investigative skills with the ability to identify abnormal system behavior and security risks.
  • Solid understanding of enterprise IT environments, including Windows systems, networking, endpoints, cloud services, and authentication technologies.
  • Ability to correlate logs, alerts, endpoint activity, identity events, and network behavior to assess potential incidents.
  • Strong written and verbal communication skills with the ability to clearly document findings and explain issues to technical and non-technical audiences.
  • Calm, organized, and methodical approach to handling alerts, incidents, remediation efforts, and shifting priorities.
  • Sound judgment and ability to determine when to escape issues or engage cross-functional teams.
  • Curious, adaptable learner with interest in cybersecurity threats, tools, investigation techniques, and process improvement.
  • Comfortable working in a collaborative, fast-paced security environment with evolving priorities and responsibilities.
Required Qualifications
  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field, or equivalent professional experience.
  • 3–5+ years of experience in IT roles such as system administration, network administration, infrastructure support, endpoint support, cloud administration, IT operations, or cybersecurity.
  • Strong understanding of Windows systems, networking fundamentals, authentication, and enterprise IT environments.
  • Ability to investigate technical issues using logs, alerts, system data, and user activity.
  • Strong written communication and documentation skills.
  • Ability to work collaboratively with infrastructure, network, endpoint, and support teams.
  • Interest in cybersecurity operations, incident response, detection, and risk reduction.
Preferred Qualifications
  • 1–2+ years of security operations, SOC, incident response, vulnerability management, or security monitoring experience.
  • Experience with Microsoft security technologies such as Microsoft Defender, Microsoft 365 security tools, Microsoft Entra ID, Microsoft Sentinel, or Azure security services.
  • Familiarity with security monitoring tools such as SIEM platforms, endpoint detection and response tools, email security tools, vulnerability scanners, or security dashboards.
  • Experience with scripting, query, or automation tools such as PowerShell or Kusto Query Language (KQL).
  • Working knowledge of networking fundamentals including TCP/IP, DNS, routing, firewalls, VPNs, and authentication protocols.
  • Security certifications such as Security+, CySA+, SC-200, AZ-500, GCIH, or similar.
Additional Information
  • This role is primarily business-hours focused, with occasional after-hours support for significant security incidents as needed.
  • This position offers an opportunity to help build and mature VHB's security operations capabilities in a collaborative, growth-oriented environment.
  • Examples of work product/samples may be requested

Shortlisted candidates will be asked to complete a practical assessment.

Building what’s next, together.

Our people make the difference. We foster a technology-empowered, people‑driven, future‑ready culture where agility, innovation, and collaboration shape how we work every day.

When you join VHB, you’ll find:
  • Meaningful work on complex projects with real community impact
  • A collaborative, inclusive culture that values curiosity and shared success
  • Support to grow your skills and lead through change
  • Learning and development supported by evolving tools and technologies, including AI
  • Best-in-class benefits and a flexible, hybrid work environment

We’re growing across the East Coast and are consistently recognized as a great place to work. Ready to shape what’s next? Learn more about what sets our employee experience apart and connect with us.

VHB is a proud Equal Opportunity Employer. Since our founding, we have intentionally fostered a culture of inclusion and belonging, supported by deep-rooted core values, one of which is diversity. Qualified applicants will receive consideration for employment without regard to race, color, religion, gender, sex, sexual orientation, gender identity, national origin, disability, protected veteran status, or other characteristics protected by law.

#LI-KW1

#LI-Hybrid

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Security Operations Analyst
Cyber Security Operations Analyst

VHB • Orlando (FL)

Hybrid
USD 80,000 - 110,000
Hybrid work environment
Best-in-class benefits
Learning & development
Cyber Security Operations Analyst
Cyber Security Operations Analyst

Vanasse Hangen Brustlin Inc. • Orlando (FL)

Hybrid
USD 85,000 - 120,000
Hybrid work environment
Cyber Security Specialist
Cyber Security Specialist

Vensure Employer Solutions • Duluth (GA)

On-site
USD 80,000 - 100,000
Health Insurance
401(k) Retirement Plan
Paid Time Off
Cyber Security Operations Analyst – Threat Detection
Cyber Security Operations Analyst – Threat Detection

VHB • Orlando (FL)

Hybrid
USD 80,000 - 110,000
Hybrid work environment
Best-in-class benefits
Learning & development
Senior Cybersecurity Specialist - GA - On Site
Senior Cybersecurity Specialist - GA - On Site

Socket.dev • Duluth (GA)

On-site
USD 120,000 - 180,000
Health Insurance
401(k) Plan
Paid Time Off
16269 - Senior Cybersecurity Specialist - AZ - On Site
16269 - Senior Cybersecurity Specialist - AZ - On Site

Vensure Employer Solutions • Chandler (AZ)

On-site
USD 110,000 - 165,000
Health Insurance
401(k) with company match
Paid Time Off
+2
Cyber Defense Analyst
Cyber Defense Analyst

Veilant • Tysons (VA)

On-site
USD 80,000 - 110,000
Flexible PTO + holidays
Generous 401k match benefit
Medical, dental, and vision insurance
+2
16269 - Senior Cybersecurity Specialist - AZ - On Site
16269 - Senior Cybersecurity Specialist - AZ - On Site

Roman Health Pharmacy LLC • Chandler (AZ)

On-site
USD 120,000 - 128,000
Health insurance
401(k) with company match
Paid time off
+1
16325 - Cybersecurity Specialist - AZ - On Site
16325 - Cybersecurity Specialist - AZ - On Site

Vensure Employer Solutions • Chandler (AZ)

On-site
USD 90,000 - 120,000
Health Insurance
401(k) with company match
Paid Time Off
+1
Cybersecurity Analyst
Cybersecurity Analyst

Uvcyber • Portland (OR)

On-site
USD 80,000 - 100,000
401(k) with employer match
Medical, Dental, and Vision Insurance
Discretionary Time Off Program
+1