Information Security Operations Analyst II

INSPYR Solutions

Deerfield Beach (FL)

Hybrid

USD 100,000 - 110,000

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

INSPYR Solutions is seeking an Information Security Operations Analyst II in Deerfield Beach, FL (Hybrid 3/2) for a direct hire role. You will design, build, and scale offensive security capabilities, developing custom tooling and automation, and leading testing across on-prem, cloud, identity, and SaaS environments.

The role emphasizes collaboration with engineering teams, creation of test reports and playbooks, and mentoring junior analysts while advancing the security program architecture.

Qualifications

  • Hands-on experience with penetration testing, red team, purple team, or adversary emulation activities.
  • Strong understanding of Windows, Active Directory, Azure/Entra ID, networking, cloud platforms, and SaaS architectures.
  • Strong scripting and automation skills; ability to customize or build tools to support testing objectives.
  • Ability to translate technical findings into clear risk-based narratives for technical and non-technical audiences.

Responsibilities

  • Conduct offensive security activities including penetration testing, attack simulations, threat-based assessments, and control validation across on-premises, cloud, identity, and SaaS environments.
  • Execute and assist in red team and purple team exercises, collaborating with detection and response teams to validate defensive coverage.
  • Perform vulnerability and exploitation analysis, including chaining weaknesses to demonstrate real-world attack paths and business risk.
  • Identify, validate, and responsibly disclose security weaknesses to stakeholders, providing clear remediation guidance and risk context.
  • Design, develop, and maintain custom offensive security tooling (Python, PowerShell, Bash, or similar), including frameworks, reusable modules, and automation that scale testing beyond point-in-time assessments.
  • Evaluate when to build versus buy offensive security capabilities, with a bias toward internal tooling where it improves flexibility, visibility, or speed of iteration.
  • Incorporate AI-assisted techniques to increase testing efficiency and analyst leverage.
  • Contribute documentation such as test reports, playbooks, findings templates, and executive level summaries.
  • Contribute to the long-term architecture of the offensive security program, including shared libraries, testing pipelines, data models, and reporting outputs.
  • Mentor junior analysts and contribute to team knowledge sharing.
  • Partner with application and platform engineering teams to test systems and co-design secure patterns and reusable testing components.
  • Build developer-consumable assets that enable teams to self-validate security assumptions earlier in the SDLC.
  • Provide developer-friendly remediation guidance and secure coding recommendations aligned to real-world development workflows.
  • Support the integration and tuning of security testing tools within CI/CD pipelines.
  • Collaborate with Security Engineering and Application teams to improve self-service security capabilities, documentation, and testing patterns.
  • Participate in post-testing debriefs with developers to educate, coach, and improve security outcomes.

Skills

Penetration testing
Red team
Purple team
Adversary emulation
Scripting & automation
Clear risk communication
CI/CD security

Tools

Python
PowerShell
Bash
C2 frameworks
Vulnerability scanners
Exploit frameworks

Job description

Title:Information Security Operations Analyst II
Location: DeerfieldBeach, FL (Hybrid 3/2)
Duration: Direct Hire
Compensation: $100,000 - $110,000
Work Requirements: US Citizen, GC Holders or Authorized to Work in the U.S.
Information Security Operations Analyst II
You will beresponsible for designing, building, and scaling offensive security capabilities through adversary focused testing, attack simulation, and the development of custom tooling and automation.

They will support transformation of offensive security program from a predominantly tool and vendor driven model to a build first approach, leveraging software engineering, automation, and AI assisted techniques to improve the coverage, depth, and repeatability of offensive security activities.

  • Conduct offensive security activities including penetration testing, attack simulations, threat based assessments, and control validation across on prem, cloud, identity, and SaaS environments.
  • Execute and assist in the development of red team and purple team exercises, collaborating with detection and response teams to validate defensive coverage.
  • Perform vulnerability and exploitation analysis, including chaining weaknesses to demonstrate real world attack paths and business risk.
  • Identify, validate, and responsibly disclose security weaknesses to stakeholders, providing clear remediation guidance and risk context.
  • Design , develop, and maintain custom offensive security tooling (Python, PowerShell, Bash, or similar), including frameworks, reusable modules, and automation that scale testing beyond point in time assessments.
  • Evaluate when to build versus buy offensive security capabilities, with a bias toward internal tooling where it improves flexibility, visibility, or speed of iteration.
  • Incorporate AI assisted techniques (e.g., automation, chaining analysis, signal prioritization) to increase testing efficiency and analyst leverage.
  • Contribute documentation such as test reports, playbooks, findings templates, and executive level summaries.
  • Contribute to the long term architecture of the offensive security program, including shared libraries, testing pipelines, data models, and reporting outputs optimized for reuse and scale.
  • Mentor junior analysts and contribute to team knowledge sharing.
  • Partner with application and platform engineering teams not only to test systems, but to co design secure patterns, reference implementations, and reusable testing components.
  • Build developer consumable assets (templates, scripts, sample exploits, safe test harnesses) that enable teams to self validate security assumptions earlier in the SDLC.
  • Provide developer friendly remediation guidance, proof of concepts, and secure coding recommendations that are actionable and aligned to real world development workflows.
  • Support the integration and tuning of security testing tools within CI/CD pipelines, balancing detection depth with developer experience and signal quality.
  • Collaborate with Security Engineering and Application teams to improve self service security capabilities, documentation, and testing patterns that developers can reuse.
  • Participate in post testing debriefs with developers to educate, coach, and improve security outcomes—not just report findings .

Qualifications

  • Hands on experience with penetration testing, red team, purple team, or adversary emulation activities.
  • Strong understanding of Windows, Active Directory, Azure/Entra ID, networking, cloud platforms, and SaaS architectures.
  • Experience with common offensive security tools and frameworks (e.g., C2 frameworks, vulnerability scanners, exploit frameworks).
  • Knowledge of MITRE ATT&CK, kill chains, and attacker tradecraft.
  • Experience validating security controls such as EDR, SIEM, identity protections, email security, and cloud security controls.
  • Strong scripting and automation skills; ability to customize or build tools to support testing objectives.
  • Ability to translate technical findings into clear risk based narratives for technical and non technical audiences.
  • Strong analytical, problem solving, and critical thinking skills.
  • Ability to work independently while collaborating effectively in cross functional teams.
  • High attention to detail with a strong sense of ethics and responsible disclosure.
  • Experience working directly with software engineers to remediate vulnerabilities and improve secure development practices.
  • Understanding of modern SDLC and CI/CD pipelines, including how security testing fits into developer workflows.
  • Familiarity with secure coding practices and common vulnerability classes in modern applications (web, APIs, cloud native services).
  • Ability to communicate security findings in a way that developers can quickly understand, prioritize, and fix.
  • Mindset oriented toward enablement over enforcement, with a focus on reducing friction while improving security outcomes.
  • Background in software engineering, platform engineering, or SRE, with a desire to specialize in security.
  • Experience designing or maintaining production quality code, not just scripts.
  • Comfort working with APIs, data pipelines, CI/CD systems, and cloud native services as part of security capability development.
  • Curiosity and practical interest in applying AI/ML assisted techniques to security testing, automation, and analysis.

About INSPYR Solutions
Technology is our focus and quality is our commitment. As a national expert in delivering flexible technology and talent solutions, we strategically align industry and technical expertise with our clients' business objectives and cultural needs. Our solutions are tailored to each client and include a wide variety of professional services, project, and talent solutions. By always striving for excellence and focusing on the human aspect of our business, we work seamlessly with our talent and clients to match the right solutions to the right opportunities. Learn more about us at inspyrsolutions.com.#IND-TELECOM

INSPYR Solutions provides Equal Employment Opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, sex, national origin, age, disability, genetics, or any other protected status. INSPYR Solutions complies with all applicable laws governing nondiscrimination in employment in every location in which the company has facilities. Applicants requiring reasonable accommodation during the application or interview process should contact HR@inspyrsolutions.com for assistance.
Information collected and processed through your application with INSPYR Solutions (including any job applications you choose to submit) is subject to INSPYR Solutions' Privacy Policy and INSPYR Solutions' AI and Automated Employment Decision Tool Policy: https://www.inspyrsolutions.com/policies/. By submitting an application, you are consenting to being contacted by INSPYR Solutions through phone, email, or text.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Information Security Analyst
Senior Information Security Analyst

INSPYR Solutions • Houston (TX)

Hybrid
USD 110,000 - 165,000
Cybersecurity Automation Engineer III
Cybersecurity Automation Engineer III

INSPYR Solutions • Town of Florida (NY)

Hybrid
USD 130,000 - 140,000
Cyber Security Defense (Head of Department)
Cyber Security Defense (Head of Department)

INSPYR Solutions • Irvine (CA)

On-site
USD 190,000 - 230,000
PAM Engineer
PAM Engineer

INSPYR Solutions • Merrifield (VA)

Hybrid
USD 83,000 - 96,000
Comprehensive medical benefits
Competitive pay & 401(k)
Retirement plan
Info Governance and Compliance Analyst( Must have IT Audit experience)
Info Governance and Compliance Analyst( Must have IT Audit experience)

INSPYR Solutions • Deerfield Beach (FL)

Hybrid
USD 69,000 - 83,000
Comprehensive medical benefits
401(k)
Retirement plan
+1
Sr. Engineer
Sr. Engineer

INSPYR Solutions • Fort Worth (TX)

Hybrid
USD 120,000 - 180,000
Comprehensive medical benefits
Competitive pay 401(k)
Retirement plan
+1
Senior Software Engineer
Senior Software Engineer

INSPYR Solutions • Burbank (CA)

On-site
USD 263,246,000 - 272,214,000
IT Operator / Asset Management
IT Operator / Asset Management

INSPYR Solutions • Merrifield (VA)

On-site
USD 52,000
Comprehensive medical benefits
Competitive pay
401(k) retirement plan
Technical Program Product Manager III
Technical Program Product Manager III

INSPYR Solutions • Bellevue (WA)

On-site
USD 114,000 - 140,000
Comprehensive medical benefits
Competitive pay
401(k) Retirement plan
+1
Senior IT Compliance & Audit Analyst
Senior IT Compliance & Audit Analyst

INSPYR Solutions • Fort Worth (TX)

Hybrid
USD 70,000 - 110,000
Comprehensive medical benefits
401(k)
Retirement plan