Network Security Analyst 1
Ampcus
Ampcus Inc. is a certified global provider of a broad range of Technology and Business consulting services. We are in search of a highly motivated candidate to join our talented Team.
Job Title: Network Security Analyst 1 Location(s): Austin, TX Job DescriptionA Network Security Analyst ensures that information systems and computer networks are secure. This includes protecting the organization against hackers and cyber-attacks, monitoring network traffic and server logs for unusual activity, identifying vulnerabilities, and developing recommendations to minimize security risks. The Network Security Analyst investigates security breaches, develops strategies to address security issues, and utilizes firewalls, antivirus software, and other security technologies to maintain network security. Candidates for this position will be subject to a pre-employment security review to determine employment eligibility. Job Summary
The Network Security Analyst I performs advanced cybersecurity analysis and threat triage activities within a Cybersecurity Operations Center (CSOC). Work involves continuously monitoring, triaging, analyzing, and prioritizing cybersecurity alerts; investigating suspicious activity; identifying potential threats; and coordinating incident response activities to protect information systems, networks, and data. Serves as a primary point of contact for security event analysis, threat identification, and incident escalation. Essential Job Functions
- Monitors, analyzes, and triages cybersecurity alerts generated by Security Information and Event Management (SIEM), Endpoint Detection and Response (EDR), cloud security, email security, identity protection, and network security platforms.
- Conducts initial investigations of detected and reported security events to determine severity, scope, impact, and potential risk to operations.
- Identifies, validates, and prioritizes potential cybersecurity incidents, escalating confirmed threats to Incident Response, Threat Hunting, or SOC Engineering teams according to established procedures.
- Correlates security events from multiple data sources, including endpoints (EDR), firewalls, intrusion detection systems (IDS), intrusion prevention systems (IPS), cloud services, authentication systems, and threat intelligence feeds.
- Reviews and analyzes indicators of compromise (IOCs), suspicious network activity, phishing emails, malware detections, and anomalous user behavior.
- Documents investigations, findings, and response actions in ticketing and case management systems to ensure accurate tracking and reporting.
- Assists with incident containment, eradication, and recovery efforts by coordinating with technical teams and stakeholders.
- Reports and escalates to the CSOC Team Lead and/or SOC Manager.
- Supports continuous improvement of threat detection capabilities through alert tuning, process refinement, threat intelligence integration, and identification of false-positive trends.
- Performs vulnerability assessment reviews and evaluates identified vulnerabilities for potential risk and remediation prioritization.
- Supports development and maintenance of operational procedures, playbooks, workflows, and knowledge base articles related to threat detection and incident response.
- Researches emerging cyber threats, attack techniques, tactics, and procedures (TTPs) to improve detection and response effectiveness.
Knowledge of:
- Cybersecurity Operations Center (CSOC/SOC) operations and best practices.
- Security incident triage, analysis, investigation, and escalation procedures.
- Security monitoring technologies, including SIEM, EDR/XDR, IDS/IPS, firewalls, endpoint security solutions, and cloud security platforms.
- Common cyber threats, attack vectors, malware, phishing campaigns, insider threats, and advanced persistent threat (APT) techniques.
- Threat intelligence concepts, indicators of compromise (IOCs), indicators of attack (IOAs), and MITRE ATT&CK methodologies.
- Windows, Linux, networking protocols, Active Directory, Microsoft Entra ID, cloud environments, and enterprise security controls.
- Incident response lifecycle and cybersecurity frameworks such as NIST Cybersecurity Framework, NIST Incident Response guidance, and PICERL.
- Security event analysis and threat triage.
- Correlating and interpreting data from multiple cybersecurity tools.
- Investigating suspicious activity and identifying indicators of compromise.
- Using SIEM, EDR/XDR, threat intelligence, vulnerability management, and case management platforms.
- Producing clear documentation, incident reports, and technical communications.
- Prioritizing and managing multiple investigations in a fast-paced operational environment for a large organization.
- Query languages such as KQL, Lucene, SPL, ESQL, etc.
- Scripting languages such as PowerShell, Python, Bash, etc.
- Analyze complex security events and distinguish legitimate threats from false positives.
- Make risk-based decisions during incident investigations.
- Execute established incident response and escalation procedures.
- Collaborate effectively with security engineers, incident responders, system administrators, CISO leadership, and business stakeholders.
- Communicate technical information clearly to both technical and non-technical audiences.
- Work independently and as part of a 24x7 cybersecurity operations team.
- Graduation from an accredited four-year college or university with major coursework in cybersecurity, information security, computer science, computer information systems, management information systems, or a related field is preferred.
- Relevant education and experience may be substituted for one another.
- CompTIA Security+
- GIAC Certified Incident Handler (GCIH)
- GIAC Certified Intrusion Analyst (GCIA)
- Certified SOC Analyst (CSA)
- Microsoft Cybersecurity Analyst (SC-200)
- Other GIAC or SOC-related certifications
- Minimum of five (5) years of experience in cybersecurity operations, security monitoring, incident response, threat detection, security investigations, or related cybersecurity disciplines.
- Experience working with one or more of the following technologies:
- SIEM platforms: NetWitness, Microsoft Sentinel, Splunk, QRadar, ArcSight, LogRhythm, etc.
- Microsoft Security: Microsoft 365 Defender XDR, Microsoft Sentinel
- Endpoint Detection and Response: Microsoft Defender for Endpoint, CrowdStrike, SentinelOne, etc.
- IDS/IPS technologies: Trellix/FireEye, Corelight
- Threat intelligence platforms: VirusTotal, Google Threat Intelligence, Cisco Talos, Recorded Future, MISP
- Vulnerability management tools: Tenable, Qualys, Rapid7
- Email security platforms: IronPort ESA, Abnormal.ai, Proofpoint
- Cloud security monitoring solutions: Google Wiz, MDCA, Cortex Cloud, Sysdig
- Secure Access Service Edge: Zscaler, Prisma, Netskope
- Experience triaging security alerts, analyzing security events, and documenting incident investigations.
- Experience with cybersecurity frameworks, incident response processes, and threat detection methodologies.
- Participate in incident response, escalation, and after-action review activities as needed.
- Support enterprise security monitoring for systems that process, store, or transmit sensitive information.
- Follow applicable policies, procedures, standards, and state and federal security requirements.
- Maintain accurate operational documentation, investigation notes, metrics, and leadership-ready summaries.
- Must be able to provide support outside of normal business hours during high-priority security incidents, as approved by the SOC Manager.
Minimum Requirements:
Candidates that do not meet or exceed the minimum stated requirements (skills/experience) will be displayed to customers but may not be chosen for this opportunity.
- 3+ years of experience triaging security alerts
- 3+ years of experience analyzing security events
- 3+ years of experience documenting incident investigations
- 3+ years of experience with cybersecurity frameworks
- 3+ years of experience with incident response processes
- 3+ years of experience with threat detection methodologies
- 3+ years of experience in cybersecurity operations
- 3+ years of experience in security monitoring
- 3+ years of experience in incident response
- 3+ years of experience in threat detection
- 3+ years of experience in security investigations
- 3+ years of experience in related cybersecurity disciplines
- 5+ years preferred - Please see the Job Description section for more specific preferred and required skills.
Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Network Security Analyst 1 in Austin, TX vacancy
- ...external stakeholders, including business partners and/or external DSHS parties to identify, analyze, and resolve complex problems or security gaps. 3 Required Fulfill basic DSHS project management duties to ensure the successful completion of DSHS short-term engagements,...SuggestedTemporary work
- ...Technology and Business consulting services. We are in search of a highly motivated candidate to join our talented Team.Job Title: Network Security Analyst 2Location(s): Austin, TX Job Summary The Network Security Analyst II performs advanced cybersecurity and network...SuggestedMonday to FridayShift work
- ...About the job Network Security Analyst Application Last date Deadline Date: December 7, 2023 @ 5PM CT Requirement details: Internal job ID:TWK_2002 Network Security Analyst State of Texas Austin, TX 78701 NOTE: Cybersecurity staff are currently...SuggestedLocal areaRemote work
- ...Job Description Job Description Network Security Analyst (SOC Operations, SIEM & Incident Response): Required Experience in Years: 10+ Years Mode of Work: 100% Onsite Austin, TX Metropolitan Area Locals Only The Network Security Analyst will perform advanced...SuggestedLocal areaAfternoon shift
$125k - $150k
...TechnologyOverviewGovCIO is seeking a highly experienced Data Security Analyst — Master to lead the design, implementation, operation, and... ...improvement of enterprise security controls that protect data, networks, applications, and cloud-connected environments. This senior...SuggestedFull timeRemote work- ...exceptional place to grow your career! We are seeking a seasoned security professional to join our Information Security team and help... ...management, incident response, identity and access management, network security, risk analysis, security operations, and security engineering...Full timeWork at officeRemote workWork visa2 days per week
- ...Job Description Job Description POSITION SUMMARY: The IT Security and Systems Analyst serves as a liaison between business departments, Information Technology, and Information Security to help ensure technology solutions support business needs and organizational...
- ...operations for defense and national security. We're looking for a hands-on... ...endpoint, cloud, identity, network, and SaaS telemetry using our... ...playbooks, runbooks, and analyst workflow documentation Run... ...considered to be a “U.S. Person”: (1) U.S. citizens, (2) legal...Permanent employmentTemporary workInternshipWork at office
- ...the IAM (TDIS) and ERP (CAPPS) security framework, which includes but... ...products and content meet WCAG 2.1 accessibility standards. This... ...hardware/software evaluation, network troubleshooting, migration... ...Experience serving in a security analyst role with responsibility...Contract workWork at officeLocal area
$94.49k - $131.16k
...what we can achieve. Together.SummaryThe Senior Information Security Analyst is responsible for identifying, investigating, and addressing... ...security tools like Microsoft Defender, CrowdStrike, and Palo Alto Networks is desirable. Professional Services Background: Experience in...Full timeWork at officeRemote workRelocationVisa sponsorshipRelocation package- ...inclusive workplace where people are encouraged to come as they are and do their best work.What We Need2K Security is looking for a motivated Lead Security Analyst for high-profile incidents, directing the team and effectively communicating with cross-team stakeholders...
$45 - $55 per hour
...We are working with a successful Agency in Austin, Texas, to find a Security & Vulnerability Analyst to join a small team. The project is to analyze the Agency's front-end systems to identify architectural pitfalls, map and detect endpoints, and conduct vulnerability...Contract workMonday to Friday- DLH Corp is seeking a Security Assessment & Authorization Analyst to develop Authority to Operate (ATO) security packages and documentation across the RMF lifecycle. You will work with customers to understand technologies, assess vulnerabilities, document security controls...
- ...employer who seeks candidates with diverse backgrounds, experiences, and perspectives to join our network of industry subject matter experts. The Logistics Security Analyst, assigned to one of Pinkerton’s largest global clients, will be a part of a diverse team...Work at officeLocal areaWeekend work
- Norton Rose Fulbright US LLP is seeking a Senior Information Security Analyst to lead security operations, monitoring, detection and response across endpoints, cloud, identity, email and network telemetry. You will drive proactive threat hunting, rule design and incident...
- Saronic Technologies is seeking a hands-on Security Engineer to join our Security Operations team in Austin. You will triage security alerts, perform root-cause analysis, and own initial response for scoped incidents across endpoints, cloud, and identity. You will tune...
$30 - $35 per hour
...0/hr Skills & Experience 3-5 years of Security Incident Response, Security Operations Center... ...cloud Security SIEM technologies as an analyst Ability to support and work across... ...intrusion response techniques through detailed network traffic analysis and impact assessments....Contract workShift workNight shiftWeekend work- # Security Operations Center AnalystAustin, Texas### Description**About Sygnia**Sygnia is... ...for a **Security Operations Center (SOC) Analyst** to join our growing U.S. Managed... ...Windows Event Logs, identity platforms, and network security controls.* Strong understanding...
- Category: Cybersecurity City/Suburb: Austin, TX Job Title: Security Operations Center (SOC) Analyst - Tier II About the Employer We’re recruiting for a U.S. cybersecurity services company that provides managed detection and response for mid-market and enterprise clients...Flexible hours
- University Co-op in Austin, TX seeks an IT Analyst to support day-to-day technology operations, infrastructure, cybersecurity, and desktop... ...Microsoft Azure, Entra ID, Intune/MDM, Cisco Meraki, security tooling, and POS/API integration expertise. The IT Analyst will...
- Responsibilities As a SecOps Analyst at Saronic, you’ll be on the front line of our detection and response operations, triaging and investigating security alerts across endpoint, cloud, identity, network, and SaaS telemetry using our SIEM and XDR platforms You’ll run...
$89 per hour
...State Agency to assist in their search for an onsite Sr. Security Operations Analyst in Austin, Tx. In this position, you will be responsible for... .... Major duties Monitor security alerts, logs, network events, endpoint telemetry, and threat intelligence feeds....Weekly payContract work- 2K is seeking a Lead Security Analyst to direct high-profile incident response efforts, train analysts, and mature our global security program. You will investigate incidents, hunt threats in online retail and game environments, and collaborate with cross-team stakeholders...
- DLH Corporation in the United States is seeking an experienced M365 Security and Compliance Analyst to secure and maintain the M365 ecosystem. The candidate will support large government environments, drive governance, and ensure compliance with federal guidelines while...
- ...We turn ideas into reality.We AreAccenture Security helps organizations prepare, protect,... ...Responsibilities):Help develop, foster and sell network security projectsResponsible for migrating... ...observance, please call us toll free at 1 (***) ***-**** or send us an email or speak...Full timeWork experience placementLive inWork at officeLocal areaRemote work
$129.99k - $216.61k
...apply today.Job Overview:The AVP, Engineering Security Operations will lead a team responsible... ...and access management systems, and network security appliances.Oversee the implementation... ...wealth management practices of approximately 1,100 financial institutions, servicing and...Full timeWork from home$90k - $105k
...an experienced, meticulous and detail-oriented Information Security compliance analyst to be responsible for monitoring the compliance systems in our... ..., and customer requirements, including NIST, ISO and SOC 1&2, and other applicable cybersecurity standards and frameworks...Contract workFor subcontractorWork at officeLocal area- ...Experience, Marketing, Data, Financial, etc. * Understand core technical principles of Salesforce for integration, networking, infrastructure, security, data modeling and DevOps. * Knowledge of and experience using AI-enabled engineering approaches for enhancing Salesforce...Temporary workLocal area
$175.1k - $236.9k
...customer who builds on it. AWS Security works at the forefront of the... ...developing your engineers through 1:1s, stretch assignments, and... ...technologies, cryptography, network security protocols and... ...CySA+ (CompTIA Cybersecurity Analyst) or GCED (GIAC Certified Enterprise...Remote workFlexible hours$95k - $105k
...for an IT Infrastructure Manager. We have 1 open position. Please apply and we can discuss... ...within IT infrastructure, systems, or network administration roles. A minimum of two... ...Lead, coach, and grow a team of network, security, and system admins while promoting teamwork...Work at officeLocal areaVisa sponsorship
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Network Security Analyst 1. Be the first to apply!
Related searches
- system integration analyst Austin, TX
- systems development analyst Austin, TX
- network system analyst Austin, TX
- manufacturing systems analyst Austin, TX
- system analyst Austin, TX
- computer systems analyst Austin, TX
- computer forensic analyst Austin, TX
- information technology system analyst Austin, TX
- system analyst remote Austin, TX
- network security analyst Austin, TX



