IT Security Specialist

ibex

Palestine (TX)

On-site

USD 90,000 - 130,000

Full time

7 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

ibex is seeking an experienced IT Security Analyst to join its Security Operations Center. You will monitor security dashboards, review threats and IOCs, coordinate investigations, and support vulnerability management across cloud and on-prem environments.

This role involves incident handling from detection to closure, log analysis, RCAs, and participation in threat hunting using MITRE ATT&CK. You will help tune SIEM use cases, assist in audits, and collaborate with IT teams to improve security

Qualifications

  • Experience in Security Operations Centers (SOC) monitoring and incident handling.
  • Knowledge of vulnerability management and security hardening processes.
  • Experience with cloud security across AWS, Azure, and GCP environments.

Responsibilities

  • Oversee daily monitoring of security dashboards, alerts, and security events.
  • Review threats, risks, and IOCs to guide incident response.
  • Coordinate with IT teams for investigation, containment, and resolution of security issues.
  • Perform log review and analysis to support investigations and operational visibility.
  • Manage security incidents from identification to closure with proper documentation.

Skills

Security monitoring
Incident handling
Vulnerability management
Threat hunting
SIEM
Cloud security
Log analysis
Automation
RCA
Compliance frameworks

Tools

SIEM
EDR
NAC
IDS/IPS
Firewall
VPN
WAF

Job description

To protect organizational systems by monitoring, detecting, investigating, and responding to security threats while supporting compliance and continuous improvement of security operations.

This role is part of the IT Security team and is responsible for supporting day-to-day security operations, monitoring security tools, performing threat analysis, and assisting in the implementation of security controls and compliance requirements.

  • Oversee daily monitoring of security dashboards, alerts, and security events
  • Review and analyze security threats, risks, and indicators of compromise (IOCs)
  • Coordinate with IT teams for investigation, containment, and resolution of security issues
  • Perform log review and analysis to support security investigations and operational visibility
  • Manage security incidents from identification to closure, ensuring proper documentation and tracking
  • Ensure timely categorization, prioritization, and resolution of security tickets in the eService system
  • Review eService security tickets daily to ensure SLA compliance and proper closure quality
  • Ensure validation of incident resolution and completeness of supporting documentation before closure
  • Support vulnerability scanning activities and track remediation with IT teams
  • Follow up on vulnerability closure and ensure timely remediation based on risk severity
  • Identify security gaps and support enforcement of security baselines and configurations
  • Support compliance with ISO 27001, SOC 2, PCI-DSS, and CIS Controls requirements
  • Assist in audit preparation through evidence collection and control validation
  • Conduct weekly review of wireless networks to detect rogue or unauthorized access points
  • Perform periodic review of endpoint security alerts and EDR findings for anomalies
  • Conduct quarterly review of firewall, VPN, and proxy logs for suspicious activities
  • Support monthly privileged access review and identification of inactive accounts
  • Assist in monthly validation of system security configurations against baseline standards
  • Monitor patch compliance and coordinate with system owners for delayed updates
  • Participate in threat hunting activities using MITRE ATT&CK framework
  • Support development, tuning, and maintenance of SIEM use cases, correlation rules, alerts, and detection logic to improve threat detection coverage and accuracy
  • Support integration and operational use of threat intelligence feeds (e.g., IOC enrichment, threat feed correlation) to enhance detection and monitoring capabilities
  • Support security platform operations including SIEM, EDR, email security, and vulnerability management tools to ensure continuous monitoring and availability
  • Monitor and investigate security events across cloud environments (AWS, Azure, GCP) where applicable, in coordination with cloud or infrastructure teams
  • Conduct root cause analysis (RCA) of recurring security incidents and support implementation of corrective and preventive actions to reduce recurrence
  • Identify opportunities for automation and continuous improvement in security operations processes, including detection, response, and reporting workflows
Non-Negotiable
  • Security Monitoring & Incident Handling (Core SOC Operations)
  • Vulnerability Management & Security Hardening Support
  • Supporting automation of incident escalation and RCA of recurring issues
  • Acitvely guide and escalation contact for Level-1 SOC Analysts
Additional Skills
  • Strong understanding of infrastructure security, SOC operations, and compliance frameworks
  • Experience in cloud security across AWS, Azure, and GCP environments
  • Knowledge of SIEM tools, including alert tuning, correlation, and detection rule creation
  • Understanding of threat detection using IDS/IPS, SPAN/TAP feeds, and network monitoring
  • Familiarity with firewalls, WAF, VPN, NAC, DNS security, and endpoint security tools
  • Ability to perform log analysis, event correlation, and security incident investigation
  • Knowledge of vulnerability assessment and remediation tracking processes
  • Understanding of MITRE ATT&CK framework and threat hunting concepts
  • Ability to review security configurations and ensure compliance with security baselines
  • Experience supporting incident response, escalation, and coordination with IT teams
  • Knowledge of PCI-DSS, SOC 2, ISO 27001, and CIS Controls compliance requirements
  • Ability to support security monitoring, alert triage, and continuous improvement of SOC processes
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information Security Analyst
Information Security Analyst

Cisive • Maryland

Hybrid
USD 80,000 - 110,000
Information Security Operations Engineer
Information Security Operations Engineer

PRA Group (Nasdaq: PRAA) • Charlotte (NC)

Hybrid
USD 80,000 - 120,000
Information Security Operations Engineer
Information Security Operations Engineer

PRA Group (Nasdaq: PRAA) • Virginia (MN)

Hybrid
USD 90,000 - 150,000
Senior Detection & Response Analyst
Senior Detection & Response Analyst

Remote Jobs • United States

On-site
USD 110,000 - 190,000
Senior Cybersecurity Ops Analyst
Senior Cybersecurity Ops Analyst

Jobtailor • Santa Ana (CA)

On-site
USD 75,000 - 120,000
Senior Security Analyst – Security Operations Center
Senior Security Analyst – Security Operations Center

Jobtailor • Town of Florida (NY)

On-site
USD 120,000 - 180,000
Security Analyst: IT & OT Threat Hunter
Security Analyst: IT & OT Threat Hunter

Southern Star Central Gas Pipeline • Owensboro (KY)

On-site
USD 60,000 - 90,000
Medical
Vision
Supplemental Life Insurance
+9
Sr. SOC Analyst
Sr. SOC Analyst

HW3 • Village of Great Neck (NY)

On-site
USD 130,000 - 170,000
Cybersecurity Operations Specialist
Cybersecurity Operations Specialist

Jobtailor • Los Angeles (CA)

On-site
USD 90,000 - 140,000
Security Analyst
Security Analyst

The Phoenix Group • New York (NY)

On-site
USD 65,000 - 95,000