1

Security Analyst 1 Jobs (NOW HIRING)

As a Governance Risk and Compliance (GRC) Analyst 1 at C2 Labs you will work with a team of security analysts and engineers to implement regulatory frameworks such as the Federal Information Security ...

Requirement - Network Security Analyst Location- Austin, TX (Hybrid) Contract W2 DESCRIPTION OF ... The initial term of the contract shall commence upon execution of the contract and expires one year ...

Security Analyst Location: Lansing, MI 48909 Duration: 12 Months Job Desription ... Top Skills & Years of Experience: - 2+ years overall experience - Experience with NIST and CJIS (1 ...

The Security Analyst role involves supporting the U.S. Army C5ISR Center in developing advanced ... Journeyman 1+ years; Master 3+ years โ€ข Cisco CCNA Security - Certification; Journeyman 1+ years;

... one of a kind requirement. Our services are vast and we produce software and web products. We ... Participate in security planning and analyst activities. Performs security assessments and security ...

With one-to-one connection and compassion, we motivate people to transform their lives. MOBE is a ... Your role at MOBE- This is a contract to hire opportunity The Security Analyst leverages a blend of ...

Analyze the output of vulnerability scanners, security and compliance metadata, and other ... Journeyman 1+ years; Master 3+ years * Cisco CCNA Security - Certification; Journeyman 1+ years;

next page

Showing results 1-20

Security Analyst 1 information

See salary details

$39.5K

$107.3K

$141K

How much do security analyst 1 jobs pay per year?

As of Jul 20, 2026, the average yearly pay for security analyst 1 in the United States is $107,334.00, according to ZipRecruiter salary data. Most workers in this role earn between $91,500.00 and $130,000.00 per year, depending on experience, location, and employer.

What is the difference between Security Analyst 1 vs Security Analyst 2?

CriteriaSecurity Analyst 1Security Analyst 2
Required CertificationsCompTIA Security+, CISSP (preferred)CompTIA Security+, CISSP (preferred)
Work EnvironmentEntry-level cybersecurity teams, security operations centersMid-level cybersecurity teams, incident response
Employer & Industry UsageIT departments across various industries, government agenciesIT security teams in larger organizations, financial, healthcare sectors

Security Analyst 1 and Security Analyst 2 roles share similar certifications and work environments, but Security Analyst 2 typically involves more complex tasks and greater responsibility. The main difference lies in experience level and scope of duties, with Security Analyst 2 handling more advanced security incidents and analysis.

What are the key skills and qualifications needed to thrive as a Security Analyst 1, and why are they important?

To thrive as a Security Analyst 1, you need foundational knowledge of cybersecurity principles, network protocols, and risk assessment, typically backed by a degree in information security or a related field. Familiarity with security information and event management (SIEM) tools, vulnerability scanners, and industry certifications like CompTIA Security+ are commonly required. Attention to detail, analytical thinking, and strong communication skills help distinguish top performers in this entry-level role. These skills are vital for detecting threats, mitigating risks, and effectively collaborating within IT and security teams to protect organizational assets.

What does a Security Analyst 1 do?

A Security Analyst 1 is an entry-level professional responsible for monitoring an organization's IT systems to detect and respond to security threats. Their duties include analyzing security alerts, assisting with incident investigations, and helping to implement security measures. They often work under the guidance of senior analysts and use various tools to identify vulnerabilities and ensure compliance with security policies. This role is crucial for maintaining the overall cybersecurity posture of a company.

What are some typical challenges Security Analyst 1s face when responding to security incidents?

As a Security Analyst 1, you may encounter challenges such as quickly distinguishing between real threats and false positives due to the high volume of security alerts. You'll also need to adapt to rapidly evolving attack techniques and maintain clear communication with IT teams and stakeholders during incident response. Developing strong analytical and documentation skills is key to overcoming these challenges, as is staying current with the latest security trends and tools.
More about Security Analyst 1 jobs
What cities are hiring for Security Analyst 1 jobs? Cities with the most Security Analyst 1 job openings:
What states have the most Security Analyst 1 jobs? States with the most job openings for Security Analyst 1 jobs include:
Security Analyst II (Remote, M-F 5pm - 1am CT)

Security Analyst II (Remote, M-F 5pm - 1am CT)

Foresite

Overland Park, KS โ€ข Remote

Full-time

Medical, Dental, PTO

Posted 11 days ago


Job description

Foresite is seeking a Security Analyst II who has a passion for security, a keen eye for detail, and a drive to protect organizations from cyberattacks and can work fully remote, Monday - Friday from 5pm - 1pm CT. It's more than just a job; it's a launching pad for your cybersecurity career and a first step towards an exciting future at Foresite.

What You'll Do:

The Security Analyst II is a critical mid-level role within Foresiteโ€™s Security Operations Center. You will work inside our 24/7 Cyber Fusion Center, handling escalated security alerts, leading complex investigations for our managed customers across Google Security Operations (Chronicle) and our SOAR platform, and serving as a subject matter expert for the broader team. You will leverage your advanced knowledge of our detection stack and customer environments to resolve intricate threats and will act as a mentor and escalation point for our Analyst I team.

  • Act as an escalation point: Serve as the primary point of escalation for our Tier 1 Analysts. You will handle complex event triage escalations, guide junior analysts through difficult dispositions, and provide decisive action on high-severity alerts.

  • Be a point of information and mentorship: Act as a knowledge resource for the Analyst 1 team. Answer questions regarding investigations, customer environments, and tool navigation to help upskill the shift.

  • Investigate incidents end-to-end: Review complex alert context, gather evidence from Chronicle UDM and supporting tools, reach a final disposition, and either close the ticket with a documented rationale or escalate to Tier 3/Incident Response with a clear handoff.

  • Optimize investigation playbooks: Follow established playbooks for the detection stack, but actively identify gaps, propose workflow improvements, and help draft new guidance alongside your Team Lead to improve overall SOC efficiency.

  • Communicate clearly in tickets: Every ticket you touch should be understandable by the next analyst, the customer, or an auditor reading it six months from now. Your written analysis is the primary artifact of your work and should set the standard for Tier 1 analysts.

  • Partner with customers: Lead communications through the ticketing system on routine and complex investigations, requests for information, and exclusion/suppression requests.

  • Meet SLA and quality targets: Consistently meet performance scorecards for time-to-resolve, triage accuracy, and ticket closure quality, setting a benchmark for the shift.

  • Contribute to detection fidelity: Actively hunt for noisy rules, false-positive patterns, and alert clusters. Submit highly detailed tuning requests and recommendations to the detection engineering team.

  • Participate in shift handoff: Brief the incoming shift on open investigations, anomalies observed, and escalated items waiting on customer response.

Who you are:

  • Experience: 2โ€“4 years of prior experience in a SOC, incident response, or dedicated cybersecurity role.

  • Advanced knowledge of core security concepts: Deep understanding of the cyber kill chain and MITRE ATT&CK framework, common attack vectors (phishing, credential abuse, malware delivery, lateral movement), and hands-on experience with detection, prevention, and response tactics.

  • Proficiency with a SIEM: You have hands-on experience navigating SIEM platforms. You understand how alerts are generated, how to build advanced search queries, and how to pivot seamlessly from an alert to supporting log evidence to build a timeline of events.

  • Strong written communication: You will be writing in tickets that customers read. Clear, concise, accurate writing is non-negotiable.

  • Attention to detail: False positives and true positives often look nearly identical. You are the analyst who reads the full log line, not the summary, and you teach others to do the same.

  • Ability to work Monday - Friday, 5pm - 1am CT

  • CompTIA Sec+, CompTIA CySA+, BTL1, or equivalent certification is required within 90 days of hire if not already held.

Nice to Have

  • Hands-on experience with Google Security Operations (Chronicle), Splunk, Elastic, or Microsoft Sentinel

  • BS of IT Security or Cyber Security

  • Familiarity with endpoint detection and response tools (CrowdStrike, SentinelOne, Defender for Endpoint, Carbon Black)

  • Intermediate scripting or query experience (Python, PowerShell, SQL, or YARA-L/SIEM query languages) to assist with automation or custom searches.

  • Prior MSSP or multi-tenant environment experience

  • Additional advanced certifications: GCIA, GCIH, Google Cloud Security Engineer, or similar.

Why Join Foresite?

We are a mission-driven partner helping organizations navigate an increasingly complex threat landscape. Founded by security practitioners, weโ€™ve grown into a global leader in SecOps and MDR by staying true to our core value: radical transparency. When you join Foresite, you are part of a "humans-first" culture where your expertise is valued, and your well-being is a priority. We leverage our Google Cloud Premier SecOps Partnership to stay at the cutting edge, but we know that our greatest asset is our people.

What We Offer

  • Comprehensive Health & Wellness: Robust medical insurance options to keep you and your family healthy.

  • Employer-Covered Insurance: We fully provide employer-paid Dental coverage, as well as Short-Term (STD) and Long-Term Disability (LTD).

  • Recharge & Refuel: We believe in a true work-life balance. Youโ€™ll start with 3 weeks of paid vacation, plus additional sick leave and paid company holidays to ensure you have time to recharge.

  • Growth & Mentorship: Access to world-class training and mentorship. We support your career trajectory, whether youโ€™re looking to deepen your technical skills or move into leadership.

  • Impactful Work: Help protect global clients using the latest AI-enhanced security tools and GCP native technologies.