remote
Cyber Security Analyst - Primoris Services Corporation
Security Engineer
Cyber Security Analyst driving SOC operations: monitor, detect, investigate, and respond to threats across enterprise and cloud environments using SIEM, threat intel, and incident response tools.
About the role
Key Responsibilities
- Monitor and analyze security alerts from SIEM and endpoint detection tools across on‑premise and cloud infrastructures.
- Investigate incidents, perform root‑cause analysis, and coordinate containment and remediation with IT and infrastructure teams.
- Correlate threat intelligence feeds to enhance detection rules and improve response playbooks.
- Document incident details, update runbooks, and maintain accurate ticketing records in the SOC workflow.
- Assist in the configuration and tuning of security controls for AWS, Azure, and Linux environments.
Requirements
- 3+ years of SOC or incident response experience in a large enterprise.
- Proficiency with SIEM platforms (e.g., Splunk, QRadar) and endpoint detection/response solutions.
- Strong scripting skills in Python for automation and data analysis.
- Hands‑on experience with cloud security (AWS, Azure) and Linux system hardening.
- Excellent communication skills and ability to work collaboratively across teams.