Network Security Analyst 2

Akaasa Technologies

United States

On-site

USD 120,000 - 160,000

Full time

14 days+
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Texas Health and Human Services Commission (HHSC) is seeking an experienced Network Security Analyst 2 to help monitor, detect, investigate, and respond to security events across network, endpoint, cloud, and enterprise environments in an onsite Austin context. The ideal candidate will have hands-on experience with SIEM, SOAR, EDR, XDR, NDR, and security analytics, along with Microsoft Sentinel.

They will develop detections, perform threat hunting, and collaborate with multiple teams to reduce

Qualifications

  • Minimum 10 years of experience in cybersecurity or related security operations.
  • Hands-on with SIEM, SOAR, EDR, XDR and NDR technologies.
  • Strong knowledge of Microsoft Sentinel and security analytics.
  • Experience with KQL/SPL and security event investigations.

Responsibilities

  • Monitor security alerts, events, logs, and threat intel across environments.
  • Investigate anomalous activity, correlate detections, and document incidents.
  • Develop, tune, and maintain detections, dashboards, and playbooks.
  • Participate in incident response, containment, and post-incident reviews.
  • Collaborate with network, cloud, endpoint, and applications teams to mitigate risks.

Skills

Threat hunting
Incident response
Security analytics
Threat detection
Network security
Documentation

Education

Bachelor's degree in cybersecurity / computer science / information systems / information technology

Tools

SIEM
SOAR
EDR
XDR
NDR
Microsoft Sentinel
KQL
SPL

Job description

Title: Network Security Analyst 2

Location: Onsite in Austin, TX Local Texas Candidates Only
Duration: Long Term

MOI: Skype

Need LinkedIn and State Exp

Position Overview

Texas Health and Human Services Commission (HHSC) is seeking an experienced Network Security Analyst 2 to support enterprise cybersecurity and network security operations.

The successful candidate will be responsible for monitoring, detecting, investigating, and responding to security events across network, endpoint, cloud, and enterprise environments. The role requires hands‑on experience with SIEM, SOAR, EDR, XDR, NDR, threat detection, incident response, and security analytics.

The candidate should be capable of independently analyzing complex security events, identifying threats and vulnerabilities, supporting incident response, and developing or tuning security detections and monitoring capabilities.

Key Responsibilities
  • Monitor security alerts, network events, endpoint telemetry, security logs, and threat intelligence feeds.
  • Investigate suspicious activity, anomalous network behavior, malware indicators, endpoint detections, and SIEM correlation events.
  • Perform incident triage, investigation, escalation, containment coordination, and incident documentation.
  • Develop, tune, and maintain security detection rules, dashboards, alerts, queries, and automated playbooks.
  • Support threat-hunting activities using KQL, SPL, packet/session analysis, endpoint telemetry, and other investigative techniques.
  • Analyze network traffic and security events to identify potential threats and indicators of compromise.
  • Support vulnerability, risk, and security control assessments.
  • Document investigation findings, incident reports, corrective actions, and security recommendations.
  • Collaborate with network, infrastructure, cloud, endpoint, and application teams to investigate and mitigate security risks.
  • Monitor emerging cyber threats, attacker techniques, indicators of compromise, and security best practices.
  • Support security audits, compliance activities, reporting, and evidence collection.
  • Participate in incident response, escalation, and after-action reviews when required.
Required Qualifications
  • Minimum 10 years of experience in cybersecurity, network security, security operations, incident response, or a closely related information security field.
  • Strong knowledge of SIEM, SOAR, EDR, XDR, and NDR technologies.
  • Hands‑on experience with Microsoft Sentinel, including:
    • Incident management
    • Analytics rules
    • Workbooks
    • Automation
    • Data connectors
    • Kusto Query Language (KQL)
  • Experience with SIEM platforms for:
    • Log analysis
    • Alert investigation
    • Dashboarding
    • Correlation searches
    • Security monitoring
  • Experience with NDR technologies for network traffic analysis, packet/session investigation, threat detection, and incident response.
  • Experience with EDR platforms, including endpoint alert triage, device investigation, advanced hunting, and response actions.
  • Strong understanding of:
    • Firewalls
    • IDS/IPS
    • Proxy logs
    • DNS
    • VPN
    • TCP/IP
    • Network segmentation
    • Secure network architecture
  • Ability to correlate security data from multiple sources and determine scope, impact, and appropriate response.
  • Knowledge of security frameworks and regulatory requirements, including NIST, CIS Controls, HIPAA, and Texas state information security requirements.
  • Strong analytical, problem-solving, communication, and documentation skills.
Required Technical Experience

Candidates must demonstrate approximately 7 years of experience with:

  • SIEM / SOAR / EDR / XDR / NDR
  • Security log collection and management
  • Threat intelligence concepts
  • KQL, SPL, and security queries
  • SIEM platform and architecture support
  • Detection engineering methodologies and implementation

Approximately 10 years of experience in the above areas.

Education & Certifications
Education
  • Bachelor's degree in:
    • Cybersecurity
    • Computer Science
    • Information Systems
    • Information Technology
    • Or a related field

Relevant experience may be considered in lieu of education where applicable.

Certifications

Microsoft security certifications are strongly preferred, including:

  • Microsoft Certified: Security Operations Analyst Associate
  • Microsoft Certified: Cybersecurity Architect Expert
  • Microsoft Certified: Azure Security Engineer Associate
  • Microsoft 365 Defender-related certifications

Additional desirable certifications include:

  • CompTIA Security+
  • CompTIA CySA+
  • GIAC certifications
  • CISSP
  • CISM
  • CISA
  • Splunk Core Certified Power User
  • Splunk Enterprise Security Certified Admin
  • SentinelOne certifications
Ideal Candidate Profile

The ideal candidate is a hands‑on cybersecurity professional who can:

  • Investigate complex security incidents independently.
  • Work extensively with Microsoft Sentinel and KQL.
  • Perform SIEM-based security monitoring and detection engineering.
  • Analyze network and endpoint threats using NDR and EDR technologies.
  • Conduct threat hunting and identify indicators of compromise.
  • Correlate network, endpoint, cloud, identity, and security-log data.
  • Communicate technical findings clearly to both technical and non-technical stakeholders.
  • Work effectively in a fast‑paced security operations environment.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Network Security Analyst 2 (Onsite)
Network Security Analyst 2 (Onsite)

Serigor Inc. • Austin (TX)

On-site
USD 90,000 - 130,000
Network Security Analyst II
Network Security Analyst II

Nexiva Inc • Austin (TX)

On-site
USD 110,000 - 150,000
Network Security Analyst 2
Network Security Analyst 2

Digerati Systems Inc. • Austin (TX)

On-site
USD 110,000 - 165,000
Network Security Analyst II
Network Security Analyst II

Radiant Digital Solutions Inc • Town of Texas (WI)

Hybrid
USD 90,000 - 140,000
Network Security Analyst
Network Security Analyst

InnoSoul, Inc. • Austin (TX)

On-site
USD 95,000 - 130,000
Network Security Analyst 2
Network Security Analyst 2

Intone Networks Inc • Town of Texas (WI)

On-site
USD 90,000 - 130,000
Network Security Analyst
Network Security Analyst

Intone Networks Inc • Town of Texas (WI)

On-site
USD 85,000 - 125,000
Network Security Analyst
Network Security Analyst

Akaasa Technologies • Austin (TX)

On-site
USD 95,000 - 125,000
Network Security Analyst 2
Network Security Analyst 2

Ampcus, Inc • Austin (TX)

On-site
USD 90,000 - 130,000
Network Security
Network Security

Akaasa Technologies • Austin (TX)

On-site
USD 90,000 - 140,000