# IT Security Operations Analyst

**Company:** [AlertMedia](https://hotfix.jobs/companies/alertmedia)
**Location:** Austin, TX
**Role:** Security Engineering
**Experience:** 2+ years
**Skills:** microsoft defender, microsoft sentinel, SIEM, edr, SOC 2, ISO 27001, PowerShell, kql, microsoft 365, entra id, comptia security+, comptia cysa+, microsoft sc-200
**Posted:** 2026-07-29

> Hands-on tier-one IT Security Operations Analyst monitoring Microsoft Defender and Sentinel for threats, triaging alerts, investigating phishing and account compromises, performing access audits, and supporting SOC 2/ISO audits. Requires 1-2 years security or sysadmin experience and familiarity with Microsoft security tools.

## Job Description

## What you get to do everyday

- Monitor Microsoft Defender and Microsoft Sentinel for security alerts, and triage each one to determine whether it represents a real threat, a policy violation, or a false positive.
- Conduct a monthly review of user accounts and access rights across AlertMedia’s systems, flagging stale, orphaned, or over-permissioned accounts for remediation.
- Investigate reported phishing emails: trace headers, check URLs and attachments against threat intelligence, and determine whether any employee interacted with the message before it was reported.
- Respond to suspected account compromises by containing the affected account, resetting credentials, reviewing sign-in and audit logs for unauthorized activity, and documenting the full timeline.
- Triage and remediate other security incident types, escalating complex or high-severity incidents to senior analysts according to AlertMedia’s incident response playbooks.
- Maintain accurate, detailed incident records and investigation notes that hold up to internal review and external audit.
- Support annual SOC 2 and ISO 27001 audits by gathering evidence, documenting controls, and responding to auditor requests alongside the security and compliance teams.
- Assist with identity and access management tasks, including provisioning, deprovisioning, and periodic access reviews tied to employee onboarding and offboarding.
- Contribute to and help keep current the security playbooks and standard operating procedures used across the team.
- Support employee security awareness efforts, including targeted follow-up training after phishing or social engineering incidents.
- Create and maintain consistent simulated phishing campaigns.

## What you bring to the role

- One to two years of experience in IT security, security operations, systems administration, or a related technical role.
- Working familiarity with Microsoft Defender (Endpoint, Identity, or Office 365) and Microsoft Sentinel, or comparable SIEM and EDR tools.
- A methodical, detail-oriented approach to investigation.
- Clear written and verbal communication; you can explain a technical finding to both an engineer and a non-technical stakeholder.
- A basic understanding of identity and access management concepts, including least privilege and account lifecycle management.

## What sets you apart

- Exposure to compliance frameworks such as SOC 2, ISO 27001, or NIST, including audit evidence collection preferred.
- A relevant certification such as CompTIA Security+, CompTIA CySA+, or Microsoft SC-200 preferred.
- Familiarity with Microsoft 365 administration, Azure Active Directory (Entra ID), or basic KQL queries.
- Basic scripting ability in PowerShell for investigation and light automation preferred.
- 1-2 years experience in security/security operations or 3-5 years experience in system administration preferred.

## Why you’ll love working at AlertMedia

- Competitive base salary + Company-wide bonus program.
- Generous and flexible time and parental leave policies.
- Health benefits - Medical, Dental, Vision and Life Insurance 100% paid for employees!
- 401K with a generous company match.
- Amazing rewards and incentives – we love celebrating each other!
- Commitment to community service with opportunities to give back.
- A Best Places to Work company 10 years in a row and numerous other awards.
- Access to brand new downtown office with 360 views of Austin, high-tech building gym, and nearby running trails.
- Ongoing career development opportunities with our Learning and Development team.

## Similar roles

- [Junior Cybersecurity Analyst](https://hotfix.jobs/jobs/3fd35ee9-d333-43cf-82c8-98805a50eb27) - Agency - Richmond, VA - $31k – $42k/yr
- [GRC Team Intern](https://hotfix.jobs/jobs/3b4666f7-d60f-477e-846d-54f49750ec6b) - Cloudflare - Austin, TX
- [Cyber Security Intern](https://hotfix.jobs/jobs/11a72900-cc7b-48a2-aa7d-c1e8943ac4c0) - Labelbox - San Francisco, CA - $40 – $55/hr
- [Detection Engineer II](https://hotfix.jobs/jobs/bd254448-d347-417b-a32b-42ef4f1eff89) - Instacart - Remote - $142k – $181k/yr
- [Security Guard](https://hotfix.jobs/jobs/6292c1e4-c4fe-48cd-9b8b-1c74ddf56031) - Idme - McLean, VA - $52k – $56k/yr

**Apply:** https://hotfix.jobs/jobs/3a492a05-9ad3-485e-8f86-9a23c7e1e9ae
**Canonical:** https://hotfix.jobs/jobs/3a492a05-9ad3-485e-8f86-9a23c7e1e9ae