U-
USAA - United Services Automobile Association
Cybersecurity Monitoring & Response Analyst - Mid Level
San Antonio, TXFull-time2 hours ago
Overview
In this role you will monitor and analyze security events to detect threats, investigate incidents, and respond to cyber incidents. You'll work with a SOC-like environment to strengthen detection capabilities and protect critical assets. The position supports a 24x7 security operation and requires collaboration with stakeholders to reduce risk. This opportunity offers a mission-driven, growth-focused security role within USAA's cyber program.
Compensation / Benefits
- comprehensive medical, dental and vision plans
- 401(k) and pension
- life insurance
- parental benefits and adoption assistance
- paid time off with holidays plus 16 volunteer hours
- wellness programs and career development
Responsibilities
- Monitor networks, systems, and applications for security anomalies and events
- Assist in incident response with moderately complex analysis using security tools
- Develop broad security knowledge across forensics, networking, and systems
- Conduct routine vulnerability management and security configuration assessments
- Document findings and contribute to incident reports and knowledge base
- Support on-call rotations and non-standard hours in a 24x7 security operation
Key requirements
- Bachelor's degree or equivalent education/experience
- 2 years in information security, cybersecurity, or IT security with focus on moderately complex tasks
- 1 year in one of security domains (e.g., Security Operations, Risk Management, or Security Testing)
- Ability to work non-standard hours including holidays/weekends
- Experience in SOC or cybersecurity operations and incident response
- Experience with EDR tools (e.g., CrowdStrike, Defender for Endpoint) and SIEMs (e.g., Splunk, Elastic, Microsoft Sentinel)
- Knowledge of Windows/Linux/macOS security event analysis
- Scripting/automation experience (Python, PowerShell)
- Familiarity with cloud security monitoring (Azure, AWS, Microsoft 365)
- Strong communication and collaboration skills
- communication
- teamwork
- ability to learn continuously
- EDR tooling (CrowdStrike, Defender for Endpoint)
- SIEM (Splunk, Elastic, Microsoft Sentinel)
- threat hunting and MITRE ATT&CK
