Cybersecurity Analyst I
What You Will Do
The Cybersecurity Analyst at EXOS CYBER is the front line of our SOC
, the first set of eyes on every alert that comes into our environment, responsible for fast, accurate triage, clean documentation, and timely escalation when something warrants deeper investigation. You will support day-to-day security operations for our clients with a primary focus on security monitoring, detection, and incident response, working alongside senior security engineers and incident responders.This is a hands-on, high-volume role designed for analysts with 2 to 6 years of experience who are ready to deepen their SOC skills while gaining broad exposure to a real-world MSSP detection-and-response stack across diverse client environments.
You will help protect clients by identifying threats, responding to alerts, and continuously improving security posture.
Monitor and triage security alerts across multiple client environments using SIEM, EDR, email security, and cloud security tools
Validate and investigate common alert types, determine impact, and recommend or execute initial response actions based on runbooks
Escalatehigh-severity
or complex incidents to senior responders with accurate context, evidence, and timelines
Performincident response support activities
, including containment guidance, indicator collection, and post-incident documentation
Analyze endpoint, identity, and network telemetry to identify suspicious activity, lateral movement, and persistence attempts
Conduct phishing triage and supportemail-based
threat investigations, including user impact and remediation steps
Maintain thorough case notes, incident summaries, andclient-ready
communications in the ticketing or case management system
Assist with detection content improvements, including rule tuning, alert suppression, and use case enhancements to reduce false positives
Support vulnerability scanning programs by helping interpret results, tracking remediation, and coordinatingfollow-ups
with client IT teams
Contribute to operational excellence by improving runbooks, investigation checklists, and repeatable workflows