Security Analyst II

Gilder Search Group

Cleveland (OH)

On-site

USD 70,000 - 100,000

Full time

2 days ago
Be an early applicant
Application generator

Get a reply from this recruiter — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Gilder Search Group seeks an experienced Security Analyst II to investigate and respond to security events across email, identity, endpoint, and network systems. This role reports to the Senior Network Security Engineer and will own daily security operations and respond independently when needed.

You will monitor alerts, perform first-line incident response, help with hardening, document findings, and support security operations when the senior engineer is unavailable.

Qualifications

  • Two to four years of hands‑on experience in security operations, IT security, or a closely related role.

Responsibilities

  • Investigate security alerts across email security, identity, endpoint, firewall, VPN, and wireless systems.

Skills

Security operations
Incident response
Log analysis
Written communication
AI tooling

Tools

Proofpoint
Microsoft 365
Entra ID
Okta
CrowdStrike Falcon
Palo Alto
GlobalProtect
Arista switches
Ruckus wireless
Zabbix
Syslog
Oxidized backups
Claude AI

Job description

Our client is strengthening its security operations as its network and business systems grow across multiple states. They are seeking an experienced Security Analyst II to investigate and
respond to security events across email, identity, endpoint, and network systems. This role works directly under the Senior Network Security Engineer. The person is expected to handle
first-line investigation and response independently, help close configuration and detection gaps, and cover security operations when the senior engineer is unavailable. It suits someone with a few years of hands‑on security experience who is ready to own daily security operations and grow into a senior role.

Key Responsibilities
Security Monitoring & Incident Response
  • Investigate security alerts across email security, identity, endpoint, firewall, VPN, and
    wireless systems.
  • Run first-line incident response, including initial scoping, evidence gathering, and
    containment under established runbooks.
  • Triage user-reported phishing through the Proofpoint reporting workflow and reply to the
    reporters.
  • Escalate confirmed incidents with clear, documented findings.
Detection & Hardening
  • Help build, tune, and maintain detection rules and alert notification policies so that valid
    detections reach the team.
  • Assist with security configuration reviews and close identified gaps in email, identity, and
    endpoint controls.
  • Help maintain and extend the CrowdStrike Fusion SOAR triage automation.
  • Track hardening tasks through to completion and keep their status visible.
Network & Infrastructure Support
  • Assist with firewall rule reviews, change preparation, and documentation.
  • Support VPN operations and access-related tasks.
  • Maintain network diagrams, inventory, and monitoring.
  • Assist with configuration backups, health checks, and routine maintenance
Process & Documentation
  • Maintain runbooks, SOPs, and troubleshooting guides.
  • Document incidents, investigations, and changes accurately for later reference and
    reporting.
  • Use approved AI tooling to speed analysis, drafting, and research.
Tools & Systems

The person in this role will work with:

  • Proofpoint email security (TAP, TRAP, reporting workflow)
  • Microsoft 365, Entra ID, and Okta for identity and access
  • CrowdStrike Falcon (NG-SIEM, EDR, Fusion SOAR)
  • Palo Alto firewalls and GlobalProtect VPN
  • Arista switches and Ruckus wireless
  • Zabbix monitoring, syslog, and Oxidized configuration backups
  • An AI assistant such as Claude for analysis, documentation, and workflow automation
Required Qualifications
  • Two to four years of hands‑on experience in security operations, IT security, or a closely
    related role.
  • Working knowledge of IP addressing, subnets, routing, VLANs, and how firewalls and VPNs fit into an enterprise network.
  • Hands‑on experience investigating security alerts and reading logs from email, identity,
    endpoint, or firewall systems.
  • Familiarity with SIEM and EDR concepts and with the phases of incident response.
  • Ability to run first-line investigation and response with limited supervision.
  • Strong written communication for incident documentation and reporting.
  • Ability to use AI tools such as Claude for analysis, research, and documentation.
Preferred (Not Required)
  • Direct experience with Proofpoint, Okta, Microsoft 365 security, CrowdStrike, or Palo Alto
    Networks.
  • Scripting with Python or PowerShell.
  • Exposure to SOAR or other security automation.
  • Linux and command-line familiarity.
  • Security certifications such as Security+, CySA+, or equivalent.
Growth Path

This position is designed to grow into:

  • Senior Security Analyst
  • Security Engineer
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Security Analyst
Senior Security Analyst

Yardi • Santa Barbara (CA)

On-site
USD 97,000 - 110,000
Senior Security Operations Analyst
Senior Security Operations Analyst

Prosegur Security USA, Inc • Lowell (MA), Northern (KY)

Hybrid
USD 90,000 - 140,000
IT Security Operations Analyst
IT Security Operations Analyst

Blackstone Talent Group • San Francisco (CA)

On-site
USD 120,000 - 150,000
Senior Security Analyst
Senior Security Analyst

Yardi Systems • Santa Barbara (CA)

Hybrid
USD 97,000 - 110,000
Flexible work arrangements
100% paid employee medical premiums
Company profit-sharing plan
Sr. Analyst - Security Operations
Sr. Analyst - Security Operations

Solomon Page • Village of Great Neck (NY)

On-site
USD 120,000 - 140,000
Security Analyst
Security Analyst

AGS - American Gaming Systems • Las Vegas (NV)

On-site
USD 90,000 - 120,000
Security Specialist - Incident.io
Security Specialist - Incident.io

Executive Operations, LLC • South Lyon (MI)

On-site
USD 80,000 - 120,000
Network Security Analyst 2
Network Security Analyst 2

Ampcus, Inc • Austin (TX)

On-site
USD 90,000 - 130,000
Sr. Network Analyst
Sr. Network Analyst

MY HR • Austin (TX)

On-site
USD 110,000 - 150,000
Information Security Analyst
Information Security Analyst

Cisive • Maryland

Hybrid
USD 80,000 - 110,000