1

Intern Security Operations Analyst Jobs in Seattle, WA

Cybersecurity Analyst II

Seattle, WA · On-site +1

$50 - $57/hr

Requirements : - Perform daily security operations by proactively monitoring the environment to detect, analyze, and help mitigate cyber threats. - Review, investigate, and respond to real-time ...

Showing results 41-60

Intern Security Operations Analyst information

See Seattle, WA salary details

$12

$23

$30

How much do intern security operations analyst jobs pay per hour?

As of Aug 21, 2026, the average hourly pay for intern security operations analyst in Seattle, WA is $23.15, according to ZipRecruiter salary data. Most workers in this role earn between $18.32 and $25.43 per hour, depending on experience, location, and employer.

What does an intern security operations analyst do?

An Intern Security Operations Analyst assists in monitoring and analyzing an organization’s IT infrastructure for security threats. They support the security operations team by investigating alerts, helping respond to incidents, and maintaining security tools. Interns often learn foundational skills in cybersecurity, such as using security information and event management (SIEM) systems, conducting basic threat analysis, and documenting findings. This role is ideal for those looking to gain hands-on experience in the cybersecurity field.

What types of projects and responsibilities can an intern security operations analyst expect to handle during their internship?

As an Intern Security Operations Analyst, you can expect to assist with monitoring security alerts, conducting basic incident investigations, and supporting the team with vulnerability assessments. Interns often work alongside experienced analysts to triage potential threats, document findings, and help improve response procedures. This hands-on experience allows interns to develop technical skills, gain exposure to a variety of security tools, and understand the collaborative nature of working within a Security Operations Center (SOC).

What are the key skills and qualifications needed to thrive as an intern security operations analyst, and why are they important?

To thrive as an Intern Security Operations Analyst, you need foundational knowledge of cybersecurity principles, network protocols, and basic incident response, often supported by coursework or relevant certifications (such as CompTIA Security+). Familiarity with security information and event management (SIEM) tools, intrusion detection systems (IDS), and ticketing systems is typically expected. Attention to detail, analytical thinking, and strong communication skills help you stand out by enabling accurate threat analysis and effective teamwork. These skills and qualities are crucial for identifying security threats, supporting incident response, and maintaining a secure IT environment.
Infographic showing various Intern Security Operations Analyst job openings in Seattle, WA as of August 2026, with employment types broken down into 8% Internship, and 92% Full Time. Highlights an 58% In-person, 17% Hybrid, and 25% Remote job distribution, with an average salary of $48,143 per year, or $23.1 per hour.

Cybersecurity Analyst II

widenet

Seattle, WA • On-site, Remote

$50 - $57/hr

Contractor

Medical, Retirement

This job post has expired today. Applications are no longer accepted.


Job description

Job Description:
Location: This position is remote within the US.
Overview of Role :
The Cybersecurity Analyst II will support day-to-day Cybersecurity operations, alert investigation, incident response, detection tuning, reporting, implementation support, and documentation with limited supervision. The role is hands-on and delivery-focused, and requires the analyst to independently triage ambiguous security events, coordinate with IT partners, recommend risk-based actions, and help mature repeatable security processes.
Requirements :
- Perform daily security operations by proactively monitoring the environment to detect, analyze, and help mitigate cyber threats.
- Review, investigate, and respond to real-time alerts across SIEM, EDR/XDR, email security, identity, network, cloud, and other security platforms.
- Support cybersecurity incident response by gathering evidence, documenting timelines, coordinating containment/mitigation activity, and communicating status clearly.
- Configure, maintain, monitor, and tune security tools to improve detection fidelity and reduce recurring false positives.
- Translate IT security strategy into tactical work items, runbooks, use cases, reporting, and control improvements.
- Work across infrastructure, endpoint, cloud, network, application, and business teams to implement practical, risk-based security controls.
- Create reporting and metrics that demonstrate security program health, operational trends, investigation outcomes, and opportunities for improvement.
- Develop or implement scripts, queries, dashboards, or open-source/third-party tools that improve detection, prevention, analysis, reporting, or workflow efficiency.
- Lead small security workstreams or discrete implementation efforts when needed, while escalating architectural or policy decisions appropriately.
Education / Experience :
- Bachelor's degree in information security, computer science, or equivalent experience preferred.
- Targeting 4 to 6 years of progressive IT/security experience, including hands-on security operations cyber defense, incident response.
Must have experience/skills :
- Strong hands-on EDR/XDR investigation experience, including endpoint timeline review, suspicious process analysis, containment coordination, and remediation validation.
- Strong hands-on SIEM experience, including log analysis, query writing, alert triage, correlation, use-case tuning, and quality improvement of detections.
- Experience administering or technically supporting at least one major security platform such as EDR/XDR, SIEM, secure email gateway, phishing simulation platform, vulnerability management tool, identity security tool, or cloud security monitoring platform.
- Experience with phishing analysis and email security workflows, including header review, URL/domain/file reputation analysis, user reporting, and response documentation.
- Working knowledge of Active Directory and Entra ID/Azure AD security, including users, groups, MFA, conditional access concepts, authentication anomalies, and identity-based investigations.
- Practical understanding of incident response phases, evidence handling, containment/eradication/recovery coordination, and post-incident documentation.
- Ability to investigate network anomalies and security events across on-premises and cloud environments.
- Ability to communicate technical findings to non-technical audiences with clear written summaries, recommendations, and decision-ready context.
- Working knowledge of security frameworks and concepts such as NIST, MITRE ATT&CK, least privilege, defense-in-depth, vulnerability management, and ITSM practices.
- Ability to operate independently under time pressure, manage multiple priorities, and escalate appropriately when risk or business impact changes.
Nice to have experience skills :
- PowerShell, Python, SPL, or other scripting/query language experience for automation, detection, and analysis.
- Experience creating dashboards or metrics in Power BI or similar reporting/visualization tools.
- Familiarity with Microsoft security tooling, Azure security monitoring, AWS/GCP security monitoring, or hybrid cloud security concepts.
- Experience building runbooks, detection logic, incident report templates, executive-ready summaries, or security operations process improvements.
- Experience with AI model integration for cybersecurity monitoring.
- Certifications such as Security+, CySA+, GCIH, GCIA, GCFA, or equivalent practical experience.
Pay Range: $50.00 - $57.00 per hour, depending upon experience.
Health & Medical Benefits, 401K, Employee Assistance Program, and Sick Time applicable by state.