2

Remote Microsoft Security Operations Analyst Jobs in Raleigh, NC

As a Security Analyst at Lucid Software, you will protect our corporate assets, world-class web ... You will focus on the execution of day-to-day GRC (Governance, Risk, and Compliance) operations ...

New

... security operations. This remote-first role is primarily based in Raleigh, NC, with quarterly on ... Working knowledge of Microsoft Excel, including filtering, sorting, comparing data across ...

next page

Showing results 1-20

Remote Microsoft Security Operations Analyst information

See Raleigh, NC salary details

$17

$42

$59

How much do remote microsoft security operations analyst jobs pay per hour?

As of Jul 20, 2026, the average hourly pay for remote microsoft security operations analyst in Raleigh, NC is $42.91, according to ZipRecruiter salary data. Most workers in this role earn between $33.65 and $53.03 per hour, depending on experience, location, and employer.

What is a Remote Microsoft Security Operations Analyst?

A Remote Microsoft Security Operations Analyst is a cybersecurity professional who monitors, investigates, and responds to security threats and incidents within Microsoft environments, such as Microsoft 365, Azure, and Windows systems, while working remotely. They use various security tools and platforms, like Microsoft Sentinel and Defender, to detect suspicious activity, analyze alerts, and implement security measures. Their primary goal is to protect organizational data and systems from cyber threats by identifying vulnerabilities and addressing them promptly, all while collaborating with other IT and security teams from a remote location.

How does a Remote Microsoft Security Operations Analyst typically collaborate with other IT and security team members?

As a Remote Microsoft Security Operations Analyst, you will frequently work alongside IT administrators, incident response teams, and other security professionals to monitor, investigate, and respond to security threats. Collaboration often takes place through virtual meetings, shared dashboards, and ticketing systems to ensure timely communication and efficient incident handling. You may also participate in cross-functional projects, sharing insights from security monitoring tools like Microsoft Sentinel or Defender, and help develop or refine company-wide security policies and procedures. Effective communication and documentation skills are key to ensuring alignment and maintaining a strong security posture while working remotely.

What is the difference between Remote Microsoft Security Operations Analyst vs Remote Cybersecurity Analyst?

AspectRemote Microsoft Security Operations AnalystRemote Cybersecurity Analyst
CertificationsMicrosoft Security certifications, CompTIA Security+CompTIA Security+, CISSP, CEH
Work EnvironmentPrimarily within Microsoft security tools and cloud platformsVaried environments, including multiple security tools and platforms
Industry UsageCommon in organizations using Microsoft products and cloud servicesWidespread across industries with diverse security needs
Job FocusMonitoring Microsoft security solutions, incident response, threat detectionBroader security analysis, vulnerability assessment, incident handling

The Remote Microsoft Security Operations Analyst specializes in managing Microsoft security tools and cloud environments, focusing on threat detection and incident response within Microsoft ecosystems. In contrast, the Remote Cybersecurity Analyst has a broader scope, working across various security platforms and industries. Both roles require security certifications but differ in their technical focus and work environment.

What are the key skills and qualifications needed to thrive as a Remote Microsoft Security Operations Analyst, and why are they important?

To thrive as a Remote Microsoft Security Operations Analyst, you need strong knowledge of cybersecurity principles, threat detection, incident response, and familiarity with Microsoft security solutions, often supported by a relevant degree or certifications like Microsoft Certified: Security Operations Analyst Associate. Proficiency with tools such as Microsoft Sentinel, Defender for Endpoint, and Security Information and Event Management (SIEM) systems is essential. Excellent problem-solving, analytical thinking, and clear communication are crucial soft skills for investigating threats and collaborating with distributed teams. These skills ensure effective protection of organizational assets, quick response to security incidents, and seamless remote teamwork in a dynamic security environment.
What are the most commonly searched types of Microsoft Security Operations Analyst jobs in Raleigh, NC? The most popular types of Microsoft Security Operations Analyst jobs in Raleigh, NC are:
What are popular job titles related to Remote Microsoft Security Operations Analyst jobs in Raleigh, NC? For Remote Microsoft Security Operations Analyst jobs in Raleigh, NC, the most frequently searched job titles are:
What job categories do people searching Remote Microsoft Security Operations Analyst jobs in Raleigh, NC look for? The top searched job categories for Remote Microsoft Security Operations Analyst jobs in Raleigh, NC are:
What cities near Raleigh, NC are hiring for Remote Microsoft Security Operations Analyst jobs? Cities near Raleigh, NC with the most Remote Microsoft Security Operations Analyst job openings:
Senior Cyber Security Analyst - Threat Management (remote)

Senior Cyber Security Analyst - Threat Management (remote)

First Citizens Bank

Raleigh, NC • Remote

$97K - $125K/yr

Full-time

Posted 27 days ago


First Citizens Bank rating

7.5

Company rating: 7.5 out of 10

Based on 104 frontline employees who took The Breakroom Quiz

92nd of 149 rated banks


Job description

Overview

This is a remote position that can be hired in NC, AZ, and TX.

This position supports the Bank's Information Security and Cyber Threat management programs at the highest level of complexity and expertise. Leads the analysis and mitigation of threats identified within the Bank's networks and systems. Ensures that team reporting is timely, accurate, and escalated as necessary to provide actionable intelligence for cyber defense efforts. Develops process improvements and technical solutions that address the identified gaps or deficiencies. Drives the defense of the organization's information security and technological architecture through expert consultation and threat mitigation. Serves as a resource to team members and management on security threats, industry trends, and other relevant intelligence. Leads projects within the work group and resolves escalated, high-risk issues.


Responsibilities

The role will focus on detection engineering, leveraging advanced security tools and frameworks to enhance their threat detection capabilities. The ideal candidate will have deep expertise in SIEM log analysis and detection development, in-depth knowledge of security controls, and strong communication skills to collaborate across IT and enterprise monitoring teams.

Key Responsibilities:

  • Perform in-depth analysis of security events and detections from SIEM and EDR platforms.
  • Review and recommend improvements to security policies and detection strategies across security tools.
  • Assist with log analysis for critical applications, ensuring proper field capture and normalization.
  • Collaborate with IT teams and application owners to identify gaps and implement detection enhancements.
  • Apply MITRE ATT&CK framework to strengthen detection coverage and threat modeling.
  • Document findings, recommendations, and detection logic clearly and concisely.

Proactive Threat Hunting

  • Develop and execute threat hunting hypotheses based on emerging threats, attacker behavior (TTPs), and intelligence.
  • Identify indicators of compromise (IOCs) and indicators of attack (IOAs) across endpoints, networks, and cloud environments.

Threat Detection & Investigation

  • Analyze logs, alerts, and telemetry from SIEM, EDR/XDR, NDR, and other security tools.
  • Investigate anomalies and suspicious patterns to uncover previously undetected threats.
  • Perform root cause analysis and determine scope, impact, and attacker activity.

Qualifications

Bachelor's Degree and 8 years of experience in Information security OR High School Diploma or GED and 12 years of experience in Information security

  • Proven experience in detection engineering within cybersecurity operations.
  • Strong proficiency in Splunk (Power User level or higher); Splunk administration experience preferred.
  • Hands-on experience with security tools such as CrowdStrike, UEBA, and database monitoring solutions.
  • Familiarity with SIEM and EDR analysis methodologies.
  • Working knowledge of the MITRE ATT&CK framework.
  • Excellent communication and organizational skills; ability to guide application owners through technical requirements.

Benefits are an integral part of total rewards and First Citizens Bank is committed to providing a competitive, thoughtfully designed and quality benefits program to meet the needs of our associates. More information can be found at https://jobs.firstcitizens.com/benefits.

Qualifications:

Bachelor's Degree and 8 years of experience in Information security OR High School Diploma or GED and 12 years of experience in Information security

  • Proven experience in detection engineering within cybersecurity operations.
  • Strong proficiency in Splunk (Power User level or higher); Splunk administration experience preferred.
  • Hands-on experience with security tools such as CrowdStrike, UEBA, and database monitoring solutions.
  • Familiarity with SIEM and EDR analysis methodologies.
  • Working knowledge of the MITRE ATT&CK framework.
  • Excellent communication and organizational skills; ability to guide application owners through technical requirements.

Benefits are an integral part of total rewards and First Citizens Bank is committed to providing a competitive, thoughtfully designed and quality benefits program to meet the needs of our associates. More information can be found at https://jobs.firstcitizens.com/benefits.

Education:UNAVAILABLEEmployment Type: FULL_TIME

What First Citizens Bank employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom