Please note that this position is with our direct client
We are looking for ISecurity Analyst - Entry (Min 5+yrs Exp) ONSITE (Both Webcam & In Person Interview)
Number of positions: 1
Length: 12Months +
Work Address: South Carolina 29016
looking for a Security Analyst Entry
Work Location: Fully Onsite - NO flexibility for hybrid or remote work
Candidate location: Candidate must be a CURRENT SC resident. No relocation allowed.
Availability for Saturday and Sunday Evening shifts are required as they will be part of the selected resource's schedule after training. This is mandatory. Candidate must be willing to sign an NDA if they are selected to interview.
Working Schedule: Saturday and Sunday evening coverage likely to be 8:00PM-8:00AM (2 12-Hour Shifts) with dayshifts Wednesday and Thursday (8:30 AM - 2:45 PM)
Position: Security Analyst - Entry
Pre-employment Checks (drug, credit, criminal, motor vehicle)? Criminal, Credit, must be willing to sign NDA before interview
Daily Duties / Responsibilities:
TTeam is looking for candidates to fill an entry level security position. They will train the selected candidate to perform the tasks listed below. At a minimum We are looking for basic server or network administration skills that we can build upon.
1. Threat Intelligence Research
-
Monitor and analyze threat intelligence feeds to identify emerging threats relevant to the organization.
-
Document findings, such as new attack methods or vulnerabilities, and share with the team.
-
Use open-source intelligence (OSINT) tools to gather data on potential risks and adversaries.
2. Threat Hunting and Detection Rule Creation
-
Conduct proactive searches for suspicious behavior in network and endpoint activity using provided tools and playbooks.
-
Utilize threat feeds, investigate suspicious activity, and stay current on cyber threats.
-
Collaborate with senior analysts to refine and test detection rules (e.g., SIEM queries or Defender for Endpoint rules).
-
Document hunting methodologies and findings to support continuous improvement.
3. Log Analysis
-
Review and interpret logs from firewalls, endpoints, and servers to identify indicators of compromise (IOCs).
-
Escalate findings, such as anomalous IP addresses or unauthorized access attempts, to senior analysts.
-
Maintain a log of recurring patterns or anomalies for long-term tracking and analysis.
4. Incident Response
-
Assist in initial triage of security incidents by following response frameworks (e.g., NIST, MITRE ATT&CK).
-
Identify and escalate potential security threats.
-
Gather and analyze relevant evidence, such as logs or alert data, to determine the scope and severity of incidents.
-
Document findings during incidents and contribute to containment and remediation efforts.
5. Documentation, Reporting, and Communication
-
Create clear, detailed reports, including incident reports, after-action reviews, and process documentation.
-
Deliver reports on the security posture and propose mitigation strategies.
-
Draft training materials or guides to help improve organizational awareness and readiness.
-
regularly update and organize documentation to ensure accuracy and accessibility for team use.
6. Vulnerability Management
7. Security Awareness Training
8. Security Automation and Scripting
-
Leverage SCCM, GPO, and PowerShell for patch deployment.
-
Automate tasks beyond SCCM, GPO, and PowerShell to increase efficiency.
9. Endpoint and Network Security
-
Configure policies, analyze alerts, and manage endpoint protection.
-
Understand network protocols and firewalls to strengthen the overall security posture.
10. Digital Forensics and Cloud Security
Required Skills (rank in order of Importance):
Understanding of security concepts and processes
Understanding of basic computer and network concepts
Preferred Skills (rank in order of Importance):
1+ Years of Experience in Server or Network Administration
1+ Year of Experience in an IT Security Focused Role
Experience with SIEM and Endpoint Security Tools
Experience with PowerShell, Group Policy, and Endpoint Management
Knowledge of Vulnerability Management and Cloud Security
Bachelor's Degree in Information Technology, Computer Science, Cybersecurity, or a related field
Additional Skills
Required Education and experience: A High School Diploma is required at minimum
Certifications: Not required, however we prioritize applicants who have:
GIAC Security Essentials (GSEC)
Security+ (CompTIA)
Network+ (CompTIA)
GIAC Incident Handler (GCIH)
Required/Desired Skills
Candidates must have ALL the "Required" skills in order to be considered for the position. "Desired" or "Highly Desired" skills are a PLUS but may NOT be required.
Skill Matrix
| Experience with Business workflow processes | Required / Desired | Amount of Experience | Years of Expe Years rience |
| Understanding of security concepts and processes | Required | | |
| Understanding of basic computer and network concepts | Required | | |
| 1+ Year of Experience in an IT Security Focused Role | Preferred | 1 | Year |
| Experience with SIEM and Endpoint Security Tools | Preferred | | |
| Experience with PowerShell, Group Policy, and Endpoint Management | Preferred | | |
| Knowledge of Vulnerability Management and Cloud Security | Preferred | | |
| Bachelor's Degree in Information Technology, Computer Science, Cybersecurity, or a related field | Preferred | | |
| One of the following certifications: GIAC Security Essentials (GSEC), Security+ (CompTIA), Network+ (CompTIA), GIAC Incident Handler (GCIH) | Preferred | | |
| 1+ Year of Experience in Server or Network Administration | Preferred | 1 | Year |