Cyber Security Analyst
AbbaDox · Hallandale Beach, FL
Apply & track with Apply EdgeCybersecurity Analyst - ABBADOX Company Overview At AbbaDox, we seek passionate, innovative talent to help us optimize practice operations. Recognized as one of the South Florida Sun Sentinel's Top Workplaces for 2026, AbbaDox is growing rapidly, and we are seeking motivated professionals to help shape the future of healthcare IT. Cybersecurity Analyst Title: Cybersecurity Analyst Location: Hallandale Beach, FL. Report to: Chief Information Security Officer Status: Full-Time AbbaDox builds the software platform that healthcare organizations rely on to run their patient workflows. As we continue to grow, we are expanding our security team to help protect that platform. You will work directly with the CISO, taking on real ownership from day one: triaging alerts, conducting threat hunts, reviewing cloud configurations, and helping determine remediation priorities. The role is varied by design, some weeks focus on detection logic and threat hunting, others on auditing cloud environments for misconfigurations, and others on incident response. We prioritize trajectory over checklists. Candidates with a few years of hands-on experience, strong analytical curiosity, and the discipline to continually build new skills will thrive in this role. Responsibilities Detection & Threat Hunting Triage, investigate, and close out alerts across our XDR and endpoint protection stack — and improve the detection logic behind the noisy ones. Run proactive threat hunts rather than waiting for an alert to tell you something is wrong: build a hypothesis, query the data, prove or disprove it, document what you found. Identity & Endpoint Security Monitor and harden our identity layer — SSO, MFA, conditional access, privileged accounts, and the anomalies that show up in authentication logs. Support endpoint security and device management: compliance policies, device posture, patch and configuration drift across the fleet. Cloud & Application Security Review cloud environments against security best practices — IAM permissions, network exposure, logging coverage, misconfigurations — and drive the findings to closure with engineering. Participate in code and pull request reviews from a security perspective: authentication and authorization logic, input handling, secrets management, dependency risk. Incident Response & Documentation Help investigate and contain security incidents, including phishing, compromised accounts, and vendor-side events, and write up what happened. Collaborate with DevOps and engineering as a partner rather than a gatekeeper, providing findings with context and a clear path to resolution. Build the documentation, runbooks, and reporting that make the security program repeatable. Requirements 1–3 years of hands-on experience in security, IT, infrastructure, or a SOC role. Sysadmin, NOC, helpdesk-to-security, and internship-plus-lab paths all count if you can demonstrate the skills. Working familiarity with an EDR or XDR platform: you've triaged real alerts, understand what the detection was looking for, and know the difference between noise and something worth escalating. Understanding of endpoint protection and antivirus solutions, including how they function, how they can be evaded, and why coverage gaps occur. Exposure to an identity provider and the concepts behind it: single sign-on, MFA, conditional access, least privilege. Exposure to endpoint or mobile device management: enrollment, compliance policy, and device posture enforcement. Familiarity with at least one major cloud provider (AWS, Azure, or GCP) and its core security primitives — identity and access management, network controls, and logging. Sufficient comfort with code to follow application logic and identify obvious security issues. Prior development experience is not required, but familiarity with reviewing pull requests is expected. Highly self-directed, with the initiative to research unfamiliar problems, ask insightful questions, and identify meaningful work without requiring explicit assignment. Strong written communication skills; findings must be clearly documented to ensure timely remediation. Preferred Skills Experience across more than one cloud provider. Scripting or automation ability in Python, PowerShell, or Bash. Detection engineering experience, or comfort writing queries against a SIEM or log platform. Home lab projects, CTF participation, bug bounty experience, or self-directed offensive security work are valued as much as formal coursework. Container, Kubernetes, or CI/CD pipeline exposure. Certifications such as Security+, AZ-500, AWS Security Specialty, GCIH, or eJPT are welcome, but we weight demonstrated skill higher. How You'll Grow This is a deliberately broad role, and breadth is the point. Over your first 18 months you will get real depth in threat hunting and detection engineering, multi-cloud security, application security and secure code review, and incident response — the kind of range that is difficult to get on a large team where analysts stay in one lane. You will have a clear path toward a senior security engineering track. AbbaDox Benefit Highlights Health Insurance, 401(k) with a match, Vacation/Sick time off, Employee Assistance Program, Flexible Spending Accounts.We provide our team with a company culture based on learning, the support of an engaged team, and an environment where all employees are valued. AbbaDox is committed to a policy of equal employment opportunity—that's why we recruit and hire applicants without regard to race, color, religion, sex, national origin, disability, age, sexual orientation, veteran status, or any other factor prohibited by law.