Network Security Analyst

Austin, TX, US • Posted 4 hours ago • Updated 4 hours ago
Contract Corp To Corp
Contract W2
Contract Independent
12 Months
No Travel Required
On-site
$50 - $55/hr
Company Branding Image
Fitment

Dice Job Match Score™

🔢 Crunching numbers...

Job Details

Skills

  • Authentication
  • Apache Lucene
  • ArcSight
  • Artificial Intelligence
  • Bash
  • Cisco
  • Cloud Computing
  • Cloud Security
  • Collaboration
  • Computer Networking
  • Computer Science
  • Continuous Improvement
  • Cyber Security
  • Documentation
  • ESA
  • ESQL
  • Email Security
  • Endpoint Protection
  • Event Management
  • Exceed
  • FireEye
  • IT Management
  • Firewall
  • GCIA
  • GCIH
  • IBM QRadar
  • IDS
  • IPS
  • Incident Management
  • Information Security
  • Information Systems
  • Intrusion Detection
  • Intrusion Prevention
  • IronPort
  • Knowledge Base
  • Leadership
  • Linux
  • LogRhythm
  • Malware Analysis
  • Management
  • Microsoft
  • Microsoft Office
  • Python
  • Qualys
  • Recovery
  • Reporting
  • SIEM
  • Microsoft Windows
  • Netwitness
  • Network
  • Network Security
  • SPL
  • Scripting
  • Security Controls
  • Security+
  • Splunk
  • System On A Chip
  • Team Leadership
  • Threat Analysis
  • Vulnerability Assessment
  • Vulnerability Management
  • Windows PowerShell
  • Workflow

Summary

Network Security Analyst

A network security analyst ensures that information systems and computer networks are secure. This includes protecting the company against hackers and cyber-attacks, as well as monitoring network traffic and server logs for activity that seems unusual. Additionally, these analysts are responsible for finding vulnerabilities in the computer networks and creating recommendations for how to minimize these vulnerabilities. The network security analyst investigates security breaches, develops strategies for any security issues that arise, and utilizes the help of firewalls and antivirus software to maintain security. DISCLAIMER: Candidates for this position will be subject to a pre-employment security review to determine employment eligibility.

Job Summary

The Network Security Analyst I performs advanced cybersecurity analysis and threat triage activities within the Cybersecurity Operations Center (CSOC). Work involves continuously monitoring, triaging, analyzing, and prioritizing cybersecurity alerts; investigating suspicious activity; identifying potential threats; and coordinating incident response activities to protect agency information systems, networks, and data. Serves as a primary point of contact for security event analysis, threat identification, and incident escalation.

Essential Job Functions

  • Monitors, analyzes, and triages cybersecurity alerts generated by Security Information and Event Management (SIEM), Endpoint Detection and Response (EDR), cloud security, email security, identity protection, and network security platforms.
  • Conducts initial investigations of detected and reported security events to determine severity, scope, impact, and potential risk to agency operations.
  • Identifies, validates, and prioritizes potential cybersecurity incidents, escalating confirmed threats to Incident Response, Threat Hunting, or SOC Engineering teams according to established procedures.
  • Correlates security events from multiple data sources, including endpoints (EDR), firewalls, intrusion detection systems (IDS), intrusion prevention systems (IPS), cloud services, authentication systems, and threat intelligence feeds.
  • Reviews and analyzes indicators of compromise (IOCs), suspicious network activity, phishing emails, malware detections, and anomalous user behavior.
  • Documents investigations, findings, and response actions in ticketing and case management systems to ensure accurate tracking and reporting.
  • Assists with incident containment, eradication, and recovery efforts by coordinating with technical teams and stakeholders.
  • Reports and escalates to the CSOC Team Lead and/or SOC Manager.
  • Supports the continuous improvement of threat detection capabilities through alert tuning, process refinement, threat intelligence integration, and identification of false-positive trends.
  • Performs vulnerability assessment reviews and evaluates identified vulnerabilities for potential risk and remediation prioritization.
  • Supports development and maintenance of operational procedures, playbooks, workflows, and knowledge base articles related to threat detection and incident response.
  • Researches emerging cyber threats, attack techniques, tactics, and procedures (TTPs) to improve detection and response effectiveness.

Knowledge, Skills, and Abilities

Knowledge of:

  • Cybersecurity Operations Center (CSOC/SOC) operations and best practices.
  • Security incident triage, analysis, investigation, and escalation procedures.
  • Security monitoring technologies, including SIEM, EDR/XDR, IDS/IPS, firewalls, endpoint security solutions, and cloud security platforms.
  • Common cyber threats, attack vectors, malware, phishing campaigns, insider threats, and advanced persistent threat (APT) techniques.
  • Threat intelligence concepts, indicators of compromise (IOCs), indicators of attack (IOAs), and MITRE ATT&CK methodologies.
  • Windows, Linux, networking protocols, Active Directory, Microsoft Entra ID, cloud environments, and enterprise security controls.
  • Incident response lifecycle and cybersecurity frameworks such as NIST Cybersecurity Framework, NIST Incident Response guidance, and PICERL.

Skill in:

  • Security event analysis and threat triage.
  • Correlating and interpreting data from multiple cybersecurity tools.
  • Investigating suspicious activity and identifying indicators of compromise.
  • Using SIEM, EDR/XDR, threat intelligence, vulnerability management, and case management platforms.
  • Producing clear documentation, incident reports, and technical communications.
  • Prioritizing and managing multiple investigations in a fast-paced operational environment for a large organization.
  • Knowledge of and experience with query languages such as KQL, Lucene, SPL, ESQL, etc.
  • Knowledge of and experience with scripting languages such as PowerShell, Python, Bash, etc.

Ability to:

  • Analyze complex security events and distinguish legitimate threats from false positives.
  • Make risk-based decisions during incident investigations.
  • Execute established incident response and escalation procedures.
  • Collaborate effectively with security engineers, incident responders, system administrators, CISO leadership, and business stakeholders.
  • Communicate technical information clearly to both technical and non-technical audiences.
  • Work independently and as part of a 24x7 cybersecurity operations team.

Preferred Education and Certifications

  • Graduation from an accredited four-year college or university with major coursework in cybersecurity, information security, computer science, computer information systems, management information systems, or a related field is preferred. Relevant education and experience may be substituted for one another.
  • One or more of the following certifications are preferred:
  • CompTIA Security+
  • GIAC Certified Incident Handler (GCIH)
  • GIAC Certified Intrusion Analyst (GCIA)
  • Certified SOC Analyst (CSA)
  • Microsoft Cybersecurity Analyst (SC-200)
  • Other GIAC or SOC-related certifications

Required Qualifications

  • Minimum of five (5) years of experience in cybersecurity operations, security monitoring, incident response, threat detection, security investigations, or related cybersecurity disciplines.
  • Experience working with one or more of the following technologies:
  • SIEM platforms (NetWitness, Microsoft Sentinel, Splunk, QRadar, ArcSight, LogRhythm, etc.)
  • Microsoft Security (Microsoft 365 Defender XDR, Microsoft Sentinel)
  • Endpoint Detection and Response (Microsoft Defender for Endpoint, CrowdStrike, SentinelOne, etc.)
  • IDS/IPS technologies (Trellix/FireEye, Corelight)
  • Threat intelligence platforms (VirusTotal, Google Threat Intelligence, Cisco Talos, Recorded Future, MISP)
  • Vulnerability management tools (Tenable, Qualys, Rapid7)
  • Email security platforms (IronPort ESA, Abnormal.ai, Proofpoint)
  • Cloud security monitoring solutions (Google Wiz, MDCA, Cortex Cloud, Sysdig)
  • Secure Access Service Edge (Zscaler, Prisma, Netskope)
  • Experience triaging security alerts, analyzing security events, and documenting incident investigations.
  • Experience with cybersecurity frameworks, incident response processes, and threat detection methodologies.

Work Expectations

  • Participate in incident response, escalation, and after-action review activities as needed.
  • Support enterprise security monitoring for systems that process, store, or transmit sensitive information.
  • Follow HHSC policies, procedures, standards, and applicable state and federal security requirements.
  • Maintain accurate operational documentation, investigation notes, metrics, and leadership-ready summaries.
  • Must be able to provide support outside of normal business hours during high-priority security incidents, as approved by the SOC Manager.
Minimum Requirements:
Candidates that do not meet or exceed the minimum stated requirements (skills/experience) will be displayed to customers but may not be chosen for this opportunity.
YearsRequired/PreferredExperience
3RequiredExperience triaging security alerts
3RequiredExperience analyzing security events
3RequiredExperience documenting incident investigations
3RequiredExperience with cybersecurity frameworks
3RequiredExperience with incident response processes
3RequiredExperience with threat detection methodologies
3RequiredExperience in cybersecurity operations
3RequiredExperience in security monitoring
3RequiredExperience in incident response
3RequiredExperience in threat detection
3RequiredExperience in security investigations
3RequiredExperience in related cybersecurity disciplines
5PreferredPlease See Job Description Section for more specific Preferred and Required Skills.
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: 10376147
  • Position Id: A202609004
  • Posted 4 hours ago

Company Info

About ArnAmy, Inc.

ArnAmy, Inc. is an Information Technology consulting and Software Development firm headquartered in Tallahassee, FL. We are IT professionals, driven by passion rather than revenue goals. We are the result of a sincere desire to provide exceptional service in the Information Technology (IT) industry. At ArnAmy, we understand that your business dictates your technology needs, not vice versa. With our proven track record, we have demonstrated our ability to create customer centric IT solutions. We are your go-to vendor partner for expert IT consultation.

We are a full service IT company. Our formidable reputation is built on the caliber of our highly qualified people who thrive on meeting challenges. Our service offerings cover the whole gamut of modern IT services:

-Application Lifecycle Management (ALM)

-Application Performance Engineering

-Strategic IT Consulting

Mission Statement: 

At ArnAmy, Inc. we are on a mission to provide Efficient, Effective, and Economic solutions while creating a Win-Win-Win situation for our Customers, Consultants, and Company

The relentless pursuit of excellence in all that we do, leaves no room for mediocrity in ArnAmy.

Vision Statement:

To be viewed as a respected IT consulting and software engineering firm, providing high quality design and development services to our clients with honesty, integrity, and passion. 

Core Values
Team ArnAmy is passionate about delivering dependable, scalable, and maintainable solutions to enhance our customer's business growth and development. We are guided by these principles in carrying out our duties:

Honesty
Honesty is indeed the best principle! You will experience complete transparency in all our dealings.

Integrity
We serve as trusted collaborators to guide you with customized solutions, pointing you always in the right direction.

Passion
We are completely committed and passionate about our clients. Our ability to create a long term meaningful relationship with our clients is testimony to this fact.

Contact the job poster
TS

Tejas Shinde

Recruitment Manager @ ArnAmy, Inc.
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

It looks like there aren't any Similar Jobs for this job yet.

Search all similar jobs