Cybersecurity Threat Analyst I

Jobtailor

Sioux Falls (SD)

On-site

USD 45,000 - 65,000

Full time

6 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Jobtailor is seeking an entry-level cybersecurity analyst to monitor alerts, triage events, and support incident response in Sioux Falls, SD. You will review logs, escalate findings, and assist with vulnerability management and change workflows.

The role emphasizes collaboration, documentation, and adherence to procedures, with opportunities to work with SIEM, EDR/XDR, and SOAR tools while growing scripting and AI-related skills.

Qualifications

  • Associate or bachelor’s degree in cybersecurity, IT, CS, or related field, or equivalent
  • Internships, labs, help desk, sysadmin, network support, or security operations experience may qualify
  • Foundational understanding of cybersecurity principles, threats, TCP/IP, and Windows/Linux/macOS
  • Basic familiarity with security logs, monitoring tools, vulnerability management concepts, and ticketing workflows
  • Ability to follow documented procedures, maintain records, escalate as needed
  • Basic scripting, command-line, or query skills, willingness to learn Python/PowerShell/SQL
  • Familiarity with generative AI and ML concepts used in cybersecurity
  • Strong written and verbal communication; able to work collaboratively
  • Coursework, internships, labs, or hands-on experience in security operations or incident response preferred
  • Familiarity with SIEM, EDR/XDR, SOAR, threat intel, vulnerability scanning, or ticketing platforms preferred
  • Basic knowledge of network traffic, firewalls, IDS/IPS, cloud services, databases, or data visualization tools preferred
  • Entry-level certification such as CompTIA Security+, Network+, CySA+, or Microsoft SC-900, or willingness to pursue one
  • Basic experience with scripting, APIs, or low-code automation preferred
  • Familiarity with approved AI-assisted workflows for security research and analysis preferred
  • Awareness of AI-specific security risks and safeguards preferred

Responsibilities

  • Monitor security alerts and perform initial triage
  • Review logs (firewall, email, web, DNS, endpoint) for indicators of compromise
  • Create and update tickets and escalate according to severity
  • Support incident response with evidence collection and containment tracking
  • Review threat intel alerts for relevance and eskalate significant findings
  • Run approved vulnerability scans and review results
  • Collect and review asset configurations for investigations
  • Operate security monitoring tools and perform routine tuning
  • Participate in change management and security procedures
  • Communicate findings to cybersecurity team, partners, and vendors
  • Assist with security product evaluations and improvements
  • Support security metrics, trend reporting, and awareness activities
  • Use AI-assisted capabilities to enrich alerts and summarize evidence
  • Draft queries, notes, reports, scripts, and stakeholder communications
  • Validate AI-generated content against authoritative sources and adhere to d/a/a requirements
  • Maintain awareness of emerging threats including AI-enabled phishing and misuse
  • Perform other duties as assigned

Skills

Cybersecurity principles
Incident response
Vulnerability management
Security monitoring tools
Basic scripting
Python
PowerShell
TCP/IP networking
Windows OS
Linux OS
macOS
Clear communication

Education

Associate or bachelor’s degree in cybersecurity/IT/CS

Tools

SIEM
EDR/XDR
SOAR
Threat Intelligence
Ticketing Platforms

Job description

  • Monitor security alerts from approved tools and perform initial triage using documented procedures and playbooks
  • Review firewall, email, web, DNS, endpoint, and other logs to gather evidence and identify suspicious activity indicators
  • Create and update tickets, document actions taken, and eskalate incidents according to severity and escalation criteria
  • Support incident response under guidance, including evidence collection, basic scoping, containment tracking, and follow-up documentation
  • Review threat intelligence alerts and indicators of compromise for relevance and eskalate significant findings
  • Run approved vulnerability scans and review results for potential issues, duplicates, and items requiring validation
  • Collect and review asset information, configurations, and running processes for investigations and vulnerability management
  • Operate security monitoring tools and perform routine configuration or tuning tasks under guidance
  • Participate in change management and follow security operations procedures
  • Communicate technical findings to cybersecurity team members, internal partners, and vendors
  • Assist with security product evaluations and recommend improvements based on documented requirements
  • Support security metrics, trend reporting, and security awareness activities
  • Use approved AI-assisted capabilities to enrich alerts, correlate indicators, summarize evidence, and support investigations
  • Use approved AI assistance to draft queries, investigation notes, reports, scripts, and stakeholder communications
  • Validate AI-generated content against authoritative sources and follow approved-use, data-handling, human-review, documentation, and auditability requirements
  • Maintain awareness of emerging threats, including AI-enabled phishing, social engineering, and enterprise AI misuse, and eskalate relevant findings
  • Perform other duties as assigned
Requirements
  • Associate or bachelor’s degree in cybersecurity, information technology, computer science, or a related field, or an equivalent combination of education, training, and experience
  • Internships, academic labs, help desk, system administration, network support, or security operations experience may qualify as relevant experience
  • Foundational understanding of cybersecurity principles, common threats, TCP/IP networking, and Windows, Linux, or macOS operating systems
  • Basic familiarity with security logs, monitoring tools, vulnerability management concepts, and ticketing workflows
  • Ability to follow documented procedures, maintain accurate records, recognize when additional assistance is needed, and eskalate promptly
  • Basic scripting, command-line, or query skills, or demonstrated willingness to learn Python, PowerShell, or SQL
  • Familiarity with generative AI and machine learning concepts used in cybersecurity, including capabilities, limitations, privacy risks, and human validation
  • Clear written and verbal communication, sound organization, and ability to work collaboratively
  • Coursework, internship, lab environment, or hands‑on experience related to security operations, threat analysis, incident response, or vulnerability management preferred
  • Familiarity with SIEM, EDR/XDR, SOAR, threat intelligence, vulnerability scanning, or ticketing platforms preferred
  • Basic knowledge of network traffic, firewalls, intrusion detection or prevention, packet analysis, cloud services, databases, or data visualization tools preferred
  • Entry‑level certification such as CompTIA Security+, Network+, CySA+, Microsoft SC-900, or comparable vendor credential, or willingness to pursue one preferred
  • Basic experience with scripting, APIs, or low-code automation preferred
  • Familiarity with approved AI‑assisted workflows for security research, documentation, query development, or analysis preferred
  • Awareness of AI‑specific security risks and safeguards, including prompt injection, sensitive‑data leakage, malicious automation, and AI‑generated social engineering preferred
Core Competencies

Demonstrates foundational understanding of cybersecurity principles, incident response, and vulnerability management, with proficiency in security monitoring tools and basic scripting skills. Capable of effective communication and collaboration within a cybersecurity team while adhering to documented procedures and escalation protocols.

Highest-signal resume keywords
  • Cybersecurity Principles
  • Incident Response
  • Vulnerability Management
  • Security Monitoring Tools
  • Basic Scripting Skills
Hard Skills
  • TCP/IP Networking
  • Windows Operating System
  • Linux Operating System
  • MacOS Operating System
  • Security Logs
  • Vulnerability Scanning
  • Ticketing Workflows
  • Basic Scripting
  • Python
  • PowerShell
Soft Skills
  • Clear Communication
  • Sound Organization
  • Collaborative Work
Certifications & Qualifications
  • CompTIA Security+
  • Network+
  • CySA+
  • Microsoft SC-900
Industry Keywords
  • Incident Response
  • Threat Analysis
  • Vulnerability Management
  • Security Operations
  • AI‑Assisted Workflows
Tools & Technologies
  • SIEM
  • EDR/XDR
  • SOAR
  • Threat Intelligence
  • Ticketing Platforms
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Information Technology Security Analyst
Senior Information Technology Security Analyst

Jobtailor • Philadelphia

On-site
USD 110,000 - 160,000
IT Security Analyst
IT Security Analyst

Fortegra • Jacksonville (FL)

On-site
USD 85,000 - 120,000
Engineer, Cyber Security II
Engineer, Cyber Security II

TALENT Software Services • Columbia (SC)

On-site
USD 120,000 - 160,000
Cyber Capabilities Developer
Cyber Capabilities Developer

Jobtailor • Chantilly (VA)

On-site
USD 120,000 - 180,000
Security Engineer
Security Engineer

CRICO • Boston (MA)

On-site
USD 90,000 - 130,000
Senior Manager, IT Security Operations
Senior Manager, IT Security Operations

Jobtailor • Washington

On-site
USD 140,000 - 180,000
Staff Threat Hunting, Intelligence Engineer
Staff Threat Hunting, Intelligence Engineer

Jobtailor • California (MO)

On-site
USD 150,000 - 210,000
Security Operations Center (SOC) Tier 3 Analyst / Incident Responder
Security Operations Center (SOC) Tier 3 Analyst / Incident Responder

OneMain Financial • Washington

On-site
USD 140,000 - 190,000
Security Analyst - Tier 3
Security Analyst - Tier 3

7AI • Washington

On-site
USD 110,000 - 140,000
Analyst, Security
Analyst, Security

Southern Star Central Gas Pipeline • Owensboro (KY)

On-site
USD 70,000 - 110,000
Medical
Vision
Dental
+7