

Search by job, company or skills

What's in it for you
There's a lot to love about Connext. Here are some of the reasons why:
Job Summary
The Cyber Security Analyst 1 is responsible in monitoring and investigating security alerts, including phishing, business email compromise, SIEM, and endpoint incidents, to identify and respond to potential threats. The role supports incident response, threat hunting, root-cause analysis, and security remediation while communicating findings effectively with technical and non-technical stakeholders.
Job Description
• Monitor and investigate email phishing, Business Email Compromise (BEC), SIEM, and endpoint security alerts.
• Triage potential threats and escalate incidents according to established security procedures.
• Conduct incident investigations, including evidence collection, root-cause analysis, and impact assessment.
• Develop and execute incident response playbooks to minimize security risks and business disruption.
• Perform proactive threat hunting to identify suspicious activity and emerging security risks.
• Work with security tools including SIEM, EDR, MDR, and business email security platforms.
• Monitor security environments across cloud and network infrastructure.
• Support incident containment, remediation, and follow-up activities.
• Document security incidents, investigation findings, actions taken, and recommended improvements.
• Communicate technical findings and security recommendations to technical and non-technical stakeholders.
• Identify opportunities to improve security monitoring, response processes, and automation.
Screening Criteria
• Minimum of three (3) years of experience in IT Security Operations, SOC, or a related cybersecurity role.
• Experience with Microsoft Office 365 and Azure.
• Experience with SIEM, EDR, and/or MDR security tools.
• Experience with email security platforms such as Barracuda or Proofpoint.
• Must have stable employment history.
Required Qualifications
• Has knowledge in incident response and digital forensics.
• Familiarity with network security concepts, including VPNs, segmentation, and secure protocols.
• Proven ability to investigate security alerts and determine potential threats.
• Proven ability to perform root-cause analysis and assess security impact.
• Proven ability to communicate technical security findings clearly.
• Proven ability to work independently and manage multiple security incidents and priorities.
• Demonstrates strong analytical and problem-solving skills.
• Demonstrates strong experience in security monitoring and incident response.
Job ID: 152546789