Cybersecurity Analyst

Posted 1 hour ago
Wrench Group
Remote | Wrench Group | $80,000-$90,000 + Bonus

Ready to take the next step in your cybersecurity career?

Wrench Group is looking for a Cybersecurity Analyst to join our Cybersecurity, Privacy & Governance team. This is a great opportunity for someone with foundational cybersecurity or IT operations experience who is ready to move beyond the basics, gain hands-on experience with enterprise security tools, and continue developing into a well-rounded cybersecurity professional.

You'll be part of our Cyber Fusion Center, helping monitor and investigate security activity, respond to threats, strengthen our security controls, and protect a growing organization.

This isn't a role where you'll simply watch alerts all day. You'll have opportunities to investigate, problem-solve, work with modern security technologies, and build deeper expertise in incident response, detection engineering, identity security, and security tooling.

What's In It For Me?

  • Market Value Compensation with robust bonus potential
  • Unlimited PTO Plan
  • Health, Vision and Dental plans for you and your family to choose from
  • 401K Retirement Plan company will match 30% up to the first 6% of your contributed amount
  • Life Insurance, Short-Term and Long-Term Disability
  • Special Program Options FSA, EAP, Legal Services, and Identity Theft
  • Working in a dynamic, collaborative, and fun environment
  • Coached and supported career growth through Wrench University


What Will I Do

Monitor, Investigate & Respond

  • Review, triage, and investigate security alerts from SIEM and detection platforms.
  • Respond to routine and moderate-complexity security events and know when to escalate more advanced incidents.
  • Provide Tier 1/Tier 2 SOC support and partner with senior analysts and IT Operations on complex investigations.
  • Investigate suspicious or quarantined email activity and take appropriate action.
  • Document findings, actions, and remediation steps.


Work With Security Technology

  • Help administer and tune tools such as Microsoft Defender, Rapid7, and SIEM platforms.
  • Support the development and improvement of detection rules, alerts, and playbooks.
  • Monitor security telemetry and data flowing into SIEM platforms.
  • Help improve detection processes, reduce false positives, and strengthen response times.


Protect Identity & Data

  • Support identity and access management, including access reviews and account administration.
  • Work with technologies including Microsoft Entra ID, Microsoft 365, and Intune.
  • Assist with identity security controls and data preservation activities.


Collaborate & Keep Learning

  • Work across Cybersecurity, IT, managed security services, and business teams.
  • Help turn security findings into clear, actionable information.
  • Stay current on emerging threats, vulnerabilities, and cybersecurity best practices.
  • Continue building your expertise across incident response, detection engineering, and security operations.


Do I Have What it Takes?

We're looking for someone who is curious, analytical, detail-oriented, and eager to grow.

You'll ideally have

  • 1-3 years of experience in cybersecurity, SOC operations, IT support, or another related technical role.
  • A bachelor's degree or equivalent experience in Cybersecurity, Information Technology, or a related field.
  • Working knowledge of cybersecurity fundamentals, including phishing, endpoint protection, networking, and identity security.
  • Hands-on exposure to security tools such as SIEM, endpoint protection, vulnerability management, or email security.
  • Strong analytical and problem-solving skills.
  • The ability to investigate issues independently while recognizing when escalation is needed.
  • Strong communication, documentation, and organizational skills.
  • A collaborative approach and willingness to learn.


Even Better If You Have

  • Security+, Network+, SC-900, AZ-900, or similar certifications.
  • Experience with Microsoft Defender, Rapid7, Microsoft Entra ID, or Microsoft Intune.
  • Exposure to incident response or cybersecurity frameworks.
  • Familiarity with KQL, LEQL, SPL, or other security log-query languages.
  • Basic PowerShell, Python, or automation experience.
  • Experience investigating Microsoft security alerts, Entra sign-in logs, audit logs, or identity-related security incidents.
Login to Apply Now