1

Cybersecurity Operations Analyst Jobs in Chicago, IL

Senior Cyber Security Analyst

Chicago, IL · On-site

$105K - $140K/yr

The Senior Cyber Security Operations Analyst is responsible for advanced cyber security monitoring, security analysis, incident response, case management, endpoint protection support, threat and ...

Be Seen First

Through 04/25/2027 Job Summary Seeking an experienced Cyber Security Analyst III to lead cybersecurity operations, manage Microsoft security technologies, and strengthen the organization's security ...

New

The Cybersecurity Operations Associate will be responsible for optimizing security tools, leading ... Evaluate, analyze, and deploy security technologies to enhance the organization's overall security ...

Operation and optimization of security tools, including but not limited to Azure Security (DLP ... Evaluate, analyze, and deploy security technologies to enhance the organization's overall security ...

Vice President, Cybersecurity (Chicago)

Chicago, IL · On-site

$161K - $202K/yr

We are seeking an experienced Vice President of Cybersecurity Operations to enhance and expand ... Cyber Analytics: Use data analytics within SIEM platforms to identify potential threats, and ...

Sr. Cybersecurity Manager

Lake Zurich, IL · On-site

$113K - $152K/yr

Security Operations & Incident Response * Oversee daily security operations, including monitoring ... Oversee and guide analysts and engineers responsible for managing tools such as Proofpoint, Cisco ...

next page

Showing results 1-20

Cybersecurity Operations Analyst information

See Chicago, IL salary details

$15

$34

$58

How much do cybersecurity operations analyst jobs pay per hour?

As of Aug 3, 2026, the average hourly pay for cybersecurity operations analyst in Chicago, IL is $34.77, according to ZipRecruiter salary data. Most workers in this role earn between $24.76 and $41.59 per hour, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a cybersecurity operations analyst?

To thrive as a Cybersecurity Operations Analyst, you need a solid understanding of network security, incident response, and risk assessment, often supported by a degree in cybersecurity or information technology. Familiarity with security information and event management (SIEM) tools, intrusion detection systems, and certifications like CompTIA Security+ or CISSP are typically required. Strong analytical thinking, attention to detail, and effective communication are standout soft skills in this role. These skills and qualities are crucial for quickly identifying threats, minimizing risks, and ensuring the overall security of an organization's digital assets.

What is the difference between Cybersecurity Operations Analyst vs Security Analyst?

AspectCybersecurity Operations AnalystSecurity Analyst
CertificationsCompTIA Security+, CISSP, CEHCompTIA Security+, CISSP, CEH
Work EnvironmentSecurity operations centers, IT departmentsIT security teams, corporate security departments
Primary FocusMonitoring, detecting, and responding to security threatsAssessing security risks, policy enforcement, vulnerability management

Both roles often require similar certifications and work in security-focused environments. However, Cybersecurity Operations Analysts primarily focus on real-time threat detection and incident response, while Security Analysts concentrate on risk assessment and security policy management. Understanding these differences helps organizations assign the right security responsibilities and professionals.

What does a cybersecurity operations analyst do?

A Cybersecurity Operations Analyst is responsible for monitoring, detecting, and responding to security threats within an organization’s IT environment. They analyze security incidents, investigate suspicious activity, and help implement protective measures to prevent cyberattacks. Their daily work often involves using security tools, reviewing logs, and collaborating with other IT professionals to improve the organization’s overall security posture. They also play a key role in incident response and reporting, ensuring compliance with security policies and procedures.

What are some common challenges faced by cybersecurity operations analysts, and how can they be addressed?

Cybersecurity Operations Analysts often face challenges such as rapidly evolving threats, high alert volumes, and balancing proactive and reactive tasks. Staying updated with the latest attack techniques and maintaining vigilance during incident monitoring can be demanding. Effective collaboration with IT teams, continuous learning, and leveraging automation tools can help manage workload and enhance response times. Building strong communication skills also supports efficient incident escalation and resolution within the security operations center (SOC).
What are popular job titles related to Cybersecurity Operations Analyst jobs in Chicago, IL? For Cybersecurity Operations Analyst jobs in Chicago, IL, the most frequently searched job titles are:
What job categories do people searching Cybersecurity Operations Analyst jobs in Chicago, IL look for? The top searched job categories for Cybersecurity Operations Analyst jobs in Chicago, IL are:
Infographic showing various Cybersecurity Operations Analyst job openings in Chicago, IL as of July 2026, with employment types broken down into 87% Full Time, 8% Part Time, 1% Temporary, and 4% Contract. Highlights an 85% Physical, 6% Hybrid, and 9% Remote job distribution, with an average salary of $72,326 per year, or $34.8 per hour.

Senior Cyber Security Analyst

S&C

Chicago, IL • On-site

$105K - $140K/yr

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Posted 4 days ago


Job description


As an S&C Electric team member, you'll work on projects that have real-world impact. You'll help transform the grid for resilient and reliable power worldwide. S&C has more than a 100-year history of innovation and has been 100% employee-owned since 2012. We continue this legacy as a trusted, forward-thinking leader in the electrical industry. You will advance a safer, more reliable, and more resilient electrical grid. Our products help the grid adapt to severe weather and transition to clean energy. We're big enough to be a respected industry leader but small enough for you to impact our company directly. Our commitment gives you opportunities to impact on and off the job positively.
Join S&C to make an impact on tomorrow's energy challenges and become an employee-owner!
Hours
  • 8:00 am-5:00 pm (Monday-Friday) Remote
  • Hybrid option available for Chicago-area candidates
  • 365 days a year support

Compensation
At S&C, we are dedicated to providing competitive and equitable compensation for all our team members, and we are committed to transparency in our pay practices. The estimated annual base salary range for this position is $105,940-$140,375.80. Individual pay within this salary range is determined by several compensable factors, including performance, knowledge, job-related skills and experience, and relevant education or training. This role is also eligible for S&C's annual incentive plan (AIP), subject to eligibility criteria.
Join Our Team as a Senior Cyber Security Operations Analyst!
Are you passionate about Senior Cyber Security Operations? The Information Technology team is responsible for designing, implementing, and maintaining a robust technology infrastructure to support the organization's operations. Within IT, the IT Risk Management team improves cyber and information security and troubleshoots technical issues to drive innovation through modern solutions. ITRM ensures secure, reliable, and efficient systems aligned with business objectives.
The Senior Cyber Security Operations Analyst is responsible for advanced cyber security monitoring, security analysis, incident response, case management, endpoint protection support, threat and vulnerability management support, identity and access management support, and information security process improvement. This role strengthens the Cyber Security Operations Center (CSOC) by performing Tier 2 and Tier 3 investigations, improving Microsoft Sentinel and Microsoft Defender XDR detections, using Kusto Query Language (KQL) to support investigations and reporting, supporting threat hunting and threat intelligence workflows, and collaborating with the MDR provider and internal teams to improve response quality and reduce security risk
Job Responsibilities:
  • Perform cybersecurity analysis and reporting from security monitoring tools, triage security events, determine operational impact, and participate in or coordinate incident response actions as necessary.
  • Work Tier 2 and Tier 3 CSOC queue, including escalations, alerts, security events, and incidents.
  • Use incident response tooling and related security telemetry to investigate alerts, validate activity, document findings, and support response actions.
  • Develop, tune, test, and document security detections, hunting queries, and reporting logic using Kusto Query Language (KQL), Advanced Hunting, MITRE ATT&CK mapping, and approved change control or peer review practices.
  • Monitor the cybersecurity threat landscape for emerging threats and trends, support threat hunting and threat intelligence workflows, and collaborate with stakeholders to ensure relevant risks and indicators are incorporated into monitoring and response activities.
  • Collaborate with internal stakeholders to improve security posture through security policy and configuration reviews, validating patch and vulnerability management activities, and ensuring continuing monitoring for policy and control compliance.
  • Develop and maintain standard operating procedures, operating aids, runbooks, and knowledge base content to ensure cyber security monitoring and incident response activities are effective, efficient, repeatable, and consistent.
  • Collaborate with security assessments, internal penetration testing, audits, tabletop exercises, ransomware readiness activities, and other continuous improvement initiatives to validate and improve the effectiveness of security controls, processes, and response capabilities.
  • Collaborate with internal stakeholders to improve and perform Identity and Access Management (IAM) operations including monitoring, provisioning, access review support, and process improvement.
  • Train and coach team members performing information security roles, review work and practices, and help junior analysts improve investigation quality, ticket handling, documentation, escalation discipline, and technical decision making.
  • Understand and comply with all applicable Company policies and rules.

Additional Functions:
  • Maintain regular and punctual attendance.
  • Attend in-person or virtual meetings as requested or required.
  • Communicate effectively and respectfully with others.
  • Other responsibilities as assigned.

Education and Certifications/Licenses
Required
Bachelor's degree in Business Information Systems, Cyber Security, Computer Science, Computer Engineering, Business, or equivalent experience.
Preferred
Relevant cybersecurity certifications (e.g., CompTIA Security+, CySA+, Microsoft SC-200, Microsoft SC-100, GIAC GCIH, GCFA, GCTI, SSCP, CISSP, CCNA, or equivalent.)
What you'll need to succeed:
  • 5+ years of demonstrated experience working as a cyber security analyst or related role, with a track record of establishing, executing, improving, and/or assessing cyber security processes.
  • Demonstrated experience triaging security alerts, working cyber security cases, documenting investigations, and supporting incident response activities in a SOC, CSOC, MSSP, MDR, or enterprise security operations environment.
  • Proficient with Advanced Endpoint Detection and Response (AEDR), Security Information and Event Management (SIEM), and Microsoft security technologies such as Microsoft Sentinel, Microsoft Defender XDR, Microsoft Defender for Endpoint, Microsoft Defender for Identity, Microsoft Defender for Cloud Apps, Microsoft Defender for Office 365, Microsoft Entra ID, and Microsoft collaboration applications.
  • Experience writing, reviewing, or using Kusto Query Language (KQL) for cyber security investigations, alert validation, hunting, reporting, and detection improvement.
  • Working knowledge of incident response, threat hunting, detection tuning, security monitoring, threat and vulnerability management, endpoint security, identity security, and cyber security case management practices.
  • Working knowledge of security-related frameworks and standards, including ISO/IEC 27001, NIST Cybersecurity Framework, NIST SP 800-53, NIST SP 800-61, NIST 800-171, IEC 62443, NERC CIP, and Cybersecurity Model Certification (CMMC).
  • Familiarity with relevant privacy regulations, including the California Consumer Protection Act (CCPA), other U.S. State privacy laws, the European Union's General Data Protection Regulation (GDPR), and other international privacy regulations.
  • Strong analytical skills related to cyber security threats, incident response, problem resolution, change management, and data-driven decision making.
  • Strong communication skills (written, verbal, listening, and presentation); able to translate technical findings into clear operational and business risk language for internal and external stakeholders.
  • Ability to independently collaborate with team members, subject matter experts, cross-functional teams, vendors, and stakeholders while following established escalation paths, RACIs, and operating procedures.
  • Strong customer service orientation with the ability to take initiative in pursuit of improved service, operational consistency, and measurable process improvement.
  • Excellent organizational skills and ability to prioritize tasks, manage ticket queues, meet deadlines, and communicate risks or blockers proactively.
  • Embraces change and has the ability to coach junior team members through change, ambiguity, and complex security investigations.
  • Experience developing process workflow diagrams using Visio or an equivalent tool.
  • Ability to travel as required.

Preferred
  • Experience with Microsoft Sentinel content management, detection lifecycle practices, Advanced Hunting, ASIM, automation rules, Logic Apps, or related SOAR capabilities.
  • Experience with cyber threat hunting, MITRE ATT&CK mapping, threat intelligence analysis, and translating threat intelligence or penetration test findings into monitoring improvements.
  • Experience in command line scripting and implementation using PowerShell, Python, or similar scripting languages for automation, enrichment, and analysis.
  • Experience using internal penetration testing, breach-and-attack simulation, or security validation platforms such as Horizon3 Node Zero or similar tools.
  • Experience working alongside a Managed Detection and Response (MDR) provider in a shared-responsibility operating model.
  • Exposure to operational technology (OT), industrial control system (ICS), manufacturing, energy, or critical infrastructure environments.

Physical Requirements
  • Sitting: Continuously required to remain in a stationary position and perform desk-based tasks for hours at a time
  • Walking: Continuously required to remain in a stationary position and perform desk-based tasks for hours at a time
  • Communication: Frequently required to talk and hear, in person and by phone/conference calls.
  • Travel: Frequently required to travel and work extended hours when necessary. Required to travel overnight.
  • Observation/Eyesight: Infrequently required to observe details at close range including depth perception, peripheral vision, and the ability to differentiate between colors.
  • Lifting: Infrequently required to solo lift supplies weighing from 5 to 20 pounds and some operation of hand carts.
  • Enviromental & Hazardous Conditions
  • Frequently working indoors in an air-conditioned office-based environment.

Disclaimers
This job description is not an exhaustive list of all functions that the team member may be required to perform, and the team member may be required to perform additional functions either temporarily or on an ongoing basis.
The Company reserves the right to revise this job description at any time and to change or eliminate this position.
The team member must be able to perform the essential functions of the position satisfactorily.
Team Member Acknowledgment
I have read this job description, and I understand my responsibilities and the job's essential functions. I am able to perform the essential functions and responsibilities outlined. I understand that the responsibilities, duties, and essential functions of this job may change on a temporary or ongoing basis according to the Company's needs or business decisions, and that, if so, I may be required to perform additional duties, responsibilities, and functions. If I have questions about duties, responsibilities, and functions, I may discuss them with my supervisor or an appropriate member of the HR team.
No Fixed Deadline.
#LI-JM1
About Us
In 1909, S&C Electric Company transformed the delivery of safe, reliable electricity with the invention of the Liquid Power Fuse. Today, as the world faces extreme weather events and the demand for electricity grows, S&C continues to innovate and advance the electrical grid, ensuring reliable and resilient power for homes, communities, and critical infrastructure around the world.
With a diverse, global workforce and core values around integrity, safety, and quality, S&C is a trusted industry leader and top workplace that offers meaningful careers to more than 3,500 team members. As a people-first organization, S&C is committed to fostering an inclusive and collaborative workplace where team members advance their careers through robust talent-development programs and involved leadership.
S&C's deeply rooted belief diversity fosters greater creativity, innovation, and success guides the company to advance and sustain a diverse, equitable, and inclusive workplace culture.
S&C provides a comprehensive and competitive benefit package that includes the following (eligibility requirements apply):
  • Health and Welfare Benefits: Medical & Prescription, Dental, Vision, Health Care and Dependent Care Flexible Spending Accounts, , Health Savings Account (HSA), Group Life Insurance, optional Supplemental Life and AD&D Insurance, Wellbeing Resources including Employee Assistance Program and Family Forming Benefits (i.e., Adoption and Fertility support)
  • Leave Benefits: Vacation Time, Sick Time, Paid Holidays and Company Shutdown days, Short-Term Disability, Long-Term Disability, Other Leaves, Paid Parental Time and Military Leave

Retirement Benefits: 401(k) Retirement Savings and Employee Stock Ownership Plan (KSOP) offering traditional and Roth 401(k) options and an Employee Stock Ownership Plan (ESOP) component; KSOP participants can receive annual ESOP company contributions of over 11% of eligible earnings (3% Core, up to 3.5% Match, Variable Periodic).
About the Team
On the (Admin, HR, General Management, Strategy, IT, F&A, HSE, S&L) team, we are responsible for several core business functions and collaborate with departments across S&C to collectively achieve S&C's mission. We are key players in facilitating how S&C provides long-term value to our employee owners. Always focused on the big picture of revolutionizing the energy sector, we take pride in the impact w