View all jobs

Network Security Analyst (Onsite)

  • Austin, TX

14905 - Network Security Analyst (Onsite) - Austin, TX

Start Date: ASAP
Type: Temporary Project.
Estimated Duration: 12 months with possible extensions
Work Setting: 100% of the time at the Client's site. No telecommuting or remote work. This is a non-negotiable requirement from the client.

Only candidates able to relocate as required should apply to avoid removal from future consideration.
Our client is filling this contract position exclusively through approved staffing partners, so this opportunity is not available by applying directly with the client. If you're interested, we'd be happy to represent you throughout the hiring process.

Required:
• Availability to work 100% of the time at the Client's site in Austin, TX.
• Experience with SIEM, SOAR, EDR, XDR, NDR (7 years);

• Experience with security log collection and management (7 years);
• Experience with threat intelligence concepts (7 years);
• Experience in writing and interpreting KQL, SPL, and security queries to support investigations and reporting (7 years);
• Experience in SIEM platform/architecture support (7 years);
• Experience in detection engineering methodology and implementation (7 years).

Preferred:
• Experience with SIEM, SOAR, EDR, XDR, NDR (10 years);

• Experience with security log collection and management (10 years);
• Experience with threat intelligence concepts (10 years);
• Experience in writing and interpreting KQL, SPL, and security queries to support investigations and reporting (10 years);
• Experience in SIEM platform/architecture support (10 years);
• Experience in detection engineering methodology and implementation (10 years).

Responsibilities:
• Monitor security alerts, logs, network events, endpoint telemetry, and threat intelligence feeds.
• Analyze suspicious activity, anomalous network behavior, malware indicators, endpoint detections, and SIEM correlation events to determine scope, impact, and required response actions.
• Perform incident triage, investigation, escalation, containment coordination, and documentation in alignment with the Client's security operations procedures.
• Develop, tune, and maintain detection rules, dashboards, alerts, playbooks, and queries to improve visibility across network, endpoint, identity, and cloud environments.
• Support threat hunting activities using KQL, SPL, packet/session analysis, endpoint telemetry, and other investigative techniques.
• Assist with vulnerability, risk, and control assessments for network security infrastructure and enterprise information systems.
• Document findings, prepare incident reports, track corrective actions, and communicate technical information to security leadership and business stakeholders.