Security Analyst I

ABC Legal Services

Seattle (WA)

Hybrid

USD 90,000 - 105,000

Full time

7 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Health insurance
Dental insurance
Vision insurance
401(k) with company matching
Paid time off
7 Holidays
Floating holidays
Life Insurance

Job summary

ABC Legal Services is seeking a Security Analyst I to join its IT team in Seattle. You will handle day-to-day security operations, triage detections in CrowdStrike Falcon, review Entra ID logs, and remediate vulnerabilities.

You will work closely with the System Administrator team on policies and device compliance. The role is an early career position offering exposure to the full security stack, including phishing simulations, audits, and documentation in Confluence/Jira.

Qualifications

  • 2+ years in IT including at least 1 year of hands-on security work
  • Direct experience with an EDR platform (CrowdStrike Falcon preferred)
  • Practical experience triaging security alerts and investigating to conclusion
  • Working familiarity with Microsoft 365 and Entra ID administration
  • Careful, methodical habits; security work rewards those who check twice
  • Clear writing and ability to explain risk to non-IT colleagues

Responsibilities

  • Security operations as core work: triage detections, analyst escalation
  • Work in Falcon console: detections, host containment, policy health, tuning
  • Review Entra ID sign-ins and audit logs for suspicious activity
  • Investigate phishing reports and take action on malicious mail
  • Manage vulnerability queue: track findings and remediation progress
  • Run recurring access reviews across Entra ID, flag issues
  • Partner with System Admin team on CA and MFA policy
  • Monitor device compliance and encryption in Intune (Windows) and Iru (macOS)
  • Help remediate configuration and patch drift across fleet
  • Collect evidence for audits and client security requirements
  • Document procedures in Confluence; track work in Jira
  • Support user security: phishing simulations and awareness training

Skills

EDR experience
Microsoft 365 Entra ID
Security alert triage
Phishing analysis
Vulnerability remediation
Clear writing

Tools

CrowdStrike Falcon
Defender for Endpoint
SentinelOne
PowerShell
Intune
Confluence/Jira

Job description

About ABC Legal Services

ABC Legal Services is proud to be the national leader in service of process. We are a team of 1000 and growing with offices in Los Angeles, Oklahoma City, Phoenix, Brooklyn, Chicago, Washington DC, and more. Seattle is our home and headquarters. We’ve been successful in this unique business for over 30 years and we continue to advance our technology and business processes to remain years ahead of what our competition is able to offer. Our focus is to expand our technology lead, acquire and integrate less efficient competitors, and tap into new segments through an integrated inbound marketing and sales approach.



Job Overview

ABC Legal Services is adding a Security Analyst I to its IT team. This is an early career role for someone who already has security work under their belt and wants to own more of it.


You will work directly with the IT Manager and the System Administrator team on the day to day security operations that keep the company safe: alert triage, access reviews, endpoint compliance, vulnerability remediation, and audit evidence. You will not be expected to arrive knowing our environment. You will be expected to already know how to work an alert.


We are a small team, so you will see the whole picture rather than one narrow slice of it.



What you’ll do


  • Security operations (your core work)

  • Triage detections in CrowdStrike Falcon, escalating what needs a second set of eyes

  • Work in the Falcon console daily: detections, host containment, policy and sensor health, and detection tuning as you ramp

  • Review Entra ID sign in and audit logs for suspicious authentication activity

  • Investigate user reported phishing and take action on malicious mail

  • Work the vulnerability queue: track findings, chase remediation, report on progress

  • Run recurring access reviews across Microsoft Entra ID and flag anything that looks wrong

  • Identity and endpoint support

  • Partner with the System Administrator team on Conditional Access and MFA policy

  • Monitor device compliance and encryption status in Intune (Windows) and Iru (macOS)

  • Help remediate configuration and patch drift across the fleet

  • Compliance and documentation

  • Collect and organize evidence for audits and client security requirements

  • Help complete security questionnaires

  • Document procedures in Confluence and track your work in Jira

  • User security

  • Help run phishing simulations and security awareness training

  • Be an approachable point of contact when someone is not sure whether something is safe



What you bring


  • 2 or more years in IT, including at least 1 year of hands on security work. That security year can be a dedicated security role or security responsibilities carried inside a broader IT job

  • Direct experience with an EDR platform. CrowdStrike Falcon preferred, and experience with Defender for Endpoint, SentinelOne, or similar transfers

  • Practical experience triaging security alerts and working an investigation to a conclusion

  • Working familiarity with Microsoft 365 and Entra ID administration

  • Careful, methodical habits. Security work rewards people who check twice

  • Clear writing, and the patience to explain a risk to someone who does not work in IT



Nice to have


  • CompTIA Security+, SC-200, AZ-500, or a CrowdStrike certification, or active progress toward one

  • Any PowerShell scripting

  • macOS management exposure (Iru, Kandji, or Jamf)

  • Familiarity with SOC 2, NIST CSF, or CIS Controls

  • Experience in legal, financial, or another regulated industry



Benefits


  • Health, Dental, Vision insurance

  • 401(k) with company matching

  • Paid time off

  • 7 Paid company holidays

  • 4 Floating holidays per-year

  • Life Insurance and AD&D Insurance

  • Long Term Disability

  • Health Care Reimbursement Flexible Spending Account

  • Dependent Care Flexible Spending Account

  • EAP (Employee Assistance Program)

  • Pet Insurance



We know that a company's success starts with its employees. We also know that an individual's success starts with the right career opportunity.Join our team today!



Schedule: Full-Time Hybrid Schedule -Monday through Friday 8am-5pm PST.
Location: Seattle, WA
Salary Range: $90,000-$105,000 depending on experience

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Associate Security Engineer (Remote)
Associate Security Engineer (Remote)

CrowdStrike • Town of Texas (WI)

On-site
USD 70,000 - 95,000
Market-leading compensation
Comprehensive wellness programs
Paid time off and holidays
Security Analyst
Security Analyst

QuEra Computing Inc. • Boston (MA)

On-site
USD 175,000 - 200,000
Senior Security Engineer
Senior Security Engineer

Ascend Learning • Leawood (KS), Northern (KY)

On-site
USD 104,000 - 149,000
Health insurance
401(k) with company match
Paid time off
+3
Security Operations Engineer
Security Operations Engineer

Reserv • Atlanta (GA)

Hybrid
USD 80,000 - 100,000
Generous health-insurance package
401(k) retirement plan with employer matching
Competitive PTO policy
+1
Analyst I, Falcon Complete GovCloud (Hybrid, St Louis)
Analyst I, Falcon Complete GovCloud (Hybrid, St Louis)

CrowdStrike • United States

On-site
USD 85,000 - 120,000
Equity awards
Wellness programs
Vacation & holidays
+5
Analyst I, Falcon Complete GovCloud (Hybrid, St Louis)
Analyst I, Falcon Complete GovCloud (Hybrid, St Louis)

CrowdStrike • St. Louis (MO)

On-site
USD 85,000 - 120,000
Equity awards
Wellness programs
Vacation and holidays
+4
Analyst I, Falcon Complete GovCloud (Hybrid, St Louis)
Analyst I, Falcon Complete GovCloud (Hybrid, St Louis)

Socket.dev • St. Louis (MO)

On-site
USD 85,000 - 120,000
Compensation & equity
Wellness programs
Vacation & holidays
+5
Product Security Engineer, Vulnerability Intelligence
Product Security Engineer, Vulnerability Intelligence

CrowdStrike • South Dakota

On-site
USD 120,000 - 180,000
Market-leading compensation
Wellness programs
Generous vacation and holidays
+2
Product Security Engineer, Vulnerability Intelligence
Product Security Engineer, Vulnerability Intelligence

CrowdStrike • New Mexico

On-site
USD 120,000 - 180,000
Market leading compensation
Analyst I, Falcon Complete GovCloud (Hybrid, St Louis)
Analyst I, Falcon Complete GovCloud (Hybrid, St Louis)

CrowdStrike, Inc. • Sunnyvale (CA)

On-site
USD 85,000 - 120,000
Equity awards
Wellness programs
Vacation and holidays
+3