Apply Edge Start your job search

Security Analyst

TechMind RPO · Las Vegas, NV

Apply & track with Apply Edge
Position OverviewThe Security Analyst plays a key role in safeguarding the organization’s information systems byproactively identifying, investigating, and responding to threats across the enterprise securitystack. This position specializes in threat hunting within Microsoft Defender XDR, MicrosoftSentinel, and Microsoft Security for Copilot, leveraging advanced telemetry, analytics, andautomation capabilities to detect and mitigate cyber threats. The analyst will collaborate closelywith IT, security operations, and leadership to enhance detection capabilities, strengthen securityposture, and support continuous improvement.Key Responsibilities Conduct proactive threat hunting across Defender XDR, Sentinel, and Microsoft Securityfor Copilot. Analyze security events, alerts, and anomalies to identify malicious activity, suspiciousbehavior, or policy violations. Develop and refine hunting queries, detection rules, analytics, and playbooks. Investigate endpoint, identity, email, and cloud signals to identify patterns of compromiseor emerging threats. Perform deep-dive analysis of incidents, prepare findings, and recommend mitigationstrategies. Collaborate with SOC personnel, IT system owners, and leadership to coordinateresponse and remediation. Leverage SIEM, XDR, and AI-assisted security tools to improve detection accuracy andreduce false positives. Maintain awareness of current threat actors, TTPs, and industry trends. Contribute to the enhancement of dashboards, analytics, and automation used for real-time monitoring. Support internal security reporting, documentation, and compliance as needed.Minimum Qualifications At least 3 years of experience in Information Security with a strong emphasis on threathunting and security analytics. Hands-on experience using Microsoft Defender XDR, Microsoft Sentinel, and/orCopilot for Security. Strong understanding of Windows, Linux, and cloud log sources, telemetry, and securityevents. Ability to interpret complex data, identify trends, and communicate findings clearly. Experience with incident response, vulnerability analysis, and threat intelligenceconcepts.Preferred Qualifications Certifications such as CISSP, GIAC, Security+, Azure Security, or similar areconsidered a plus, but equivalent realworld experience is strongly valued. Experience working in SOC environments or with SIEM/XDR technologies. Familiarity with Zero Trust principles, identity security, and cloud security operations.