Cybersecurity Operations Analyst II
Listed on 2026-09-05
-
IT/Tech
Cybersecurity
Overview Job Summary
The Cybersecurity Operations Analyst II supports and operates our enterprise cybersecurity program. This role is responsible for day-to-day threat monitoring, detection and response, Microsoft Defender EDR/XDR administration, vendor risk management, employee security awareness, compliance support, and remediation of identified security gaps.
This position combines hands-on security operations with ownership of several ongoing cybersecurity programs. The Cybersecurity Operations Analyst II will independently investigate common security events, manage third-party security risk assessments, maintain employee security education, support HIPAA compliance and HITRUST e1 readiness, and work directly with infrastructure engineers to incorporate security into day-to-day technology operations.
This is a hands-on cybersecurity role with meaningful program ownership, not an alert‑monitoring or ticket‑routing position.
About UsSpecialized Dental Partners is a doctor‑led network of 275+ specialty dental practices and 450+ doctors across multiple states. We offer the scale, resources, and professional connections that help specialists and teammates thrive, while maintaining the supportive culture and local relationships that define our organization.
Our purpose, We Care More, shapes how we support our doctors, teammates, and patients every day. We care more about patient outcomes, doctor success, teammate growth, meaningful relationships, and the communities we serve. By combining clinical excellence with a people‑first culture, we create an environment where specialists can build rewarding careers while making a lasting impact.
At Specialized Dental Partners, you'll find more than a job. You'll find a community committed to helping you succeed.
From mentorship and career development to clinical collaboration and leadership opportunities, we are committed to helping our people grow personally and professionally.
If you're looking for an organization where your expertise is valued, your growth is supported, and your work makes a meaningful difference, we'd love to meet you!
Responsibilities Security Operations & Incident Response- Monitor enterprise security systems for malicious, suspicious, or abnormal activity
- Triage and investigate security alerts involving endpoints, identities, email, cloud services, and other enterprise systems
- Determine the scope, severity, and potential impact of identified threats and perform or coordinate containment and remediation actions
- Serve as a technical escalation point for cybersecurity issues requiring deeper investigation
- Maintain investigation notes, evidence, timelines, and incident documentation and participate in post‑incident reviews
- Own day‑to‑day administration and operation of Microsoft Defender EDR/XDR
- Monitor platform health, security incidents, device coverage, and endpoint security posture
- Investigate and respond to Defender‑generated alerts and incidents
- Tune security controls and workflows to improve detection effectiveness and operational efficiency
- Identify endpoint security gaps and coordinate remediation with engineering and support teams
- Maintain platform standards, documentation, and operational procedures
- Own the enterprise vendor cybersecurity risk management program
- Perform security assessments of prospective and existing third‑party vendors
- Evaluate vendor security controls, policies, technical posture, and identified weaknesses
- Produce written vendor risk assessment reports and clearly document findings
- Provide technical guidance and risk‑based recommendations to senior leadership regarding vendor approval, remediation, acceptance, or rejection
- Work with vendors and internal stakeholders to resolve identified concerns and track remediation through completion or formal risk acceptance
- Maintain assessment records and evidence required for compliance and audit activities
- Own the ongoing employee cybersecurity awareness and education program
- Administer recurring security awareness training and phishing simulation campaigns
- Track completion, participation, and program…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).