Security Operations Analyst: 2-Hour Daily Review Window

MetroSys, Inc.

United States

Remote

USD 55,000 - 83,000

Part time

14 days+
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

MetroSys, Inc. seeks a dependable Security Operations Administrator for a short-term contract to support security monitoring and response.

You will review, triage, document, and respond to alerts across client platforms, coordinating with help desk and infrastructure teams as needed. The ideal candidate has hands-on experience with endpoint and email security, identity-related alerts, and incident response workflows, and can work independently within a 24/7 alerting environment with a daily

Qualifications

  • 3+ years of experience in security administration, SOC operations, or security incident response.
  • Hands-on experience with Mimecast, KnowBe4 / phishing remediation workflows, Sophos EDR/XDR and Intercept X.
  • Understanding of security incident response workflows, endpoint and network security concepts, identity and access management fundamentals.
  • Experience reviewing and analyzing security alerts and event data.
  • Strong documentation and communication skills.
  • Ability to work independently and manage daily operational responsibilities efficiently.

Responsibilities

  • Review and respond to security alerts and tickets generated from the client’s monitoring and security platforms.
  • Investigate and triage alerts related to endpoint security events, email threats, phishing activity, suspicious authentication attempts, and firewall/network security events.
  • Perform incident response activities including documentation, initial remediation actions, escalation, coordination, and post-mortem reporting.
  • Validate email and phishing-related incidents using Mimecast and KnowBe4 / PhishER / PhishRip workflows.
  • Monitor and respond to endpoint alerts within Sophos EDR/XDR and Sophos Intercept X Advanced.
  • Investigate identity and authentication alerts from Microsoft environments (sign-in risk, suspicious token, IP/location anomalies).
  • Support security investigations involving Sophos firewall alerts, Fortinet environments, MFA and YubiKey platforms.
  • Coordinate with client help desk and infrastructure teams for remediation support and escalation handling.
  • Maintain accurate documentation of incidents, actions taken, and recommendations.

Skills

Security operations
Incident response
Documentation

Tools

Mimecast
KnowBe4
PhishER
PhishRip
Sophos EDR/XDR
Intercept X
Microsoft 365 security

Job description

MetroSys, Inc. seeks a dependable Security Operations Administrator for a short-term contract to support security monitoring and response.

You will review, triage, document, and respond to alerts across client platforms, coordinating with help desk and infrastructure teams as needed. The ideal candidate has hands-on experience with endpoint and email security, identity-related alerts, and incident response workflows, and can work independently within a 24/7 alerting environment with a daily

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Security Operations Administrator
Security Operations Administrator

MetroSys, Inc. • United States

Remote
USD 55,000 - 83,000
Security Operations Center Analyst
Security Operations Center Analyst

Optomi • Houston (TX)

On-site
USD 70,000 - 100,000
SOC Analyst I: 24/7 Monitoring & Incident Response
SOC Analyst I: 24/7 Monitoring & Incident Response

Mbi Llc • Harrisburg, Northern (KY)

Hybrid
USD 55,000 - 80,000
Security Analyst II: Frontline Incident Response & SOC Ops
Security Analyst II: Frontline Incident Response & SOC Ops

Gilder Search Group • Cleveland (OH)

On-site
USD 70,000 - 100,000
Security Operations Analyst
Security Operations Analyst

Intrinsicamerica • Northern (KY)

Hybrid
USD 70,000 - 90,000
Security Operations Analyst - 24/7 SOC | Hybrid/Remote
Security Operations Analyst - 24/7 SOC | Hybrid/Remote

Pragmatike • United States

Hybrid
USD 53,000 - 84,000
Security Operations Analyst — 4‑Day Week Onsite (McLean)
Security Operations Analyst — 4‑Day Week Onsite (McLean)

WarCollar Industries • McLean (VA)

On-site
USD 90,000 - 130,000
Shift differential
Security Operations Center Analyst
Security Operations Center Analyst

Charter Solutions • Minneapolis (MN), Saint Paul (MN)

Hybrid
USD 70,000 - 100,000
Remote Cybersecurity Operations Analyst
Remote Cybersecurity Operations Analyst

mSupply • United States

Hybrid
USD 70,000 - 110,000
Medical coverage
401(k) with company contributions
Life insurance and disability coverage
+2
Security Operations Analyst
Security Operations Analyst

The Phoenix Group • Arlington (VA)

On-site
USD 90,000 - 120,000