Cyber Security Operations Analyst

VHB

Orlando (FL)

Hybrid

USD 80,000 - 110,000

Full time

6 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Hybrid work environment
Best-in-class benefits
Learning & development

Job summary

VHB is seeking a Cyber Security Operations Analyst to join our IT Security team. The role reports to the Cyber Security Operations Manager and collaborates with infrastructure, systems, network, endpoint, and cloud teams to monitor, investigate, and respond to security events across the enterprise.

This hands-on position is ideal for someone with a solid IT systems, networking, or security operations background who wants to grow deeper into cybersecurity.

Qualifications

  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or related field, or equivalent professional experience.
  • 3–5+ years of experience in IT roles such as system/network administration, infrastructure support, endpoint/ cloud administration, IT operations, or cybersecurity.
  • Strong understanding of Windows systems, networking fundamentals, authentication, and enterprise IT environments.
  • Ability to investigate technical issues using logs, alerts, system data, and user activity.
  • Strong written communication and documentation skills.
  • Ability to work collaboratively with infrastructure, network, endpoint, and support teams.
  • Interest in cybersecurity operations, incident response, detection, and risk reduction.

Responsibilities

  • Monitor security alerts, SIEM tools, dashboards, and endpoint platforms to identify threats and suspicious activity across the enterprise.
  • Investigate security events through log, endpoint, authentication, cloud, email, and network analysis to determine root cause, scope, and impact.
  • Support incident response activities, including investigation, containment, escalation, documentation, and coordination with IT teams.
  • Perform threat hunting and vulnerability management by analyzing suspicious behavior, reviewing scan results, prioritizing findings, and tracking remediation.
  • Develop and tune SIEM detections, alert logic, monitoring use cases, and security operations workflows.
  • Create and maintain incident response procedures, alert triage playbooks, investigation documentation, and case management records.
  • Collaborate with infrastructure, network, cloud, endpoint, and support teams to resolve security-related issues and improve monitoring coverage.
  • Support phishing simulations, security awareness initiatives, reporting, automation, and continuous improvement efforts.

Skills

Threat analysis
SIEM & logs
Windows systems
Networking fundamentals
Incident response
Documentation
Communication skills

Education

Bachelor's degree in Cybersecurity/IT/CS

Tools

Microsoft Defender
Microsoft Sentinel
PowerShell
KQL

Job description

Overview
ABOUT THE POSITION
Cyber Security Operations Analyst

VHB is seeking a Cyber Security Operations Analyst to join our IT Security team. This role reports to the Cyber Security Operations Manager and works closely with infrastructure, systems, network, endpoint, and cloud teams to help monitor, investigate, and respond to security events across the enterprise.

This is a hands‑on operational role suited for someone with a strong background in IT systems, networking, infrastructure, or security operations who is interested in growing deeper into cybersecurity. The ideal candidate is naturally curious, organized, and enjoys digging into system behavior, logs, alerts, and technical details to understand what happened, why it happened, how to prevent recurrence, and how to improve security visibility and response.

This role will contribute to the continued maturity of VHB's security operations program by helping improve monitoring, detection logic, documentation, response procedures, vulnerability management, and automation.

Please note: applicants must be legally authorized to work for VHB in the U.S. without employer sponsorship.

Responsibilities
  • Monitor security alerts, SIEM tools, dashboards, and endpoint platforms to identify threats and suspicious activity across the enterprise.
  • Investigate security events through log, endpoint, authentication, cloud, email, and network analysis to determine root cause, scope, and impact.
  • Support incident response activities, including investigation, containment, escalation, documentation, and coordination with IT teams.
  • Perform threat hunting and vulnerability management by analyzing suspicious behavior, reviewing scan results, prioritizing findings, and tracking remediation.
  • Develop and tune SIEM detections, alert logic, monitoring use cases, and security operations workflows.
  • Create and maintain incident response procedures, alert triage playbooks, investigation documentation, and case management records.
  • Collaborate with infrastructure, network, cloud, endpoint, and support teams to resolve security-related issues and improve monitoring coverage.
  • Support phishing simulations, security awareness initiatives, reporting, automation, and continuous improvement efforts.
Skills And Attributes
  • Strong troubleshooting, analytical, and investigative skills with the ability to identify abnormal system behavior and security risks.
  • Solid understanding of enterprise IT environments, including Windows systems, networking, endpoints, cloud services, and authentication technologies.
  • Ability to correlate logs, alerts, endpoint activity, identity events, and network behavior to assess potential incidents.
  • Strong written and verbal communication skills with the ability to clearly document findings and explain issues to technical and non-technical audiences.
  • Calm, organized, and methodical approach to handling alerts, incidents, remediation efforts, and shifting priorities.
  • Sound judgment and ability to determine when to escape issues or engage cross-functional teams.
  • Curious, adaptable learner with interest in cybersecurity threats, tools, investigation techniques, and process improvement.
  • Comfortable working in a collaborative, fast-paced security environment with evolving priorities and responsibilities.
Required Qualifications
  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field, or equivalent professional experience.
  • 3–5+ years of experience in IT roles such as system administration, network administration, infrastructure support, endpoint support, cloud administration, IT operations, or cybersecurity.
  • Strong understanding of Windows systems, networking fundamentals, authentication, and enterprise IT environments.
  • Ability to investigate technical issues using logs, alerts, system data, and user activity.
  • Strong written communication and documentation skills.
  • Ability to work collaboratively with infrastructure, network, endpoint, and support teams.
  • Interest in cybersecurity operations, incident response, detection, and risk reduction.
Preferred Qualifications
  • 1–2+ years of security operations, SOC, incident response, vulnerability management, or security monitoring experience.
  • Experience with Microsoft security technologies such as Microsoft Defender, Microsoft 365 security tools, Microsoft Entra ID, Microsoft Sentinel, or Azure security services.
  • Familiarity with security monitoring tools such as SIEM platforms, endpoint detection and response tools, email security tools, vulnerability scanners, or security dashboards.
  • Experience with scripting, query, or automation tools such as PowerShell or Kusto Query Language (KQL).
  • Working knowledge of networking fundamentals including TCP/IP, DNS, routing, firewalls, VPNs, and authentication protocols.
  • Security certifications such as Security+, CySA+, SC-200, AZ-500, GCIH, or similar.
Additional Information
  • This role is primarily business-hours focused, with occasional after-hours support for significant security incidents as needed.
  • This position offers an opportunity to help build and mature VHB's security operations capabilities in a collaborative, growth-oriented environment.
  • Examples of work product/samples may be requested

Shortlisted candidates will be asked to complete a practical assessment.

Building What’s Next, Together.

Our people make the difference. We foster a technology-empowered, people‑driven, future‑ready culture where agility, innovation, and collaboration shape how we work every day.

When You Join VHB, You’ll Find
  • Meaningful work on complex projects with real community impact
  • A collaborative, inclusive culture that values curiosity and shared success
  • Support to grow your skills and lead through change
  • Learning and development supported by evolving tools and technologies, including AI
  • Best-in-class benefits and a flexible, hybrid work environment

We’re growing across the East Coast and are consistently recognized as a great place to work. Ready to shape what’s next? Learn more about what sets our employee experience apart and connect with us.

VHB is a proud Equal Opportunity Employer. Since our founding, we have intentionally fostered a culture of inclusion and belonging, supported by deep-rooted core values, one of which is diversity. Qualified applicants will receive consideration for employment without regard to race, color, religion, gender, sex, sexual orientation, gender identity, national origin, disability, protected veteran status, or other characteristics protected by law.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Security Operations Analyst
Cyber Security Operations Analyst

Vanasse Hangen Brustlin Inc. • Orlando (FL)

Hybrid
USD 85,000 - 120,000
Hybrid work environment
Cyber Security Specialist
Cyber Security Specialist

Vensure Employer Solutions • Duluth (GA)

On-site
USD 80,000 - 100,000
Health Insurance
401(k) Retirement Plan
Paid Time Off
Cyber Security Operations Analyst – Threat Detection
Cyber Security Operations Analyst – Threat Detection

VHB • Orlando (FL)

Hybrid
USD 80,000 - 110,000
Hybrid work environment
Best-in-class benefits
Learning & development
16269 - Senior Cybersecurity Specialist - AZ - On Site
16269 - Senior Cybersecurity Specialist - AZ - On Site

Vensure Employer Solutions • Chandler (AZ)

On-site
USD 110,000 - 165,000
Health Insurance
401(k) with company match
Paid Time Off
+2
IT Security Analyst I
IT Security Analyst I

VC3, Inc. • Northern (KY)

Hybrid
USD 60,000 - 75,000
Senior Cybersecurity Specialist - GA - On Site
Senior Cybersecurity Specialist - GA - On Site

Socket.dev • Duluth (GA)

On-site
USD 120,000 - 180,000
Health Insurance
401(k) Plan
Paid Time Off
Cyber Defense Analyst
Cyber Defense Analyst

Veilant • Tysons (VA)

On-site
USD 80,000 - 110,000
Flexible PTO + holidays
Generous 401k match benefit
Medical, dental, and vision insurance
+2
Senior Cybersecurity Operations Analyst
Senior Cybersecurity Operations Analyst

Versant Health, Inc. • City of Troy (NY)

On-site
USD 138,000 - 154,000
Medical coverage
Dental coverage
Paid time off
Cyber Security Engineer
Cyber Security Engineer

VetJobs • Dakota Dunes (SD)

On-site
USD 90,000 - 130,000
Health/Dental/Vision
Disability Insurance
Life Insurance
+4
Cybersecurity Specialist
Cybersecurity Specialist

Vensure Employer Solutions • Chandler (AZ)

On-site
USD 85,000 - 120,000
Health Insurance
401(k) matching
Paid Time Off
+4