Monitor, investigate, and respond to security alerts, phishing, vulnerabilities, and incidents for managed security clients. Conduct threat hunts, collect evidence, identify root causes, perform containment and remediation, and create incident reports and SOPs. Support deployment of security toolsets, collaborate with analysts and engineers, communicate with clients, and participate in after-hours or on-call coverage.
The Senior Security Analyst will monitor and manage alerts generated from various security tools and respond to and mitigate security threats for CompassMSP’s managed security service clients. They will also assist in deploying and managing the technology that enables our core security services, maximizing and bolstering our clients’ security with their technical expertise and knowledge of security industry best practices.
Job requirements
Preferred Additional Experience:
Job responsibilities
Benefits
CompassMSP is committed to fair and equitable compensation practices. Salary range will reflect experience, location and other factors. This position is eligible for an annual bonus.
Job requirements
- 5+ years of experience in a SOC/incident response role.
- Demonstrated experience conducting alert and incident investigationsend-to-end with minimal oversight and sound escalation judgment
- Execution-oriented: able to perform containment, blocking, isolation, and basic remediation in small and mid-sized business environments.
- Experience monitoring and responding to threatsimpactingWindows, Microsoft 365 / Entra ID, and firewalls.
- Familiarity and comfort working acrossEDR,firewalladministration, identity and email security consoles, ticketing systems, RMM tools, and security telemetry sources.
Preferred Additional Experience:
- Infrastructure Recovery & IT Engineering
- Network, cloud, and endpoint recovery
- Firewall, VPN, and zero-trust environments
- Backup validation and isolated recovery environments
- Active Directory, virtual hosts, domain controllers, migrations, and secure system restoration
- Endpoint wipe-and-reload and related rebuild activities
Job responsibilities
- Investigate, manage,respond to,and escalatesecurity alerts from various security platforms, such as EDR/XDR, SIEM, etc.
- Analyze security events escalated from tier 1 tovalidatethreats and respond accordingly.
- Investigate and respond to reported phishing emails.
- Analyze, prioritize, and track vulnerabilitiesdetected by vulnerability scanners.
- Researchemerging threatsand perform global threat huntsto support correlating industrydata and threat feeds with our clients’ environments andattack surfaces.
- Conduct incident response procedures, investigatingindicators of compromise,identifyingroot causes, collecting evidence, anddrafting incident response reports.
- Collaborate with othersecurityanalysts,compliance analysts,Compassengineers,andvCISOs,lendingthem yourtechnicalexpertisein ordertoprovide exceptional managed security services toour clients.
- Interface directly with clients and end users wheninvestigating threats and managing/troubleshooting managed security tools.
- Assistin the deployment of the managed security services toolstackto new clients.
- Assistwithinternal quality projects, including developing standardsandsecurityservicesforCompassMSP.
- Stay current with the latest industry trends, best practices, and regulatory requirements tohelpcontinuously enhance our securityservices.
- Hunt for emerging threats using a combination ofmethods and tools such as SIEM querying, software testing, sandboxing, etc.Translate the results of threat hunts into actionable alerts andanalysisSOPs to aid the SOC in protecting clients.
- Create andmaintaininternal standard operating procedures.
- Participate in a flexible work schedule to includeafter hours/ on-call shifts.
Benefits
- Competitive pay
- Quarterly Bonuses
- Progressive PTO
- Medical/Dental/Vision/Life/Disability available
- Tax deferred retirement plan with company match
- Career Development and Coaching
- Fun work environment!
CompassMSP is committed to fair and equitable compensation practices. Salary range will reflect experience, location and other factors. This position is eligible for an annual bonus.
Similar Jobs
Security • Cybersecurity
Lead OT security monitoring and triage operations, investigate suspicious activity across industrial networks, tune detections, manage vulnerabilities and asset classification, and escalate findings to incident responders and threat hunters. Produce customer-facing reports, support platform operations, mentor analysts, and collaborate across cybersecurity teams. The role requires shift-based coverage, remote coordination, and expertise in network security with a strong interest in ICS/OT environments.
Top Skills:
BashDnp3DnsDragos PlatformEthernet/IpFirewallsIds/IpsMitre Att&Ck For IcsModbusNetwork Traffic AnalyzersPacket AnalysisPcapPythonSIEMTcp/Ip
Artificial Intelligence • Big Data • Cloud • Information Technology • Software • Big Data Analytics • Automation
Secures enterprise business applications and integrations, including NetSuite and SAP SuccessFactors. Reviews configurations, access models, APIs, data flows, IAM, logging, and cloud controls; performs risk assessments, threat modeling, and audit support; aligns controls with FedRAMP, ISO 27001, SOC 2, and SOX requirements. Partners with application owners, cloud teams, IT, security, and business stakeholders to implement least privilege, secure configurations, compensating controls, and remediation plans.
Top Skills:
Api SecurityAWSAzure AdDell BoomiIamNetSuiteOktaRbacSap SuccessfactorsSIEMSso
Artificial Intelligence • Big Data • Cloud • Security • Software • Cybersecurity • Infrastructure as a Service (IaaS)
Lead complex security investigations across endpoint, identity, cloud, email, SaaS, and network environments. Own incidents through containment, remediation coordination, documentation, and post-incident review. Tune detections, queries, dashboards, workflows, and SOAR playbooks; improve SOC metrics, threat coverage, alert fidelity, and response processes. Partner on vulnerability and cloud-risk remediation, participate in global on-call rotation, use approved AI capabilities responsibly, and mentor analysts.
Top Skills:
Cloud SecurityDarktrace EmailEdrEmail SecurityIdentity SecurityMitre Att&CkPowershellPythonRapid7 Exposure CommandRapid7 InsightidrRapid7 InsightvmSIEMSoarSumo Logic Cloud SiemVulnerability ManagementWiz
What you need to know about the Austin Tech Scene
Austin has a diverse and thriving tech ecosystem thanks to home-grown companies like Dell and major campuses for IBM, AMD and Apple. The state’s flagship university, the University of Texas at Austin, is known for its engineering school, and the city is known for its annual South by Southwest tech and media conference. Austin’s tech scene spans many verticals, but it’s particularly known for hardware, including semiconductors, as well as AI, biotechnology and cloud computing. And its food and music scene, low taxes and favorable climate has made the city a destination for tech workers from across the country.
Key Facts About Austin Tech
- Number of Tech Workers: 180,500; 13.7% of overall workforce (2024 CompTIA survey)
- Major Tech Employers: Dell, IBM, AMD, Apple, Alphabet
- Key Industries: Artificial intelligence, hardware, cloud computing, software, healthtech
- Funding Landscape: $4.5 billion in VC funding in 2024 (Pitchbook)
- Notable Investors: Live Oak Ventures, Austin Ventures, Hinge Capital, Gigafund, KdT Ventures, Next Coast Ventures, Silverton Partners
- Research Centers and Universities: University of Texas, Southwestern University, Texas State University, Center for Complex Quantum Systems, Oden Institute for Computational Engineering and Sciences, Texas Advanced Computing Center



