×
Register Here to Apply for Jobs or Post Jobs. X

Cybersecurity Senior Analyst

Job in Durham, Durham County, North Carolina, 27703, USA
Listing for: Creo Inc
Full Time position
Listed on 2026-02-09
Job specializations:
  • IT/Tech
    Cybersecurity, Security Manager, IT Support
Job Description & How to Apply Below

Overview

JOB DESCRIPTION OVERVIEW

The Cybersecurity Senior Analyst supports the delivery of cybersecurity consulting services, with a primary focus on Microsoft security technologies (Microsoft 365, Azure, Microsoft Defender, and Microsoft Sentinel). This role is hands-on in client environments and works closely with consulting leads who manage most client communications. The Senior Analyst executes assigned technical tasks, performs analysis, and produces high-quality documentation and deliverables that consultants use in client presentations and recommendations.

This position is ideal for someone who is comfortable operating independently on defined work streams (e.g., vulnerability management, security monitoring support, identity reviews, configuration assessments) while still collaborating closely with senior consultants/architects for direction and quality assurance.

POSITION RESPONSIBILITIES
  • Engagement Delivery Support (Consultant-led execution)
    • Execute scoped technical tasks in client environments under direction of the engagement Consultant/Lead (e.g., configuration exports, evidence capture, running approved scripts/queries, validating settings).
  • Track assigned tasks, dependencies, and blockers; escalate issues early with proposed options.
  • Coordinate primarily with internal consulting staff; join select client meetings as needed for technical context or note-taking (client communication typically routed through the Consultant/Lead).
  • Microsoft Identity & Access Management Support (Entra  / Azure AD)
    • Perform identity posture reviews: privileged role assignments, admin hygiene, MFA coverage, legacy authentication exposure, risky sign-ins context gathering, and guest/external access posture.
  • Support Conditional Access initiatives by documenting policy intent, performing impact analysis (who/what is affected), validating implementation results, and capturing evidence.
  • Assist with access governance activities (e.g., access reviews status, group/role hygiene, application registration/service principal inventory support).
  • Microsoft 365 Email & Collaboration Security Support
    • Support validation of key M365 security controls such as anti-phishing/anti-spam policy posture, Safe Links/Safe Attachments configuration evidence, and tenant security settings.
  • Assist with basic domain/email authentication, posture checks (SPF/DKIM/DMARC status documentation and recommendations).
  • Support evidence gathering and documentation for collaboration/data controls (e.g., SharePoint/One Drive sharing posture, baseline checks) as scoped by the engagement lead.
  • Endpoint & Device Security Support (Defender, Defender for Endpoint/Sentinel One, Intune, JAMF)
    • Validate endpoint security onboarding coverage and basic posture (e.g., sensor health, policy application status, and tamper protection evidence).
  • Support collection of endpoint investigation context (alert/device timeline exports, event/log context gathering) as permitted by client procedures.
  • Assist with documenting endpoint hardening gaps and recommended next steps for Consultant review.
  • Security Monitoring Support (Microsoft Sentinel / Microsoft Defender)
    • Support monitoring operations: incident queue review support, connector health checks, data onboarding validation, and log source verification.
  • Write, adapt, and run KQL queries to support investigations, reporting, and validation of detections (within defined scope and review processes).
  • Assist with documentation of analytics rules, triage guidance, escalation criteria, and operational runbooks; propose tuning recommendations based on alert quality/noise.
  • Vulnerability Management & Exposure Support
    • Coordinate vulnerability scanning (e.g., Tenable/Qualys): scheduling, scope validation, credentialed scan setup (where applicable), and scan quality troubleshooting.
  • Normalize results, validate false positives, and organize findings into actionable themes for remediation planning.
  • Maintain remediation trackers, support retesting/closure evidence, and produce executive summaries of metrics and trends.
  • Azure Security Support
    • Support Azure posture reviews through evidence collection and validation of secure configuration items (e.g., RBAC…
  • Position Requirements
    10+ Years work experience
    To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
    (If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
     
     
     
    Search for further Jobs Here:
    (Try combinations for better Results! Or enter less keywords for broader Results)
    Location
    Increase/decrease your Search Radius (miles)

    Job Posting Language
    Employment Category
    Education (minimum level)
    Filters
    Education Level
    Experience Level (years)
    Posted in last:
    Salary