2

Remote Security Analyst Jobs in Baltimore, MD (NOW HIRING)

Triage Analyst

Linthicum, MD · On-site +1

$61K - $141K/yr

Remote Work: No Job Number: R0246055 Location: Linthicum Heights,MD,US Share job via: Share Triage ... Applicants selected will be subject to a security investigation and may need to meet eligibility ...

Hybrid Columbia MD 3 times a week OR Remote (as applicable to role) Work Authorization Requirements ... Strong analytical, communication, and problem-solving skills. * Ability to collaborate across ...

The Business Analyst will have the responsibility to ensure that the business's need for changes to processes, policies and/or information systems are identified, understood, defined, documented and ...

We're looking for a business analyst who shares our commitment to leveraging technology to make a ... Homeland Security (DHS), with information from each new employee's Form I-9 to confirm work ...

The Business Analyst will have the responsibility to ensure that the business's need for changes to processes, policies and/or information systems are identified, understood, defined, documented and ...

The Business Analyst will have the responsibility to ensure that the business's need for changes to processes, policies and/or information systems are identified, understood, defined, documented and ...

Showing results 21-40

Remote Security Analyst information

See Baltimore, MD salary details

$39.2K

$106.7K

$140.1K

How much do remote security analyst jobs pay per year?

As of Aug 21, 2026, the average yearly pay for remote security analyst in Baltimore, MD is $106,651.00, according to ZipRecruiter salary data. Most workers in this role earn between $90,900.00 and $129,200.00 per year, depending on experience, location, and employer.

What is a remote security analyst?

A Remote Security Analyst is responsible for monitoring, analyzing, and responding to cybersecurity threats while working off-site. They assess network vulnerabilities, investigate security incidents, and implement measures to protect digital assets. Using tools like firewalls, intrusion detection systems, and security monitoring platforms, they help prevent data breaches and cyberattacks. This role often involves collaborating with IT teams to enhance an organization's overall security posture. Remote Security Analysts must stay updated on evolving threats and compliance requirements.

What skills and qualifications are needed to be a remote security analyst?

To excel as a Remote Security Analyst, you need expertise in cybersecurity concepts, threat analysis, incident response, and a background in computer science or information security. Familiarity with security information and event management (SIEM) tools, network monitoring systems, and certifications like CISSP, CEH, or CompTIA Security+ is highly valued. Strong analytical thinking, attention to detail, and effective communication skills are essential to collaborate and convey risks in a virtual team setting. These skills help ensure proactive identification and mitigation of security threats in diverse and remote digital environments.

What challenges do remote security analysts face and how can they be addressed?

Remote security analysts often encounter challenges staying connected with on-site IT teams and receiving timely information about emerging threats or incidents. Effective use of collaboration platforms, maintaining clear communication channels, and regularly participating in virtual team meetings can help bridge these gaps. Additionally, managing sensitive data securely from a remote location requires a strong adherence to company protocols and best practices. Building robust routines for monitoring, documentation, and performance reporting can help maintain the security posture and foster trust within distributed teams.

Can a remote security analyst work from home?

Yes, many remote security analysts work from home, as the role primarily involves monitoring networks, analyzing security threats, and using cybersecurity tools that can be accessed remotely. A stable internet connection, relevant certifications, and familiarity with security software are typically required for remote work in this field.

What are the most commonly searched types of Security Analyst jobs in Baltimore, MD?

The most popular types of Security Analyst jobs in Baltimore, MD are:

What cities near Baltimore, MD are hiring for Remote Security Analyst jobs?

Cities near Baltimore, MD with the most Remote Security Analyst job openings:

Infographic showing various Remote Security Analyst job openings in Baltimore, MD as of August 2026, with employment types broken down into 100% Full Time. Highlights an 100% Remote job distribution, with an average salary of $106,651 per year, or $51.3 per hour.

SEIM Engineer, Security Engineer III

Deloitte

Baltimore, MD • Remote

Full-time

Re-posted 2 days ago


Deloitte rating

8.2

Company rating: 8.2 out of 10

Based on 92 frontline employees who took The Breakroom Quiz

45th of 151 rated financial services


Job description

Deloitte's Cyber Defense and Resilience offering is seeking a SIEM Engineer to support security monitoring, detection engineering, and incident analysis across complex enterprise environments. This role will focus on building and optimizing SIEM content, improving alert fidelity, and helping clients strengthen cyber defense capabilities. The ideal candidate will bring experience with at least one of the following technology areas: Splunk, Palo Alto Networks, or CrowdStrike. This is a remote role with opportunities to work across distributed teams in a fast-paced cybersecurity environment.

Work you'll do

As a SIEM Engineer on the Cyber Defense and Resilience team, you will be responsible for...

  • Configure, maintain, and optimize SIEM content including correlation rules, alerts, dashboards, and reports
  • Analyze security events and log data to identify suspicious activity, support investigations, and improve detection coverage
  • Integrate and normalize log sources from endpoint, network, cloud, identity, and security platforms
  • Partners with cybersecurity teams to support use case development, threat detection, incident triage, and response activities
  • Document detection logic, operational procedures, and monitoring requirements to support consistent service delivery

A successful candidate would possess these skills:

  • Ability to work independently and collaborate as part of a team
  • Effective written and verbal communication skills
  • Meticulous attention to detail and quality of work product
  • Ability to build and sustain professional relationships
  • Ability to lead projects or workstreams
  • Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment
  • Strong interpersonal skills and professional demeanor
  • Ability to meet deadlines
  • Ability to provide clear guidance to others

Qualifications

Required:

  • Bachelor's degree in computer science, Cybersecurity, Information Technology, Engineering, or a degree in related technical field
  • 3+ years of experience in cybersecurity, security operations, or SIEM engineering
  • 3+ years of experience with at least one of the following: Splunk, Palo Alto XSIAM, or Crowdstrike NG SIEM
  • Security certification such as Splunk certification, Palo Alto Networks certification, or CrowdStrike certification is required
  • 2+ years' experience in the following areas:
    •  creating, tuning, and maintaining correlation searches, alerts, dashboards, and reports in a Security Information and Event Management platform
    •  reviewing and analyzing logs from endpoint, network, cloud, identity, and application sources
  • Active Secret clearance or higher
  • Must be legally authorized to work in the United States without the need for employer sponsorship, now or at any time in the future.

Preferred:

  • 2+ years' experience:
    • supporting enterprise monitoring in a Security Operations Center
    • Experience onboarding and normalizing log sources in a Security Information and Event Management platform
    • Experience mapping detections to MITRE ATT&CK techniques
    • Experience with cloud security monitoring in Amazon Web Services, Microsoft Azure, or Google Cloud Platform
    • Hands-on experience with scripting or query languages used for detection and log analysis
  • Security certification such as CompTIA Security+, or GIAC certification

The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $107,925 to $188,900.

You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.

Qualifications:

Deloitte's Cyber Defense and Resilience offering is seeking a SIEM Engineer to support security monitoring, detection engineering, and incident analysis across complex enterprise environments. This role will focus on building and optimizing SIEM content, improving alert fidelity, and helping clients strengthen cyber defense capabilities. The ideal candidate will bring experience with at least one of the following technology areas: Splunk, Palo Alto Networks, or CrowdStrike. This is a remote role with opportunities to work across distributed teams in a fast-paced cybersecurity environment.

Work you'll do

As a SIEM Engineer on the Cyber Defense and Resilience team, you will be responsible for...

  • Configure, maintain, and optimize SIEM content including correlation rules, alerts, dashboards, and reports
  • Analyze security events and log data to identify suspicious activity, support investigations, and improve detection coverage
  • Integrate and normalize log sources from endpoint, network, cloud, identity, and security platforms
  • Partners with cybersecurity teams to support use case development, threat detection, incident triage, and response activities
  • Document detection logic, operational procedures, and monitoring requirements to support consistent service delivery

A successful candidate would possess these skills:

  • Ability to work independently and collaborate as part of a team
  • Effective written and verbal communication skills
  • Meticulous attention to detail and quality of work product
  • Ability to build and sustain professional relationships
  • Ability to lead projects or workstreams
  • Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment
  • Strong interpersonal skills and professional demeanor
  • Ability to meet deadlines
  • Ability to provide clear guidance to others

Qualifications

Required:

  • Bachelor's degree in computer science, Cybersecurity, Information Technology, Engineering, or a degree in related technical field
  • 3+ years of experience in cybersecurity, security operations, or SIEM engineering
  • 3+ years of experience with at least one of the following: Splunk, Palo Alto XSIAM, or Crowdstrike NG SIEM
  • Security certification such as Splunk certification, Palo Alto Networks certification, or CrowdStrike certification is required
  • 2+ years' experience in the following areas:
    •  creating, tuning, and maintaining correlation searches, alerts, dashboards, and reports in a Security Information and Event Management platform
    •  reviewing and analyzing logs from endpoint, network, cloud, identity, and application sources
  • Active Secret clearance or higher
  • Must be legally authorized to work in the United States without the need for employer sponsorship, now or at any time in the future.

Preferred:

  • 2+ years' experience:
    • supporting enterprise monitoring in a Security Operations Center
    • Experience onboarding and normalizing log sources in a Security Information and Event Management platform
    • Experience mapping detections to MITRE ATT&CK techniques
    • Experience with cloud security monitoring in Amazon Web Services, Microsoft Azure, or Google Cloud Platform
    • Hands-on experience with scripting or query languages used for detection and log analysis
  • Security certification such as CompTIA Security+, or GIAC certification

The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $107,925 to $188,900.

You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.

Education:Bachelor's DegreeEmployment Type:

What Deloitte employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom