Security Operations Administrator

MetroSys, Inc.

United States

Hybrid

USD 80,000 - 100,000

Part time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

MetroSys, Inc. is looking for a dependable Security Operations Administrator for a short-term contract to support security monitoring and response operations. This role involves reviewing and responding to alerts generated from the client’s security platforms.

The ideal candidate should have over 3 years of experience in security administration, hands-on with tools like Mimecast and Sophos, and a strong understanding of incident response workflows. Excellent documentation and communication skills are essential.

Qualifications

  • 3+ years of experience in security administration or SOC operations.
  • Hands-on experience with Mimecast, KnowBe4, and Sophos products.
  • Understanding of security workflows and identity management.

Responsibilities

  • Review and respond to security alerts and incidents.
  • Investigate, triage, and document security events.
  • Coordinate with teams for remediation support.

Skills

Security incident response
Endpoint security
Documentation
Mail and phishing remediation
Microsoft 365 security

Tools

Mimecast
Sophos EDR/XDR
KnowBe4
PhishER
PhishRip

Job description

Position Overview

MetroSys is seeking a dependable and detail-oriented Security Operations Administrator for a short-term contract engagement supporting a client’s security monitoring and response operations. This role is responsible for reviewing, triaging, documenting, and responding to alerts generated across the client’s security platforms and infrastructure environment.

The ideal candidate has hands-on experience with endpoint security, email security, identity-related alerts, and incident response workflows, and can work independently while coordinating with help desk and infrastructure teams as needed.

This role is structured around a daily operational review window (~2 hours per day) while supporting a 24/7 alerting environment.

Key Responsibilities
  • Review and respond to security alerts and tickets generated from the client’s monitoring and security platforms
  • Investigate and triage alerts related to:
    • Endpoint security events
    • Email threats and phishing activity
    • Suspicious authentication attempts
    • Firewall and network security events
  • Perform incident response activities including:
    • Documentation
    • Initial remediation actions
    • Escalation and coordination
    • Post-mortem reporting
  • Validate email and phishing-related incidents using:
    • Mimecast
    • KnowBe4 / PhishER / PhishRip workflows
  • Monitor and respond to endpoint alerts within:
    • Sophos EDR/XDR
    • Sophos Intercept X Advanced
  • Investigate identity and authentication alerts from Microsoft environments, including:
    • Sign-in risk events
    • Suspicious token or authorization activity
    • IP/location anomalies
  • Support security investigations involving:
    • Sophos firewall alerts
    • Fortinet networking environments
    • MFA and authentication platforms (including YubiKey environments)
  • Coordinate with client help desk and infrastructure teams for remediation support and escalation handling
  • Maintain accurate documentation of incidents, actions taken, and recommendations
Required Qualifications
  • 3+ years of experience in security administration, SOC operations, or security incident response
  • Hands-on experience with:
    • Mimecast
    • KnowBe4 / phishing remediation workflows
    • Sophos EDR/XDR and Intercept X
    • Microsoft 365 security and sign-in risk analysis
  • Understanding of:
    • Security incident response workflows
    • Endpoint and network security concepts
    • Identity and access management fundamentals
  • Experience reviewing and analyzing security alerts and event data
  • Strong documentation and communication skills
  • Ability to work independently and manage daily operational responsibilities efficiently
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Contract Security Operations Admin - Daily 2-Hour Review
Contract Security Operations Admin - Daily 2-Hour Review

MetroSys, Inc. • United States

Hybrid
USD 80,000 - 100,000
IT Security Specialist
IT Security Specialist

ibex • Palestine (TX)

On-site
USD 90,000 - 130,000
Security Operations Analyst
Security Operations Analyst

Mondo • Needham (MA)

Hybrid
USD 83,000 - 96,000
Health insurance
Dental insurance
Vision insurance
+1
Senior Security Analyst – Security Operations Center
Senior Security Analyst – Security Operations Center

Jobtailor • Town of Florida (NY)

On-site
USD 120,000 - 180,000
Security Operations Manager
Security Operations Manager

Franklin Fitch • New Jersey

On-site
USD 110,000 - 190,000
Security Specialist - Incident.io
Security Specialist - Incident.io

Executive Operations, LLC • South Lyon (MI)

On-site
USD 80,000 - 120,000
Cybersecurity Analyst
Cybersecurity Analyst

Jobtailor • Cincinnati (OH)

On-site
USD 110,000 - 140,000
Security Analyst – Endpoint Security & Infrastructure
Security Analyst – Endpoint Security & Infrastructure

Interscripts, Inc. • Daly City (CA)

On-site
USD 90,000 - 120,000
Sr. SOC Analyst
Sr. SOC Analyst

HW3 • Village of Great Neck (NY)

On-site
USD 130,000 - 170,000
Cyber Security Engineer
Cyber Security Engineer

Veriipro • San Antonio (TX)

On-site
USD 90,000 - 120,000