Network Security Analyst

Smart Tech Skills LLC

Austin (TX)

On-site

USD 70,000 - 110,000

Full time

4 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

Competitive salary

Job summary

Smart Tech Skills LLC in Austin, TX is seeking a Network Security Analyst to monitor, triage, and respond to security alerts in a 24x7 CSOC environment. You will investigate incidents, coordinate containment, and document actions in case management tools.

The ideal candidate has 3+ years in cybersecurity operations, strong knowledge of SIEM, EDR, and cloud security, and the ability to work with cross-functional teams to reduce risk and improve detection capabilities.

Qualifications

  • 3+ years in cybersecurity operations or related fields.
  • Experience triaging security alerts and analyzing events.
  • Experience documenting incident investigations.
  • Experience with frameworks, incident response processes, and threat detection.
  • Experience with SIEM platforms (e.g., Microsoft Sentinel, Splunk, QRadar, ArcSight, LogRhythm, NetWitness).
  • Experience with Endpoint Detection and Response tools (e.g., Defender for Endpoint, CrowdStrike, SentinelOne).
  • Experience with IDS/IPS, threat intel, vulnerability tools, cloud security or SASE.
  • Knowledge of CSOC/SOC operations and escalation procedures.
  • Knowledge of threats, malware, phishing, and APTs.
  • Knowledge of Windows, Linux, networking, AD, Entra ID, cloud environments, and controls.
  • Knowledge of NIST CSF and PICERL; incident response lifecycle.
  • Ability to analyze complex events and work in 24x7 teams.
  • Ability to work independently.

Responsibilities

  • Monitor, analyze, and triage cybersecurity alerts from SIEM, EDR, cloud, email, identity, and network platforms.
  • Investigate detected events to determine severity, scope, and risk.
  • Identify, validate, and escalate potential incidents per procedures.
  • Correlate events from endpoints, firewalls, IDS/IPS, cloud, authentication, and threat feeds.
  • Review IOCS, suspicious activity, phishing, malware, and anomalous user behavior.
  • Coordinate containment, eradication, and recovery with technical teams.
  • Document investigations and actions in ticketing systems; report findings as needed.
  • Support threat detection improvements through tuning and playbooks.

Skills

Security monitoring
Incident response
Threat detection
Documentation
Communication
Collaboration
Risk-based decision making

Education

Bachelor's degree in cybersecurity
Certifications: Security+, GCIH, GCIA, CSA, SC-200

Tools

Microsoft Sentinel
Splunk
QRadar
ArcSight
LogRhythm
NetWitness
Microsoft Defender for Endpoint
CrowdStrike
SentinelOne

Job description

Benefits:
  • Competitive salary
Location

Onsite in Austin, TX.

Experience Level

Entry–Mid Level (3–5+ years of experience).

Role Overview

We are seeking a Network Security Analyst to perform cybersecurity analysis and threat triage within a Cybersecurity Operations Center (CSOC). This role involves continuously monitoring, investigating, and prioritizing security alerts, identifying potential threats, and coordinating incident response activities to protect information systems, networks, and data. The analyst serves as a key point of contact for security event analysis, threat identification, and incident escalation within a 24x7 operations environment.

Key Responsibilities
Security Monitoring & Alert Triage
  • Monitor, analyze, and triage cybersecurity alerts generated by SIEM, EDR, cloud security, email security, identity protection, and network security platforms.
  • Conduct initial investigations of detected and reported security events to determine severity, scope, impact, and potential risk.
  • Identify, validate, and prioritize potential cybersecurity incidents, escalating confirmed threats according to established procedures.
  • Correlate security events from multiple data sources, including endpoints, firewalls, IDS/IPS, cloud services, authentication systems, and threat intelligence feeds.
Threat Investigation & Incident Response
  • Review and analyze indicators of compromise (IOCs), suspicious network activity, phishing emails, malware detections, and anomalous user behavior.
  • Assist with incident containment, eradication, and recovery efforts by coordinating with technical teams and stakeholders.
  • Report and elevate findings to CSOC/SOC leadership as needed.
  • Perform vulnerability assessment reviews and evaluate identified vulnerabilities for risk and remediation prioritization.
Documentation & Process Improvement
  • Document investigations, findings, and response actions in ticketing and case management systems to ensure accurate tracking and reporting.
  • Support continuous improvement of threat detection capabilities through alert tuning, process refinement, and identification of false-positive trends.
  • Support development and maintenance of operational procedures, playbooks, workflows, and knowledge base articles.
Threat Research & Collaboration
  • Research emerging cyber threats, attack techniques, tactics, and procedures (TTPs) to improve detection and response effectiveness.
  • Collaborate with security engineers, incident responders, system administrators, and business stakeholders.
  • Communicate technical findings clearly to both technical and non-technical audiences.
Required Qualifications
  • 3+ years of experience in cybersecurity operations, security monitoring, incident response, threat detection, or security investigations.
  • Experience triaging security alerts and analyzing security events.
  • Experience documenting incident investigations.
  • Experience with cybersecurity frameworks, incident response processes, and threat detection methodologies.
  • Experience with one or more SIEM platforms (e.g., Microsoft Sentinel, Splunk, QRadar, ArcSight, LogRhythm, NetWitness).
  • Experience with Endpoint Detection and Response tools (e.g., Microsoft Defender for Endpoint, CrowdStrike, SentinelOne).
  • Experience with IDS/IPS technologies, threat intelligence platforms, vulnerability management tools, email security platforms, cloud security monitoring, or SASE solutions.
  • Knowledge of CSOC/SOC operations, security incident triage, and escalation procedures.
  • Knowledge of common cyber threats, attack vectors, malware, phishing, and advanced persistent threats (APTs).
  • Knowledge of Windows, Linux, networking protocols, Active Directory, Microsoft Entra ID, cloud environments, and enterprise security controls.
  • Knowledge of incident response lifecycle and frameworks such as NIST Cybersecurity Framework and PICERL.
  • Ability to analyze complex security events and distinguish legitimate threats from false positives.
  • Ability to work independently and as part of a 24x7 cybersecurity operations team.
Preferred Qualifications
  • Bachelor's degree in cybersecurity, information security, computer science, or a related field (relevant experience may substitute).
  • One or more relevant certifications, such as CompTIA Security+, GIAC Certified Incident Handler (GCIH), GIAC Certified Intrusion Analyst (GCIA), Certified SOC Analyst (CSA), or Microsoft Cybersecurity Analyst (SC-200).
  • Experience with query languages such as KQL, Lucene, SPL, or ESQL.
  • Experience with scripting languages such as PowerShell, Python, or Bash.
  • 5+ years of experience across the required technical areas listed above.
Core Skills & Attributes
  • Strong analytical and investigative mindset with sound risk-based decision-making.
  • Ability to prioritize and manage multiple investigations in a fast-paced operational environment.
  • Clear written and verbal communication skills across technical and non-technical audiences.
  • Collaborative team player comfortable working within a 24x7 operations model.
  • Detail-oriented with strong documentation discipline.
  • Adaptable and able to support incident response outside normal business hours when needed.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Network Security Analyst – Level 1
Network Security Analyst – Level 1

Jobtailor • Austin (TX)

On-site
USD 95,000 - 130,000
Network Security Analyst
Network Security Analyst

ArnAmy, Inc. • Austin (TX)

On-site
USD 85,000 - 120,000
Network Security Analyst
Network Security Analyst

Allied Consultants, Inc. • Austin (TX)

On-site
USD 90,000 - 130,000
Medical insurance
Life insurance
401(K) plan with company match
+2
Network Security Analyst
Network Security Analyst

Radiant Digital Solutions LLC • Town of Texas (WI)

On-site
USD 85,000 - 110,000
Network Security Analyst 1769
Network Security Analyst 1769

Sistema Technologies Inc. • Austin (TX)

On-site
USD 120,000 - 180,000
Network Security Analyst 2
Network Security Analyst 2

Ampcus, Inc • Austin (TX)

On-site
USD 90,000 - 130,000
Senior SOC Analyst
Senior SOC Analyst

Allied Consultants, Inc. • Austin (TX)

On-site
USD 90,000 - 130,000
Medical insurance
Life insurance
401K match
+1
Senior Cybersecurity Analyst – Network Security #3369
Senior Cybersecurity Analyst – Network Security #3369

Genius Road, LLC • Austin (TX)

On-site
USD 120,000 - 180,000
Senior Security Analyst
Senior Security Analyst

Yardi • Santa Barbara (CA)

On-site
USD 97,000 - 110,000
Sr. Analyst - Security Operations
Sr. Analyst - Security Operations

Solomon Page • Village of Great Neck (NY)

On-site
USD 120,000 - 140,000