1

Security Analyst Jobs in Raleigh, NC (NOW HIRING)

Log analysis and management - (move logs from log server to reduce memory consumption / resource utilization) * SNMP configuration on security devices. * Patching the security HW/SW environment.

Log analysis and management - (move logs from log server to reduce memory consumption / resource utilization) * SNMP configuration on security devices. * Patching the security HW/SW environment.

NCDOT is seeking an Expert Level Specialist Support Analyst for a 12 month engagement to provide ... Security Center and IP cameras, SV32 devices, door aggregators and all system components deployed ...

Required Skills 6+ years' experience in Security Incident response and investigation. 6+ years' experience in analyzing security logs generated by Intrusion Detection/Prevention Systems (IDS/IPS ...

Network Security Engineer

Raleigh, NC · On-site

$101K - $139K/yr

Demonstrated expertise in malware analysis, categorization, and attribution: * Sandboxing ... Understanding of security incidents involving alternate OSs including Android and iOS * Experience ...

Network Security Engineer

Raleigh, NC · On-site

$101K - $139K/yr

Demonstrated expertise in malware analysis, categorization, and attribution: * Sandboxing ... Understanding of security incidents involving alternate OSs including Android and iOS * Experience ...

Showing results 21-40

Security Analyst information

See Raleigh, NC salary details

$38.4K

$104.3K

$137.1K

How much do security analyst jobs pay per year?

As of Sep 2, 2026, the average yearly pay for security analyst in Raleigh, NC is $104,331.00, according to ZipRecruiter salary data. Most workers in this role earn between $88,900.00 and $126,400.00 per year, depending on experience, location, and employer.

What is a security analyst?

Security Analysts are professionals responsible for protecting an organization’s computer systems and networks from cyber threats. They monitor networks for security breaches, investigate suspicious activities, and implement security measures to prevent future attacks. Security Analysts also conduct vulnerability assessments, respond to incidents, and ensure compliance with security policies and regulations. Their work helps safeguard sensitive data and maintain the integrity of information systems.

What do security analysts do?

Security analysts evaluate information systems and recommend security measures and protocols to protect a company’s sensitive data from security threats. Security administrators implement their recommendations and put suggested protocols into action. As a security analyst, your job duties include monitoring security access, performing audits of internal and external network security programs, analyzing breaches to inform future security system measures, and training colleagues in security awareness and proper procedures. You also collaborate with outside vendors on security plans, which may include website applications, container, or cloud-based solutions.

What are the key skills and qualifications needed to thrive as a security analyst, and why are they important?

To thrive as a Security Analyst, you need a solid understanding of cybersecurity principles, risk assessment, and network security, often backed by a degree in computer science or a related field. Familiarity with tools like SIEM platforms, intrusion detection systems, and certifications such as CompTIA Security+ or CISSP are commonly required. Analytical thinking, attention to detail, and strong problem-solving abilities help Security Analysts excel in identifying vulnerabilities and responding to threats. These skills are crucial for protecting organizational assets, ensuring compliance, and maintaining a robust security posture.

What are some common challenges security analysts face when responding to security incidents, and how can they effectively manage these situations?

Security Analysts often encounter challenges such as rapidly evolving threats, the need to analyze large volumes of data, and coordinating responses across different teams. Responding quickly while accurately diagnosing incidents requires excellent technical skills and clear communication. To manage these situations effectively, successful analysts prioritize continuous learning, use automation tools to streamline repetitive tasks, and establish well-defined incident response procedures. Collaborating with IT, legal, and management teams is also crucial for a coordinated and effective response.

What is the difference between Security Analyst vs Network Security Analyst?

AspectSecurity AnalystNetwork Security Analyst
CertificationsCompTIA Security+, CISSP, CEHCompTIA Security+, CISSP, Cisco CCNA Security
Work EnvironmentIT security teams, cybersecurity firms, corporate securityNetwork operations centers, IT departments, cybersecurity teams
ResponsibilitiesMonitor security systems, analyze threats, implement security measuresSecure network infrastructure, monitor network traffic, prevent intrusions

Security Analysts focus on overall cybersecurity, including threat detection and incident response, while Network Security Analysts specialize in protecting network infrastructure and traffic. Both roles require similar certifications and often work in overlapping environments, but their core responsibilities differ in scope and focus.

What does a security analyst actually do?

A security analyst monitors and protects an organization’s computer systems and networks from cyber threats. They analyze security data, respond to incidents, implement security measures, and often use tools like intrusion detection systems and firewalls. Certifications such as CISSP or CompTIA Security+ can enhance their effectiveness in this role.

What qualifications do I need to be a security analyst?

A security analyst typically needs a bachelor's degree in cybersecurity, computer science, or a related field. Relevant skills include knowledge of network security, threat detection, and experience with security tools and protocols; certifications like CompTIA Security+ or CISSP can enhance job prospects.

What are the most commonly searched types of Security Analyst jobs in Raleigh, NC?

The most popular types of Security Analyst jobs in Raleigh, NC are:

What cities near Raleigh, NC are hiring for Security Analyst jobs?

Cities near Raleigh, NC with the most Security Analyst job openings:

Infographic showing various Security Analyst job openings in Raleigh, NC as of August 2026, with employment types broken down into 86% Full Time, 12% Part Time, and 2% Contract. Highlights an 93% Physical, 2% Hybrid, and 5% Remote job distribution, with an average salary of $104,331 per year, or $50.2 per hour.

Full-time

Re-posted 5 days ago


Job description

Computer World Services (CWS) is seeking a highly motivated and technically skilled DevSecOps Analyst to support the National Institute of Environmental Health Sciences (NIEHS) under the NSITES III contract. The DevSecOps Analyst provides technical expertise in secure software delivery, infrastructure automation, cybersecurity operations, vulnerability management, and enterprise application security. This position combines traditional information security responsibilities with modern DevSecOps practices to ensure security is integrated throughout the Software Development Lifecycle (SDLC), Infrastructure as Code (IaC), Continuous Integration/Continuous Deployment (CI/CD), and enterprise platform operations.

The successful candidate will possess hands-on experience with vulnerability management platforms, Infrastructure as Code, CI/CD technologies, container platforms, and application security tools while supporting compliance with Federal cybersecurity standards and guidance, including FISMA, NIST Risk Management Framework (RMF), NIST Cybersecurity Framework (CSF), NIH and HHS security policies, and Cybersecurity and Infrastructure Security Agency (CISA) Binding Operational Directives (BODs).
Key Tasks & Responsibilities

Enterprise Security Operations

  • Support planning, coordination, implementation, and maintenance of enterprise information security capabilities.
  • Administer enterprise security infrastructure supporting LAN, WAN, cloud, and hybrid environments.
  • Design, implement, and maintain network security controls.
  • Develop, review, and maintain firewall policies, NAT rules, VPN configurations, security zones, and access control lists.
  • Perform firewall software upgrades, patch management, and configuration maintenance.
  • Administer Intrusion Detection and Prevention Systems (IDS/IPS).
  • Administer centralized log aggregation and Security Information and Event Management (SIEM) platforms.
  • Support web filtering and secure web gateway technologies.
  • Maintain file integrity monitoring solutions.
  • Investigate Data Loss Prevention (DLP) alerts and resolve DLP policy issues.
  • Assist in incident response activities involving network, endpoint, and application security.

CI/CD Pipeline Engineering

  • Design, develop, maintain, and improve enterprise CI/CD pipelines.
  • Implement automated build, test, security validation, packaging, and deployment workflows.
  • Support enterprise CI/CD platforms including:
    • Jenkins
    • GitLab CI/CD
    • GitHub Actions
  • Automate application deployment across development, testing, staging, and production environments.
  • Support Git-based source control management, branching strategies, and release management.
  • Troubleshoot pipeline failures and deployment issues.
  • Optimize pipeline performance and automation efficiency.

Infrastructure Automation

  • Develop Infrastructure as Code (IaC) using Terraform.
  • Develop system automation using Ansible.
  • Automate infrastructure provisioning and configuration management.
  • Build reusable infrastructure modules and deployment templates.
  • Support enterprise platform modernization initiatives.
  • Automate routine administrative and operational activities.
  • Standardize infrastructure deployments across multiple environments.

Container Platform Administration

  • Support Docker-based application deployments.
  • Administer Kubernetes clusters.
  • Support Rancher-managed Kubernetes environments.
  • Manage enterprise container registries.
  • Implement container security best practices.
  • Perform image vulnerability scanning and remediation.
  • Support runtime container security initiatives.
  • Assist application teams with container migration and deployment.
  • Troubleshoot containerized applications and orchestration environments.

Application Security

  • Integrate security testing throughout the SDLC.
  • Configure and maintain:
    • OpenText Fortify (SAST)
    • Dynamic Application Security Testing (DAST)
    • Software Composition Analysis (SCA)
    • Secrets Scanning
  • Review vulnerability scan findings.
  • Collaborate with developers to remediate security findings.
  • Implement automated security gates within CI/CD pipelines.
  • Promote secure coding practices.
  • Support software assurance initiatives.
  • Assist with threat modeling and application risk assessments.

Vulnerability Management

  • Administer Tenable Security Center (SC).
  • Administer Nessus vulnerability scanners.
  • Perform authenticated and unauthenticated vulnerability assessments.
  • Analyze vulnerability results.
  • Track remediation activities.
  • Conduct risk assessments.
  • Coordinate vulnerability remediation with infrastructure and application teams.
  • Support compliance reporting and continuous monitoring.
  • Support CISA Binding Operational Directives (BODs), CVEs, and vulnerability remediation efforts.
  • Assist with penetration testing remediation activities.

Software Lifecycle Management Support

Support software lifecycle management activities for:

  • NSITES III operational tools
  • Standard enterprise software deployments
  • Optional licensed software
  • Customer-requested software
  • Enterprise software platforms

Responsibilities include:

  • Software packaging
  • Software testing
  • Version control
  • Patch validation
  • Vulnerability remediation
  • Change management
  • Continuous Integration
  • Software maintenance
  • Software deployment
  • Lifecycle documentation

Support software enhancements, maintenance, and security updates for:

  • Java Runtime Environment
  • Enterprise software platforms
  • Hardware drivers
  • Custom applications
  • Commercial Off-The-Shelf (COTS) software

Support remediation of software vulnerabilities with:

  • CVSS v4 scores of 7.0 or higher
  • CISA Binding Operational Directives (BODs)
  • Audit findings
  • Penetration testing findings

Compliance and Governance

Support compliance with:

  • FISMA
  • NIST Cybersecurity Framework (CSF)
  • NIST Risk Management Framework (RMF)
  • NIST SP 800-53
  • NIH Information Security Policies
  • HHS Information Security Requirements
  • CISA Binding Operational Directives (BODs)
  • Secure Software Development Framework (SSDF)
  • Federal Secure Software Supply Chain requirements

Assist with:

  • Security documentation
  • Audit preparation
  • Risk assessments
  • Security control implementation
  • Continuous monitoring
  • Authority to Operate (ATO) activities
Education & Experience

Education

  • Bachelor's degree in Computer Science, Information Technology Management, or Engineering. Alternatively, four years of related experience may substitute for the educational requirement.

Experience

  • 3-7 years of experience in Windows system administration in enterprise environments
  • Experience supporting large-scale Data Center operations
  • Experience supporting multi-platform environments (Windows, Linux, virtualization, storage, and database systems)  
Certifications
  • AWS Certified DevOps Engineer
  • Microsoft Azure DevOps Engineer Expert
  • Certifications such as CompTIA A+, Security+, Network+, or Microsoft certifications
  • ITIL certification preferred.
Security Clearance
  • Applicants must be able to obtain a Public Trust clearance

Computer World Services is an affirmative action and equal employment opportunity employer. Current employees and/or qualified applicants will receive consideration for employment without regard to race, color, religion, sex, disability, age, sexual orientation, gender identity, national origin, disability, protected veteran status, genetic information or any other characteristic protected by local, state, or federal laws, rules, or regulations.

Computer World Services is committed to the full inclusion of all qualified individuals. As part of this commitment, Computer World Services will ensure that individuals with disabilities (IWD) are provided reasonable accommodations. If reasonable accommodation is needed to participate in the job application or interview process, to perform essential job functions, and/or to receive other benefits and privileges of employment, please contact Human Resources at [email protected].

We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
apply for this job