Network Security Analyst 2

My3Tech

  • Austin, TX
  • 3 days ago

    Highlights

    The Network Security Analyst II performs advanced cybersecurity and network security analysis work in support of Client's enterprise security operations. Analyze suspicious activity, anomalous network behavior, malware indicators, endpoint detections, and SIEM correlation events to determine scope, impact, and required response actions.

    Numbers & Facts

    LocationAustin, TX

    Description

    The Network Security Analyst II performs advanced cybersecurity and network security analysis work in support of Client's enterprise security operations. This role is responsible for monitoring, detecting, investigating, and responding to security events across on-premises, cloud, and endpoint environments. The ideal candidate is a hands-on security operations professional with strong experience across SIEM, SOAR, EDR, network detection, and incident response platforms. This role requires sound judgment, technical depth, attention to detail, and a strong commitment to protecting Client systems, data, and services that support the health and well-being of Texans.

    Essential Job Functions:

    • Monitor security alerts, logs, network events, endpoint telemetry, and threat intelligence feeds.
    • Analyze suspicious activity, anomalous network behavior, malware indicators, endpoint detections, and SIEM correlation events to determine scope, impact, and required response actions.
    • Perform incident triage, investigation, escalation, containment coordination, and documentation in alignment with Client security operations procedures.
    • Develop, tune, and maintain detection rules, dashboards, alerts, playbooks, and queries to improve visibility across network, endpoint, identity, and cloud environments.
    • Support threat hunting activities using KQL, SPL, packet/session analysis, endpoint telemetry, and other investigative techniques.
    • Assist with vulnerability, risk, and control assessments for network security infrastructure and enterprise information systems.
    • Document findings, prepare incident reports, track corrective actions, and communicate technical information to security leadership and business stakeholders.
    • Collaborate with network, infrastructure, cloud, endpoint, and application teams to validate security events and implement risk mitigation measures.
    • Maintain awareness of emerging cyber threats, attack techniques, indicators of compromise, and security best practices relevant to healthcare and public-sector environments.
    • Support compliance, audit, and reporting activities by providing evidence, metrics, and security operations documentation as requested.

    Candidate Skills and Qualifications:

    Years

    Required/Preferred

    Experience

    7

    Required

    Knowledge of SIEM, SOAR, EDR, XDR, NDR

    7

    Required

    Experience with security log collection and management

    7

    Required

    Experience with threat intelligence concepts

    7

    Required

    Skill in writing and interpreting KQL, SPL, and security queries to support investigations and reporting

    7

    Required

    Experience in SIEM platform/architecture support

    7

    Required

    Experience in detection engineering methodology and implementation

    10

    Preferred

    Knowledge of SIEM, SOAR, EDR, XDR, NDR

    10

    Preferred

    Experience with security log collection and management

    10

    Preferred

    Experience with threat intelligence concepts

    10

    Preferred

    Skill in writing and interpreting KQL, SPL, and security queries to support investigations and reporting

    10

    Preferred

    Experience in SIEM platform/architecture support

    10

    Preferred

    Experience in detection engineering methodology and implementation