Turn this role into an interview — a resume and cover letter built around what this employer wants.
KPG99 INC is seeking a Network Security Analyst to perform advanced cybersecurity analysis and threat triage within its Cybersecurity Operations Center (CSOC). You will monitor, triage, analyze, and prioritize alerts, collaborate with Incident Response, Threat Hunting, or SOC Engineering teams, and act as the primary contact for security event analysis.
The role requires the ability to work in a 24x7 environment and may include after-hours support during high-priority incidents.
HHSC is seeking a Network Security Analyst to perform advanced cybersecurity analysis and threat triage within its Cybersecurity Operations Center (CSOC). The position will continuously monitor, triage, analyze, and prioritize cybersecurity alerts; investigate suspicious activity; identify potential threats; and coordinate incident response activities to protect agency systems, networks, and data. The analyst will serve as a primary point of contact for security event analysis, threat identification, and incident escalation.
The analyst will monitor and analyze alerts generated by SIEM, EDR/XDR, cloud security, email security, identity protection, and network security platforms. Responsibilities include conducting initial investigations to determine severity, scope, impact, and risk; validating and prioritizing potential incidents; and escalating confirmed threats to Incident Response, Threat Hunting, or SOC Engineering teams. The analyst will correlate events across endpoints, firewalls, IDS/IPS, cloud services, authentication systems, and threat intelligence feeds and will analyze indicators of compromise (IOCs), suspicious network activity, phishing emails, malware detections, and anomalous user behavior.
The analyst must be able to work independently and as part of a 24x7 cybersecurity operations team. Normal business hours are Monday through Friday, 8:00 AM to 5:00 PM, but support outside normal hours, including evenings, weekends, and holidays, may be required during high-priority security incidents.
A four-year degree in cybersecurity, information security, computer science, computer information systems, management information systems, or a related field is preferred, although relevant education and experience may substitute for one another. Preferred certifications include CompTIA Security+, GIAC Certified Incident Handler (GCIH), GIAC Certified Intrusion Analyst (GCIA), Certified SOC Analyst (CSA), Microsoft Cybersecurity Analyst (SC-200), or other GIAC/SOC-related certifications.
Please See Job Description Section for more specific Preferred and Required Skills.