Senior Cybersecurity Analyst
Job Description
Department: Information Technology
Job Status: Full-Time
FLSA Status: Salary-Exempt
Reports To: Cybersecurity Manager
Location: The Woodlands, TX
Amount of Travel Required: Less than 5%
Work Schedule: Monday - Friday, 8 a.m. - 5 p.m.
Positions Supervised: N/A
AIP Level: 7
POSITION SUMMARY:
The Senior Cybersecurity Analyst is responsible for safeguarding the organization’s digital infrastructure by identifying and addressing vulnerabilities, monitoring, detecting, analyzing, and responding to cyber security threats. This role serves as a technical expert in threat detection, incident response, and contributes to the implementation of defense controls and mechanisms. The Senior Cybersecurity Analyst plays a critical role in protecting data, systems and networks from evolving cyber threats.
ESSENTIAL FUNCTIONS: (The following duties and responsibilities are all essential job functions, as defined by the ADA, except for those that begin with the word "may")
Threat Monitoring & Detection
- Monitor security alerts and events using SIEM platforms (e.g., Splunk, QRadar, Sentinel).
- Analyze logs from firewalls, IDS/IPS, endpoints, and cloud environments to identify suspicious activity.
- Correlate threat intelligence with internal data to detect advanced threats.
- Recommend enhancements to SOC processes, tools, and playbooks.
Incident Response & Investigation
- Act as a first responder to security incidents, performing root cause analysis and impact assessment.
- Coordinate containment, eradication, and recovery efforts for confirmed incidents.
- Document incident reports and recommend preventive measures.
Advanced Analysis & Forensics
- Perform regular threat analysis of malware, phishing attempts, and network anomalies.
- Perform vulnerability assessments and risk assessments to identify security gaps.
- Conduct forensic investigations on compromised systems and provide evidence for legal or compliance purposes.
- Develop detection use cases and fine tune SIEM rules for improved accuracy.
Collaboration & Escalation
- Act as an escalation point for cybersecurity analysts and provide technical guidance.
- Collaborate with cybersecurity engineering, IT, OT, and compliance teams to implement security improvements.
- Communicate incident status and risk assessments to leadership and stakeholders.
- Prepare regular security reports including metrics, vulnerability tracking and risk assessments.
Continuous Improvement
- Stay current with emerging threats, attack techniques, and security technologies.
- Participate in threat hunting activities and proactive security assessments.
- Develop and deliver training programs to educate employees on cybersecurity awareness and best practices, including phishing campaigns, data protection, and secure handling of sensitive information.
- Performs other related duties as assigned to assist with successful operations and business continuity.