← all jobs

Level 2 Cyber Security Analyst

Work from home Full-time role Hiring

Level 2 Cyber Security Analyst Lyra Technology Group Chicago, IL Job Details $100,000 a year 4 hours ago Qualifications Endpoint Security Automation IT system monitoring CompTIA CySA+ Research Mid-level Windows Master's degree in cybersecurity Master's degree Bash Databases Analysis skills Bachelor's degree NIST standards Investigation evidence collection GCIA macOS Vulnerability management IT Linux Threat intelligence Network monitoring MITRE ATT&CK Training Bachelor's degree in cybersecurity Log analysis CompTIA Security+ Incident response implementation 2 years Python Full Job Description Lyra Technology Group is a private equity-backed holding company that invests in and operates industry leading technology service businesses. Our companies are operated independently by exceptional management teams. Companies that join our group retain the employees, name, and culture that have made them successful. As a platform of Evergreen Services Group, we never divest from businesses we partner with and approach every decision with the goal of driving sustainable and healthy growth over the long term. Lyra Technology Group is looking for L2 Cyber Security Analyst for one of their operating companies, VirtualArmour. The primary role of our L2 Cyber Security Analyst is to work with customers for our Managed Security Services (MSS) department. The Cyber Security Analyst's role will help protect our customer networks against cybersecurity threats such as hackers, cyber-terrorists and malware that can steal or corrupt sensitive customer data. This role will be monitoring and analyzing customer networks, servers, databases, and end-point equipment for key indicators of compromise. Once a possible threat is detected, the analyst must investigate, respond to, and report to our customers with any recommended remediation. Cyber Analysts should have the experience and knowledge desired below and will also be enrolled in the VirtualArmour Academy, where students will be trained in other aspects of the role. A bit about VirtualArmour… VirtualArmour, founded in 2001, has 20+ years of serving as a trusted advisor, fulfilling the needs of businesses, enterprises, and organizations globally. From hardware configuration and deployment to ongoing managed security services, VirtualArmour's experience spans 12 industries with deep expertise in Financial Services, Healthcare, Transportation / Logistics, and Manufacturing. Your work as the Level 2 - Cyber Security Analyst includes several components: Monitor and triage security alerts from EDR/XDR, SIEM, and related security tooling; prioritize incidents based on risk and business impact. Investigate endpoint threats (malware, ransomware, credential theft, persistence, lateral movement) using Microsoft Defender for Endpoint (MDE), CrowdStrike EDR, SentinelOne EDR, and Stellar Cyber XDR. Perform incident response activities: evidence collection, scoping, containment, eradication, recovery, and post-incident reporting. Conduct endpoint and host-based analysis (process trees, command-line execution, registry changes, scheduled tasks, persistence mechanisms, network connections). Correlate telemetry across endpoint, identity, network, and cloud sources to confirm malicious activity and reduce false positives. Execute response actions (e.g., isolate host, kill/quarantine process, block indicators, remove persistence, enforce policy changes) in accordance with playbooks and approvals. Develop and maintain detection and response playbooks/runbooks for common attack scenarios (phishing, suspicious PowerShell, credential dumping, suspicious service creation, etc.). Create and tune alerting rules, exclusions, and detections to improve signal quality and reduce noise while maintaining security coverage. Document investigations thoroughly: timelines, IOCs, impacted assets/users, actions taken, and recommendations for prevention. Support threat hunting activities using EDR/XDR telemetry and threat intelligence to identify suspicious patterns and proactively reduce risk. Participate in on-call rotation and shift-based SOC coverage as required. Research security enhancements and make recommendations for management. Stay up to date on information technology trends and security standards. Train, mentor, and guide teammates through direct comms and by hosting knowledge transfer calls. Our ideal L2 Cyber Security Analyst has the following qualifications: 2-4 years of experience in a SOC, incident response, cyber analyst or security operations role. 2-4 years of hands-on experience working with at least one (1) of the following: Microsoft Defender for Endpoint (MDE) CrowdStrike EDR SentinelOne EDR Stellar Cyber XDR Strong knowledge of attacker tactics and techniques aligned to MITRE ATT&CK, NIST, Lockhead Martin (e.g., persistence, privilege escalation, lateral movement, exfiltration). Solid understanding of Windows security fundamentals (event logs, authentication, common persistence locations) and basic Linux/macOS concepts. Familiarity with common security log sources and workflows (SIEM concepts, ticketing/case management, escalation processes). Ability to write clear incident documentation and communicate findings to both technical and non-technical stakeholders. Experience handling sensitive information and following documented procedures and change controls. Strong knowledge of the Windows and Linux operating systems. Ability to establish and maintain a strong level of customer trust and confidence.

Preferred Qualifications

Experience with Microsoft security ecosystem (e.g., Defender for Identity, Defender for Cloud, Entra ID/Azure AD sign-in logs). Basic scripting/automation skills (PowerShell, Python, or Bash) for investigation and enrichment tasks. Familiarity with network security concepts, protocols (TCP/UDP, DNS, HTTP/S, TLS, proxies, VPNs), and packet/log analysis. Threat hunting experience and building detections based on behavioral analytics. Experience with vulnerability management and remediation tracking. MSSP experience. A bachelor's/master's degree in cyber security or related field, or equivalent level of experience within IT. Security certifications (nice-to-have): Security+, CySA+, GCIH, GCIA, SC-200, or equivalent. The target salary for this role is $100,000 per year and will operate in a fully remote model. If you are a quick learner with strong problem-solving skills and are able to work in a pressurized environment with conflicting priorities, we want to hear from you!

More open positions

Work From Home Information Security Analyst and SOC (Security Operations Center) Monitor

Work from home Full-time role

Information Security Analyst I

Work from home Full-time role

Principal EPIC Security Analyst

Work from home Full-time role

[Remote] Senior Cyber Security Analyst (Remote within WA, ID, OR)

Work from home Full-time role

Principal Threat Intelligence Analyst

Work from home Full-time role

Specialist - HRO - Employee Lifecycle Management 4A

Work from home Full-time role

Remote Licensed Therapist / Clinical Supervisor (LCPC, LCSW, LMFT) – Illinois

Work from home Full-time role

(Entry Level / No Experience) Remote Delta Airlines Careers From Home

Work from home Full-time role

DRG Reviewer

Work from home Full-time role

Associate Account Executive

Work from home Full-time role

Experienced Customer Support Representative – Remote Data Entry and Customer Service

Work from home Full-time role

Senior Claims Adjuster - Auto Liability job at Arthur J. Gallagher & Co. in Rolling Meadows, IL

Work from home Full-time role

Experienced Customer Support Virtual Assistant – Global E-commerce Operations

Work from home Full-time role

U.S. Senior Angular Developer, Zoic Labs

Work from home Full-time role

Software Engineer, Creator Sponsorships

Work from home Full-time role

Senior Sourcing Associate - Procurement Services

Work from home Full-time role

Experienced Full Stack Customer Success Manager – Web & Cloud Application Development

Work from home Full-time role

Experienced Part-Time Virtual Customer Service Associate (Healthcare) – Work From Home (Big Salary Opportunity) at careerzynith

Work from home Full-time role

Registered Dietitian - Remote

Work from home Full-time role

Experienced Enrollment Adviser/Customer Service Representative – Hybrid Remote Opportunity at careerzynith

Work from home Full-time role

Senior .Net Engineer

Work from home Full-time role