Senior Cyber Security Analyst

Posted 42 minutes ago
Qualus
Power your future with Qualus in our Information Technology department as a Senior Cyber Security Analyst. Cyber Analyst is a vital member of the Qualus IT Security & Compliance team and plays an important role in protecting the organization’s systems, networks, data, and emerging technology platforms through proactive monitoring, detection, and response to cybersecurity threats.

This role requires expertise in enterprise security operations, threat analysis, and governance of modern technology ecosystems, including AI-enabled solutions, ensuring the protection of sensitive data and the resilience of business operations.

The Cyber Analyst will be responsible for monitoring and analyzing security events across Qualus’ layered security architecture, including endpoint, network, email, data protection, and AI-enabled systems and services.

Additionally, the Cyber Analyst will support the secure adoption and governance of Artificial Intelligence (AI) solutions across Qualus, ensuring appropriate controls, data protections, and compliance requirements are enforced.

A security first mindset, strong analytical skills, and the ability to assess risk across both traditional IT systems and AI driven technologies are critical to success in this role.

This position may require after hours support as determined by the needs of the business, including participation in incident response activities.

Responsibilities

  • Monitor, triage, and investigate alerts across endpoint, identity, email, network, cloud, SIEM/EDR, AI-enabled systems, and data protection platforms.
  • Correlate security events across Qualus enterprise security stack, including CrowdStrike Falcon Complete, Microsoft Defender, Abnormal Security, Zscaler Z4U, Meraki, Microsoft Purview, Tenable Nessus, and Falcon Next-Gen SIEM/logging platforms.
  • Support incident response activities, including alert validation, containment coordination, evidence collection, root cause analysis, corrective action tracking, and post-incident documentation.
  • Support Microsoft security and compliance platforms, including Microsoft Defender, Microsoft Purview, data classification, sensitivity labeling, DLP, retention, audit, and eDiscovery-related activities.
  • Perform vulnerability management activities using Tenable Nessus and CrowdStrike related processes, including validation, risk prioritization, remediation coordination, exception tracking, and reporting.
  • Support SIEM/EDR detection engineering, alert tuning, investigation workflows, and security playbook development.
  • Assist with enforcement of Zero Trust principles, including conditional access, identity-based controls, Federated Authentication (SSO), MFA, RBAC, least privilege, and device posture validation.
  • Review and support cybersecurity policies, standards, and procedures related to access control, acceptable use, data protection, AI governance, vulnerability management, incident response, and vendor risk management.
  • Support security assessments for SaaS platforms, cloud services, vendors, and AI-enabled tools to identify risks.
  • Assist with audit evidence collection, customer security questionnaires, control validation, and compliance documentation aligned with SOC 2, NIST 800-171, ISO 27001, ISO 42001, and other applicable requirements.
  • Stay current on threat trends, AI security risks, Microsoft security capabilities, data protection practices, and security operations best practices.
  • Provide guidance and knowledge sharing to team members and stakeholders as needed.
  • Other duties as assigned.

Minimum Qualifications

  • Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or related field, or equivalent professional experience.
  • 5 to 8+ years of experience in cybersecurity, security operations, incident response, security engineering, IT risk, or related roles.
  • Hands-on experience with EDR, SIEM, email security, vulnerability management, Microsoft security tools, and data protection platforms.
  • Experience investigating security alerts, documenting findings, and supporting incident response activities.
  • Working knowledge of Microsoft Defender, Microsoft Purview, Microsoft 365 security, identity security, data classification, DLP, and audit/eDiscovery concepts.
  • Experience with CrowdStrike Falcon, Abnormal Security, Zscaler, Tenable Nessus, Meraki, and Falcon Next Gen SIEM/logging platforms.
  • Familiarity with Zero Trust, least privilege, RBAC, conditional access, MFA, and device posture concepts.
  • Understanding of cybersecurity frameworks and compliance expectations, including NIST 800-171, SOC 2, ISO 27001, ISO 42001, and audit evidence practices.
  • Ability to communicate technical findings clearly to IT, business, audit, and leadership stakeholders.

Benefits & Compensation

Qualus benefits offered include Medical, Dental, Vision, Life Insurance, Short and Long-Term Disability, 401(k) match, Flexible Spending Accounts, EAP, Parental Leave, Paid time off, and Holidays, for those who qualify.

The final salary awarded for this role may vary from the above range based on several factors including, but not limited to, relevant education, qualifications, certifications, experience, skills, seniority, geographic location, performance, and business or organizational needs. The salary range provided in this job posting may be subject to change for business purposes.

Company Overview

Qualus is a leading pure-play power solutions firm and innovator at the forefront of power infrastructure transformation, with differentiated capabilities across grid modernization, resiliency, security, and sustainability. The firm partners with utilities, commercial, industrial, data center, and government clients, and renewable and energy storage developers, offering comprehensive solutions through boutique and integrated advisory, planning, engineering, digital solutions, program management, energy efficiency and specialized field services. Qualus also provides software and technology enabled services and develops breakthrough solutions for critical power industry challenges such as distributed and variable resource integration, emergency management, and secure data exchange. The firm has over 2,000 professionals, with offices throughout the U.S. and Canada.

Equal Opportunity Employer

We are an equal opportunity employer and value diversity. We are committed to providing an inclusive workplace and do not discriminate on any grounds protected by applicable human rights legislation across Canada and the US.

We are committed to a secure and transparent hiring process. We do not request payment or sensitive personal information, such as Social Security numbers or banking details, during the application process. Please use caution and verify opportunities through our official channels.

Login to Apply Now