Threat Detection & Response Analyst

LIVE | WORK

Santa Ana (CA)

Hybrid

USD 100,000 - 110,000

Full time

2 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

LIVE | WORK in Santa Ana, CA is seeking an experienced Cybersecurity Analyst to support the day‑to‑day operation, monitoring, and continuous improvement of our cybersecurity program in a hybrid environment. The role covers protecting infrastructure, networks, endpoints, cloud services, and data, working with cross‑functional teams to detect, investigate, remediate, and strengthen defenses.

Responsibilities include incident response exercises, vulnerability management, identities, MFA, SIEM,

Qualifications

  • 4+ years of progressive IT experience across systems administration, networking, infrastructure, and/or cybersecurity, with increasing responsibility.
  • 2+ years of hands‑on cybersecurity or security‑focused responsibilities.
  • Strong working knowledge of enterprise networking concepts including TCP/IP, DNS, DHCP, VLANs, routing, switching, VPNs, firewalls, and network segmentation.
  • Strong working knowledge of Windows Server, Active Directory, Group Policy, and enterprise identity environments.
  • Experience administering or securing Microsoft 365 and Entra ID environments.
  • Experience with endpoint security, operating system hardening, patching, and vulnerability remediation.
  • Experience investigating security alerts, suspicious activity, or cybersecurity incidents.
  • Understanding of authentication, authorization, privileged access, MFA, Conditional Access, and least‑privilege principles.

Responsibilities

  • Monitor, investigate, and triage security alerts, suspicious activity, and potential cybersecurity incidents.
  • Coordinate containment, remediation, recovery, and escalation activities based on incident scope and impact.
  • Support incident response exercises, post‑incident reviews, and improvements to security detection and response capabilities.
  • Coordinate vulnerability scanning, prioritization, remediation, validation, patch management across servers, endpoints, networks, and platforms.
  • Support identity and access security, including MFA, Conditional Access, SSO, privileged access reviews, and least‑privilege initiatives.
  • Assist with security configuration and monitoring across Microsoft 365, Entra ID, endpoints, and related cloud services.
  • Investigate phishing, suspicious email, malicious attachments, account compromise activity, and other threats.
  • Support cybersecurity risk assessments, policies, standards, audits, and third‑party reviews.

Skills

Networking concepts (TCP/IP, DNS, DHCP
Windows Server & Active Directory
Identity & access management
Incident response & security监控
Documentation & communication

Education

4+ years IT across systems, networks, security

Tools

Microsoft 365
Entra ID
EDR/XDR
SIEM
Vulnerability management
Email security
Firewalls

Job description

LIVE | WORK in Santa Ana, CA is seeking an experienced Cybersecurity Analyst to support the day‑to‑day operation, monitoring, and continuous improvement of our cybersecurity program in a hybrid environment. The role covers protecting infrastructure, networks, endpoints, cloud services, and data, working with cross‑functional teams to detect, investigate, remediate, and strengthen defenses.

Responsibilities include incident response exercises, vulnerability management, identities, MFA, SIEM,

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cybersecurity Analyst - Remote Incident Response Lead
Cybersecurity Analyst - Remote Incident Response Lead

Kind Lending | NMLS #3925 • Irvine (CA)

Hybrid
USD 96,000 - 130,000
Cybersecurity Analyst $100k - $110k
Cybersecurity Analyst $100k - $110k

LIVE | WORK • Santa Ana (CA)

Hybrid
USD 100,000 - 110,000
Senior Cybersecurity Analyst: Threat Detection & IR(Hybrid)
Senior Cybersecurity Analyst: Threat Detection & IR(Hybrid)

VDart Inc • Sacramento (CA)

Hybrid
Senior Cyber Defense & Threat Response Lead - Remote
Senior Cyber Defense & Threat Response Lead - Remote

Prestige Staffing • Dallas (TX)

On-site
USD 120,000 - 180,000
Contract extension potential
Remote work
Career growth
+2
SOC Threat Detection Analyst: Kickstart Your Cyber Career
SOC Threat Detection Analyst: Kickstart Your Cyber Career

American Technology Services • United States

Remote
USD 90,000 - 130,000
SOC Threat Hunter & Incident Response Engineer
SOC Threat Hunter & Incident Response Engineer

Cyberdata Technologies, Inc. • Herndon (VA)

On-site
USD 80,000 - 120,000
SOC Cyber Defense Analyst — 24/7 Incident Response
SOC Cyber Defense Analyst — 24/7 Incident Response

ArnAmy, Inc. • Austin (TX)

On-site
USD 85,000 - 120,000
Cyber Security Analyst
Cyber Security Analyst

Insight Global • Irvine (CA)

On-site
Lead Security Operations Center Manager (SOC)
Lead Security Operations Center Manager (SOC)

ForFutures Financial, Planning, a financial advisory practice of Ameriprise Financial Services LLC • Santa Ana (CA)

On-site
USD 129,000 - 172,000
Incident Response & Threat Detection Analyst
Incident Response & Threat Detection Analyst

CyberData Technologies Inc. • Herndon (VA)

On-site
USD 110,000 - 170,000