Primoris Services Corporation Logo

Primoris Services Corporation

Cyber Security Analyst

Reposted 5 Days Ago
Remote
Hiring Remotely in Texas, USA
110K-120K Annually
Senior level
Remote
Hiring Remotely in Texas, USA
110K-120K Annually
Senior level
Monitors, detects, investigates, and responds to enterprise cybersecurity threats within a Security Operations Center. Responsibilities include SIEM and EDR alert triage, incident response, endpoint and identity threat analysis, cloud security monitoring, vulnerability remediation support, and investigation of phishing, malware, ransomware, and unauthorized access. The analyst also supports Zero Trust initiatives, SOAR automation, playbook development, root-cause analysis, and continuous improvement of security operations.
The summary above was generated by AI

Job Overview:

The Cybersecurity Analyst – SOC Operations is responsible for monitoring, detecting, investigating, and responding to cybersecurity threats across the enterprise environment. This role serves as a key member of the Security Operations Center (SOC) and focuses on threat detection, incident response, endpoint security, identity threats, and security monitoring of enterprise infrastructure, cloud environments, and critical business systems.

The analyst will investigate security alerts, triage incidents, correlate threat intelligence, and collaborate with IT and infrastructure teams to contain and remediate cybersecurity risks. This position plays an operational role in maintaining enterprise security visibility and minimizing cyber risk exposure.

Key Responsibilities/Accountabilities:

Security Monitoring & Threat Detection

  • Monitor enterprise security tools and alerts for suspicious activity, malicious behavior, or policy violations.
  • Analyze and triage security events generated from:
    • SIEM platforms
    • Endpoint Detection & Response (EDR)
    • Email security platforms
    • Network monitoring tools
    • Identity and access monitoring solutions
    • Cloud security platforms
  • Investigate indicators of compromise (IOCs), anomalous behaviors, and suspicious user activity.
  • Correlate logs and events across multiple security systems to identify threats.
  • Escalate high-risk incidents according to playbooks and incident severity classifications.

Incident Response

  • Participate in cybersecurity incident response activities including:
    • Detection
    • Triage
    • Containment
    • Eradication
    • Recovery
    • Post-incident review
  • Investigate phishing, malware, ransomware, account compromise, insider threat, and unauthorized access incidents.
  • Document incident findings, root cause analysis, and remediation recommendations.
  • Support after-hours cybersecurity response activities when necessary.

Endpoint, Identity & Network Security

  • Monitor endpoint security posture and investigate endpoint-related threats.
  • Analyze authentication anomalies including:
    • Privileged account misuse
    • Impossible travel
    • MFA anomalies
    • Suspicious logins
    • Excessive failed authentication attempts
  • Support Zero Trust security initiatives through continuous monitoring of identity, device, and access risks.
  • Investigate unusual network behavior and lateral movement attempts.

Cloud Security Monitoring

  • Monitor cloud security events across Microsoft 365, Azure, SaaS platforms, and enterprise cloud services.
  • Investigate risky cloud behaviors, privilege escalation, abnormal sharing, and unauthorized access attempts.
  • Assist with remediation of cloud security findings and misconfigurations.

Vulnerability & Exposure Management Support

  • Review vulnerability scan results and assist with prioritization of remediation activities.
  • Validate remediation of critical vulnerabilities.
  • Monitor exposure trends and recurring weaknesses affecting enterprise systems.

Security Automation & Continuous Improvement

  • Assist in developing playbooks and incident response procedures.
  • Support SOAR workflows and automation initiatives.
  • Identify opportunities to improve detection coverage and operational efficiencies.
  • Contribute to lessons learned and continuous improvement activities.

Requirements / Basic Qualifications:

  • 5+ years of Cybersecurity experience required
  • CrowdStrike Falcon experience required
  • Security Monitoring & Detection:
  • SIEM platforms such as Microsoft Sentinel, Splunk Enterprise Security, or similar
  • EDR/XDR solutions such as Microsoft Defender for Endpoint or comparable platforms
  • Security log analysis and event correlation
  • Identity & Access Security:
  • Identity monitoring in environments such as:
    • Microsoft Entra ID
    • Active Directory
    • Privileged Access Management systems
  • Authentication threat analysis
  • Network & Cloud Security:
  • Firewall, DNS, proxy, and network telemetry analysis
  • Experience with:
    • Zscaler
    • Microsoft security ecosystem
    • Cloud security monitoring tools
  • Familiarity with SaaS and remote-access security models
  • Automation & Response:
  • Experience with scripting (PowerShell, Python, or Bash preferred)
  • Familiarity with SOAR and security automation

Preferred Certifications:

Preferred certifications include:

  • CompTIA Security+
  • CompTIA CySA+
  • GCIH
  • AZ-500
  • CISSP (preferred for senior analyst level)

PAY EQUITY

$110,000 - $120,000

Primoris Renewable Energy provides the following compensation range and general description of other compensation and benefits that it in good faith believes it might pay and/or offer for this position. This compensation range is based on a full-time schedule. Primoris Renewable Energy reserves the right to ultimately pay more or less than the posted range and offer additional benefits and other compensation, depending on circumstances not related to an applicant’s sex or other status protected by local, state, or federal law.

Company Overview:

Primoris Services Corporation is a premier specialty contractor providing critical infrastructure services to the utility, energy, and renewables markets throughout the United States and Canada. Built on a foundation of trust, we deliver a range of engineering, construction, and maintenance services that power, connect, and enhance society. On projects spanning utility-scale solar, renewables, power delivery, communications, and transportation infrastructure, we offer unmatched value to our clients, a safe and entrepreneurial culture to our employees, and innovation and excellence to our communities. To learn more, visit www.prim.com and follow us on social media at @PrimorisServicesCorporation.

Benefits:

  • 401k w/employer match

  • Health/Dental/Vision insurance plans

  • Paid time off

  • 10 paid holidays

  • Stock purchase plan

EEO Statement

We are an equal opportunity employer, and all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability status, protected veteran status, or any other characteristic protected by law.

Agency Statement

We are not accepting resumes from Third Party Recruiting Firms for this position. If you are an Agency or Search firm representative, contact the Primoris Talent Acquisition Manager directly for consideration. Primoris or its subsidiaries will not be responsible for any fees arising from the use of resumes and online response forms through this source. In addition, Primoris or its subsidiaries will not be responsible for any fees on unsolicited resumes that are submitted to any member of the Staffing or Operations team. Primoris has established an approved vendor program for this service and will only consider accepting submissions from those approved firms. For consideration in becoming an approved vendor, contact HR.

Equal Opportunity Employer

This employer is required to notify all applicants of their rights pursuant to federal employment laws. For further information, please review the Know Your Rights notice from the Department of Labor.

Similar Jobs

6 Days Ago
Remote
United States
Mid level
Mid level
Software
Build automation and data tooling for Sales Engineering, support customer Proofs of Value, integrate and validate security data, and analyze vulnerabilities, controls, and attack paths. Own threat intelligence for go-to-market teams by tracking CVEs and active exploitation. Present findings to customers, support technical sales conversations, and collaborate with Product, R&D, and Research to improve detection and mitigation logic.
Top Skills: Cloud SecurityCnappEdrGoLlm WorkflowsMcp IntegrationsNgfwPythonSQLTcp/IpVulnerability ScannersWaf
22 Days Ago
Remote
United States
80K-93K Annually
Expert/Leader
80K-93K Annually
Expert/Leader
Information Technology • Consulting
Support VA Health portfolio cybersecurity across projects: lead ATO/ATC activities, develop security/privacy artifacts, review controls against NIST SP 800-53, perform scans and remediation, update ServiceNow/CAM and GRC tools, prepare audit documentation, and coordinate with stakeholders to identify and mitigate risks while enabling agile application development and operations.
Top Skills: AcasAgile/ScrumCloud Migration/Security ArchitectureFedrampFismaGrc ToolHbssHipaaHitechHl7NessusNist Sp-800-53 Rev 4ServicenowServicenow CamVa Risk And Governance ToolVista
Senior level
HR Tech • Professional Services • Consulting • Financial Services
Provide fractional cybersecurity advisory and hands-on operations for hedge funds and family offices: conduct assessments, run vulnerability management and incident response, implement policies and controls, monitor logs and network traffic, test BCDR plans, advise on vendor selection, and report KPIs and remediation plans.
Top Skills: Active DirectoryAzureForescout CounteractOffice365Rapid7 NexposeSophos AntivirusSplunk CloudSQLVaronis DatalertWindows DesktopWindows Server

What you need to know about the Austin Tech Scene

Austin has a diverse and thriving tech ecosystem thanks to home-grown companies like Dell and major campuses for IBM, AMD and Apple. The state’s flagship university, the University of Texas at Austin, is known for its engineering school, and the city is known for its annual South by Southwest tech and media conference. Austin’s tech scene spans many verticals, but it’s particularly known for hardware, including semiconductors, as well as AI, biotechnology and cloud computing. And its food and music scene, low taxes and favorable climate has made the city a destination for tech workers from across the country.

Key Facts About Austin Tech

  • Number of Tech Workers: 180,500; 13.7% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Dell, IBM, AMD, Apple, Alphabet
  • Key Industries: Artificial intelligence, hardware, cloud computing, software, healthtech
  • Funding Landscape: $4.5 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Live Oak Ventures, Austin Ventures, Hinge Capital, Gigafund, KdT Ventures, Next Coast Ventures, Silverton Partners
  • Research Centers and Universities: University of Texas, Southwestern University, Texas State University, Center for Complex Quantum Systems, Oden Institute for Computational Engineering and Sciences, Texas Advanced Computing Center

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account