1

Triage Security Analyst Jobs (NOW HIRING)

The analyst will review and triage security alerts, investigate access and movement of sensitive information, perform system and vendor audits, document findings, assist with incident escalation, and ...

SOC Analyst

Dover, DE ยท On-site

Analyze and triage security alerts based on severity, risk, and potential business impact. * Investigate security incidents including malware infections, unauthorized access, potential data breaches ...

New

Analyze, investigate, and triage security events and potential incidents involving tolling back office systems and devices. * Coordinate with Tolling Division personnel, vendors, and OT operations ...

Monitor and triage security alerts involving suspicious sign-ins, malware, phishing, endpoint ... Investigate user-reported phishing messages, analyze relevant indicators, identify similar messages ...

Monitor and triage security alerts involving suspicious sign-ins, malware, phishing, endpoint ... Investigate user-reported phishing messages, analyze relevant indicators, identify similar messages ...

New

Accurately triage and classify alerts, minimizing false positives while preserving visibility into ... Experience with security event analysis, log correlation, and threat detection. * Experience with ...

Accurately triage and classify alerts, minimizing false positives while preserving visibility into ... Experience with security event analysis, log correlation, and threat detection. * Experience with ...

The Junior Security Analyst supports the organization's security operations by monitoring security ... Monitor and triage security alerts from Microsoft Defender and related security tooling. * Assist ...

New

Review and triage security cases - Investigate alerts and cases surfaced by the Artemis platform across cloud, identity, endpoint, and SaaS environments. Analyze the underlying logs and evidence to ...

SOC Analyst

Dover, DE ยท On-site

Analyst Employment Type: Contract Location: Dover, DE - Hybrid, up to 3 days per week onsite ... Triage security alerts, assess severity and potential impact, and prioritize response activities ...

New

The analyst will review and triage security alerts, investigate access and movement of sensitive information, perform system and vendor audits, document findings, assist with incident escalation, and ...

Job Summary The Network Security Analyst I performs advanced cybersecurity analysis and threat triage activities within the Cybersecurity Operations Center (CSOC). Work involves continuously ...

Role Summary The IT Security Analyst supports the Firm's day-to-day security operations, phishing ... Monitor and triage security alerts involving suspicious sign-ins, malware, phishing, endpoint ...

next page

Showing results 1-20

Triage Security Analyst information

See salary details

$39.5K

$107.3K

$141K

How much do triage security analyst jobs pay per year?

As of Sep 14, 2026, the average yearly pay for triage security analyst in the United States is $107,334.00, according to ZipRecruiter salary data. Most workers in this role earn between $91,500.00 and $130,000.00 per year, depending on experience, location, and employer.

What is the difference between Triage Security Analyst vs Security Operations Center (SOC) Analyst?

AspectTriage Security AnalystSecurity Operations Center (SOC) Analyst
CertificationsCompTIA Security+, CEH, CISSP (preferred)CompTIA Security+, CEH, CISSP (preferred)
Work EnvironmentInitial incident assessment, threat identificationContinuous monitoring, incident response
ResponsibilitiesIdentify and prioritize security threats, initial analysisMonitor security alerts, investigate incidents, escalate issues

While both roles involve cybersecurity threat detection, a Triage Security Analyst primarily focuses on initial threat assessment and prioritization, whereas a SOC Analyst handles ongoing monitoring and incident response. The Triage Security Analyst acts as the first line of defense, whereas the SOC Analyst manages broader security operations within a security team.

What cities are hiring for Triage Security Analyst jobs?

Cities with the most Triage Security Analyst job openings:

What states have the most Triage Security Analyst jobs?

States with the most job openings for Triage Security Analyst jobs include:

What are popular job titles related to Triage Security Analyst jobs?

For Triage Security Analyst jobs, the most frequently searched job titles are:

Infographic showing various Triage Security Analyst job openings in the United States as of September 2026, with employment types broken down into 84% Full Time, 14% Part Time, and 2% Contract. Highlights an 89% Physical, 2% Hybrid, and 9% Remote job distribution, with an average salary of $107,334 per year, or $51.6 per hour.

Security Analyst

Columbia, SC โ€ข On-site

Contractor

Re-posted 20 days ago


Key responsibilities

  • Review and triage security alerts from DLP, Insider Risk Management, DSPM, and other security platforms.

  • Investigate access and movement of sensitive information, document findings, and escalate incidents as needed.

  • Participate in vendor security assessments, review security documentation, and assist in tracking remediation efforts.


Job description

Seeking an experienced Security Analyst for a 12 month contracted opportunity supporting cybersecurity and data protection operations located in Columbia, SC. This is a hybrid opportunity that will require 3 days in office. Candidate must be local to Columbia, SC and a current South Carolina resident.
Scope Of Project:

  • This position supports the cybersecurity and data protection operations, with a focus on DLP, Insider Risk Management, Copilot/AI data security, auditing, vendor security reviews, and device patching. The analyst will review and triage security alerts, investigate access and movement of sensitive information, perform system and vendor audits, document findings, assist with incident escalation, and work with technical and business teams to strengthen the overall security and data governance posture.

What You Will Do In This Role: Data Protection & Data Governance
  • Monitor and administer Data Loss Prevention (DLP) policies and controls. Investigate potential data loss, data exposure, and unauthorized access incidents.
  • Support Data Security Posture Management (DSPM) initiatives related to AI and Copilot.
  • Review the movement, storage, and sharing of sensitive information.
  • Assist in implementation of data classification and data handling requirements.
  • Participate in data governance initiatives and support data owners and stewards.

Security Monitoring & Incident Response
  • Review and triage security alerts from DLP, Insider Risk Management, DSPM, and other security platforms.
  • Investigate suspicious activity involving sensitive information.
  • Document findings and maintain investigation records.
  • Escalate incidents according to agency incident response procedures.
  • Assist with containment, recovery, and post-incident activities.

Insider Risk Management
  • Monitor Insider Risk Management alerts and cases.
  • Analyze user activity associated with potential policy violations.
  • Conduct investigations while maintaining confidentiality and proper chain of evidence.
  • Recommend corrective actions and risk mitigation strategies.

Vendor Security Management
  • Participate in third-party and vendor security assessments.
  • Review vendor security documentation, audit reports, and questionnaires.
  • Identify cybersecurity risks associated with third-party services.
  • Assist in tracking remediation efforts and risk acceptance decisions.

Security Auditing & Compliance
  • Support cybersecurity audits and compliance reviews.
  • Collect and analyze evidence for regulatory and policy requirements.
  • Assist with risk assessments and control validation activities.
  • Maintain documentation supporting compliance efforts.

Collaboration & Reporting
  • Work with technical and non-technical staff to address security concerns.
  • Prepare reports, metrics, and presentations regarding security risks and trends.
  • Participate in cybersecurity awareness and training initiatives.
  • Recommend improvements to security policies, procedures, and controls.

Required Experience:
  • The candidate must have 3 years experience supporting enterprise cybersecurity operations, including threat monitoring, incident response, and risk analysis.
  • The candidate must have 3 years hands-on experience working with data protection technologies such as data loss prevention (DLP), insider risk management tools, and data security posture management for AI (DSPM for AI).
  • The candidate must have 3 years experience reviewing and triaging data related security alerts, analyzing access and movement of sensitive information, documenting findings, and escalating incidents according to established procedures.
  • The candidate must also have 3 years of collaborating with technical and nontechnical teams to resolve security issues and supporting continuous improvement in the data security posture.

Preferred Experience:
  • Experience working with AI driven security tools, Cortex, particularly DSPM platforms designed to manage sensitive data used by AI systems, is preferred. Experience finetuning DLP policies, refining insider risk alerts, or supporting data governance programs is beneficial.
  • Familiarity with Azure security, identity-based access controls, conditional access, and security automation or scripting is also preferred.

Required Education:
  • Bachelor’s degree in cybersecurity, information technology, computer science, or a related field is required; equivalent experience may be considered.
  • A foundational security certification such as CompTIA Security+ or GIAC Security Essentials (GSEC) is required.
  • Preferred certifications include Microsoft SC100, SC200, CEH, or an Associate level CISSP.