Cyber Security Analyst (Tier 2) United States - Remote

Remote Full-time
Overview CyberSheath Services International LLC is a rapidly growing Security and IT Managed Services Provider primarily focused on providing Cybersecurity services to the Defense Industrial Base (DIB). We are expanding our staff and are looking to add a Cyber Security Analyst to our Security Operations team. CyberSheath integrates compliance and threat mitigation efforts and eliminates redundant security practices that don’t improve the security posture. Our professionals guide clients on where to invest and how to integrate existing efforts to deliver improved security.Successful candidates are self-motivated, think out of the box, work, and solve issues independently. Our most successful people are self-starters and willing to wear many hats to succeed. CyberSheath is fast-growing and seeks candidates who want to be part of our upward trajectory. CyberSheath is a fully remote organization, and this will be a work-from-home position. Travel requirements: 0-5% yearly. Budgeted Pay Range: $70,000 - $100,000 USD. Equal Opportunity Employer statement: CyberSheath is an Equal Opportunity Employer.All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, gender identity, national origin, age, protected veteran status, or disability. Job OverviewThe Cyber Security Analyst (Tier 2) is responsible for advanced security incident triage, investigation, and response across Microsoft 365, Azure, and on-premises infrastructure. Serves as the escalation point for complex security incidents while implementing containment and remediation procedures in hybrid environments.Key Responsibilities Investigate and respond to escalated security incidents across Microsoft cloud and on-premises environments Perform advanced incident analysis using Microsoft Defender suite and Azure Sentinel Conduct security assessment of Azure/Microsoft 365 configurations and implement hardening recommendations Analyze and respond to advanced Active Directory attacks (Kerberoasting, Pass-the-Hash, Golden Ticket) Monitor and investigate Exchange Server logs, email flow patterns, and phishing campaigns Analyze federation security including ADFS token-based attacks and SAML token manipulation Configure and tune WAF/firewall rule sets and investigate related security incidents Develop network segmentation strategies and identify lateral movement attempts Develop and maintain incident response playbooks for various attack scenarios Coordinate incident response activities with cross-functional teams Required Qualifications 3-5 years in cybersecurity with 2+ years SOC experience Deep knowledge of hybrid Microsoft environments (Microsoft 365, Azure, on-premises AD) Experience with SIEM platforms and security monitoring tools Strong analytical and communication skills Microsoft Certified: Security Operations Analyst (SC-200) One additional security certification: EC-Council CSA, CompTIA Security+, or similar Preferred Qualifications Microsoft Certified: Azure Security Engineer (AZ-500) Microsoft Certified: Identity and Access Administrator (SC-300) CrowdStrike Certified Falcon Responder (CCFR) or equivalent EDR certification CISSP, SSCP, CCSP Skills & Expertise Strong Proficiency with Microsoft Defender suite (Endpoint, Office 365, Identity, Cloud Apps) Azure Sentinel KQL query development and alert configuration Azure AD/Entra ID security configuration and attack path analysis Active Directory security assessment including GPOs, trust relationships, and delegation Email security and phishing detection/response Cloud security posture management Incident handling and digital forensics Threat intelligence analysis and implementation #J-18808-Ljbffr CyberSheath Services International Apply tot his job Apply tot his job
Apply Now →

Similar Jobs

Principal Cloud Infrastructure Consultant

Remote Full-time

REMOTE Director of Information Security (Candidates must be in Dallas, TX or Knoxville, TN)

Remote Full-time

Urgent!! OT Network Security Engineer - Nationwide Travel (USA-based)

Remote Full-time

Senior Information Security Officer (Sr. BISO) - Global Support Functions 3 Locations

Remote Full-time

Information Systems Security Officer / Information Systems Security Manager – RS3 Program & Data Analytics

Remote Full-time

Director, Business Information Security Officer - Remote Job at Otsuka Pharmaceutical in Princeton

Remote Full-time

Director, Cyber and Information Security - Operational Resiliency & Crisis Management

Remote Full-time

Information Security Officer – ConnectOne Bank – Englewood Cliffs, NJ

Remote Full-time

Manager Information Security & Risk Management

Remote Full-time

Cyber Security Manager - Strategic Delivery (Remote)

Remote Full-time

IT Project Coordinator - Overnight

Remote Full-time

Accountability Applications Specialist - Education Assessment Specialist 14

Remote Full-time

Dispatcher (Hotshot / Flatbed – Remote)

Remote Full-time

Quality Analyst (Remote)

Remote Full-time

Senior Manager, Internal Controls and SOX

Remote Full-time

Patent Agent/Engineer position - Remote only

Remote Full-time

Regional Marketing Digital Campaign Manager - Contractor

Remote Full-time

Sandbox - Associate, People Operations (Payroll)

Remote Full-time

Synack Red Team - Pentester

Remote Full-time

FULL TIME Netflix Work From Home$40/h | Teleworking

Remote Full-time
← Back to Home