(Remote) Security Analyst I | Pay: $55k - $68k/yr.
Location: McLean, VA How You’ll Make An Impact As a Security Analyst I, you'll be our first line of defense against cyber threats. You'll swiftly respond to security alerts, investigate potential malicious activity, secure compromised accounts, and review change activity to prevent or minimize security events. By managing routine security tool adjustments and escalating complex issues, you'll ensure our defenses remain effective and responsive, safeguarding our client's assets and data. Location and Work Expectations - This is a remote position; however, team members should be willing and able to travel if the need arises, though such travel is expected to be infrequent. Candidates with proximity to one of our Centers of Excellence are preferred (Lombard, IL; McLean, VA; Shreveport, LA; Overland Park, KS). - 4 days on, 3 days off! Monday-Thursday, 4pm-3am EST(10-hour shifts). - This role also includes participation in a rotating on-call schedule. What You Will Be Doing - Monitor & Investigate: Actively monitor security dashboards, queues, and alerts from various sources (automated tools, escalated tickets) to detect potential threats. - Incident Triage & Response: Conduct initial investigations into security alerts, perform rapid response actions like securing user accounts, and collect necessary log data for analysis. - Escalate Effectively: Analyze findings to determine the scope and severity of incidents, resolving straightforward issues and escalating complex cases to Level 2 Analysts with clear, concise information. - Security Tool Management: Review and implement authorized, routine changes to security tools, such as processing client exemption requests in the EDR or temporarily adjusting settings for testing. - Collaborate with the Security Team: Work closely with fellow analysts and security engineers, sharing information, participating in team discussions, and contributing to a collaborative security environment. - Engage with Users/Clients: Communicate professionally and clearly with end-users or clients to gather details about potential security issues, explain security procedures, and provide guidance during incident resolution. - Liaise Across Departments: Interact effectively with other teams (e.g., Reactive Support, Client Strategy, NOC) to coordinate security responses and share necessary information. - Document Actions: Maintain accurate and detailed records of investigations, actions taken, communications, and resolutions within ConnectWise. - Provide Support: Offer timely and helpful support related to security inquiries, upholding a professional and customer-service-oriented approach in all interactions.