2

Entry Level Microsoft Security Operations Analyst Jobs in California

Overview The Enterprise Security Analyst II is a hands-on Security Operations Center (SOC) role ... Relevant certifications such as CompTIA Security+, GCIH, GCED, GCIA, GCFA, GCTI, CTIA, or Microsoft ...

Security Operations Analyst

Redlands, CA · On-site

$70K - $114K/yr

Overview The Enterprise Security Analyst II is a hands‑on Security Operations Center (SOC) role ... Relevant certifications such as CompTIA Security+, GCIH, GCED, GCIA, GCFA, GCTI, CTIA, or Microsoft ...

Security Operations Analyst

Irvine, CA · Remote

$100K - $125K/yr

Huntress is looking for a Security Operations Center Analyst to add to our growing team. In this ... Investigate suspicious Microsoft M365 activity and provide remediations. * Assist in escalations ...

New

As an Operations Analyst, you will be the engine behind our core business, directly supporting the execution and delivery of our college counseling and academic service offerings. This position sits ...

Operations Analyst

San Diego, CA · On-site

$50K - $100K/yr

Department of Defense Secret security clearance. _____ Key Responsibilities Event & Meeting ... Use tools such as Adobe Premiere Pro, Microsoft Stream, and other common multimedia formats and ...

next page

Showing results 1-20

Entry Level Microsoft Security Operations Analyst information

What does an entry level Microsoft Security Operations Analyst do?

An Entry Level Microsoft Security Operations Analyst is responsible for monitoring, detecting, and responding to security threats within an organization’s Microsoft ecosystem. Their duties often include analyzing security alerts, investigating incidents, and helping to implement security measures using Microsoft security tools like Microsoft Defender and Azure Security Center. They work closely with other IT and security professionals to ensure systems are protected and compliant with security policies. This role is ideal for individuals starting their cybersecurity careers who have a foundational understanding of Microsoft technologies and security practices.

What types of security incidents might an entry level Microsoft Security Operations Analyst handle during a typical shift?

As an Entry Level Microsoft Security Operations Analyst, you can expect to monitor and respond to a variety of security incidents, such as suspicious login attempts, malware alerts, phishing email reports, and unauthorized access to company data. Your daily responsibilities will often include triaging alerts from security tools like Microsoft Defender, escalating more complex issues to senior analysts, and documenting incident responses. You’ll also collaborate closely with IT and other security team members to ensure rapid resolution and continuous improvement of security protocols.

What are the key skills and qualifications needed to thrive as an entry level Microsoft Security Operations Analyst, and why are they important?

To succeed as an Entry Level Microsoft Security Operations Analyst, you need foundational knowledge in cybersecurity principles, familiarity with threat detection, and a degree in computer science or a related field. Experience with Microsoft security tools like Microsoft Sentinel, Defender, and basic certifications such as Microsoft Security Fundamentals are typically required. Strong analytical thinking, attention to detail, and effective communication skills help you quickly identify and respond to security incidents. These skills are crucial for protecting organizational assets and ensuring rapid, accurate responses to evolving security threats.

What is the difference between Entry Level Microsoft Security Operations Analyst vs Security Analyst?

AspectEntry Level Microsoft Security Operations AnalystSecurity Analyst
CertificationsMicrosoft Security certifications, CompTIA Security+CompTIA Security+, CISSP (entry-level roles)
Work EnvironmentPrimarily Microsoft security tools, cloud environments, enterprise networksVarious security tools, on-premises and cloud environments
Industry UsageOrganizations using Microsoft security solutionsBroad industry roles, including finance, healthcare, tech
Search IntentEntry-level Microsoft security roles, Microsoft security certificationsGeneral security roles, security best practices

The Entry Level Microsoft Security Operations Analyst focuses on Microsoft security tools and cloud environments, often requiring Microsoft-specific certifications. In contrast, a Security Analyst has a broader scope, working with various security tools across different environments. Both roles are essential in cybersecurity teams, but the former is more specialized in Microsoft technologies, making it ideal for those seeking to work within Microsoft-centric security operations.

What are the most commonly searched types of Microsoft Security Operations Analyst jobs in California?

The most popular types of Microsoft Security Operations Analyst jobs in California are:

What are popular job titles related to Entry Level Microsoft Security Operations Analyst jobs in California?

For Entry Level Microsoft Security Operations Analyst jobs in California, the most frequently searched job titles are:

What job categories do people searching Entry Level Microsoft Security Operations Analyst jobs in California look for?

The top searched job categories for Entry Level Microsoft Security Operations Analyst jobs in California are:

What cities in California are hiring for Entry Level Microsoft Security Operations Analyst jobs?

Cities in California with the most Entry Level Microsoft Security Operations Analyst job openings:

Infographic showing various Entry Level Microsoft Security Operations Analyst job openings in California as of August 2026, with employment types broken down into 100% Full Time. Highlights an 74% In-person, and 26% Remote job distribution.

Security Operations Analyst

Redlands, CA • On-site

Esri
Scientific Research and Development Services • 1 - 5K employees

Full-time

Posted 9 days ago


Esri rating

9.6

Company rating: 9.6 out of 10

Based on 14 frontline employees who took The Breakroom Quiz


Job description

Overview

The Enterprise Security Analyst II is a hands-on Security Operations Center (SOC) role responsible for monitoring alerts, investigating security events, supporting incident response, and improving security operations. This role also applies cyber threat intelligence and threat hunting practices to add context to investigations, identify emerging threats, and strengthen detection and response capabilities. Primary schedule is business hours, Monday through Friday. Participation in an after-hours on-call rotation is expected after onboarding and demonstrated familiarity with systems, tools, and response procedures.

Responsibilities

Security Operations and Incident Response

  • Monitor and manage the SOC alert queue across endpoint, identity, network, email, cloud, and log monitoring platforms
  • Independently triage and investigate security alerts and events, distinguishing confirmed threats from benign activity using available evidence and telemetry
  • Support the full incident lifecycle, including investigation, escalation, containment support, remediation follow-up, documentation, and closure
  • Escalate incidents with clear evidence, impact assessment, and recommended next steps
  • Apply playbooks and runbooks while identifying opportunities to improve alert quality, response consistency, automation, and analyst enablement

Threat Intelligence and Threat Hunting

  • Analyze relevant threat intelligence to identify threats, campaigns, vulnerabilities, and adversary behaviors that may affect the organization
  • Enrich alerts and investigations with context about threat actors, malware, indicators, vulnerabilities, and attack techniques
  • Assist with threat hunts across endpoint, identity, network, cloud, and application telemetry
  • Use MITRE ATT&CK to support investigations, communicate adversary behavior, and identify detection gaps
  • Partner with security engineers and analysts to turn relevant intelligence into detections, hunts, watchlists, playbooks, blocking recommendations, or response improvements

Requirements

  • 2+ years of cybersecurity experience with hands-on involvement in security monitoring, alert triage, and incident investigation
  • Experience analyzing endpoint, identity, network, cloud, email, and log data to identify suspicious or malicious activity
  • Working knowledge of SIEM and EDR platforms, common triage workflows, and security telemetry analysis
  • Strong understanding of networking, operating systems, identity and access concepts, cloud security fundamentals, and core security protocols
  • Working knowledge of cyber threat intelligence concepts, including indicators, threat actors, campaigns, vulnerabilities, and adversary tactics, techniques, and procedures
  • Ability to write clear investigation notes, incident records, intelligence summaries, and recommendations for technical and non-technical audiences
  • U.S. citizenship is mandatory
  • Ability and willingness to obtain security clearance
  • Bachelors in Cybersecurity, Information Technology, Computer Science, or a related STEM degree

Recommended Qualifications

  • Experience performing threat intelligence analysis, threat hunting, incident response, or security engineering in an enterprise environment
  • Experience converting threat intelligence into detections, hunts, watchlists, playbooks, response actions, or mitigation recommendations
  • Experience researching threat actors, malware, ransomware activity, vulnerability exploitation, or emerging attack techniques
  • Familiarity with SOAR platforms, detection engineering practices, automation, scripting, or query languages such as PowerShell, Python, KQL, or SPL
  • Relevant certifications such as CompTIA Security+, GCIH, GCED, GCIA, GCFA, GCTI, CTIA, or Microsoft security certifications

#LI-TM1

#LI-onsite


What Esri employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


ESRI logo

About ESRI

Sourced by ZipRecruiter

Our passion for improving quality of life through geography is at the heart of everything we do. Esri's geographic information system (GIS) technology inspires and enables governments, universities, and businesses worldwide to save money, lives, and our environment through a deeper understanding of the changing world around them.

Industry

Scientific research and development services

Company size

1,001 - 5,000 Employees

Headquarters location

Redlands, CA, US

Year founded

1969