Summary
What you’ll impact
The Cybersecurity / GRC Security Analyst will lead incident response, threat hunting, and vulnerability management while conducting risk assessments, internal audits, and compliance testing. The role requires 10+ years of experience with security tools such as Microsoft Sentinel, Defender, Azure Entra ID, and vulnerability scanners, and will involve supporting Azure, AWS, and on‑premises environments for a Houston, TX based client.
Responsibilities
What you'll do
- Incident investigation, alert triage, threat hunting, endpoint response, and vulnerability management.
- Conduct risk assessments, internal audits, TPRM, compliance testing, gap analysis, and develop security policies.
- Support Azure, AWS, and on-premises environments.
- Communicate and manage stakeholders including senior leadership, clients, legal, and business teams.
Requirements
What you’ll bring
- 10+ years of experience in Cybersecurity, Information Security, GRC, Incident Response, and Vulnerability Management.
- Strong hands-on experience with Microsoft Sentinel, Microsoft Defender, Azure Entra ID/IAM, KQL, and PowerShell.
- Experience in incident investigation, alert triage, threat hunting, endpoint response, and vulnerability management.
- Strong GRC experience including risk assessments, internal audits, TPRM, compliance testing, gap analysis, and security policies.
- Experience with ISO 27001, NIST CSF, NIST 800-53, GDPR, CMMC, NERC CIP, and PCI-DSS.
- Hands-on experience with Tenable Nessus, Qualys, and OneTrust.
- Strong communication and stakeholder-management skills with senior leadership, clients, legal, and business teams.
- Experience supporting Azure, AWS, and on-premises environments.
- Bachelor’s degree in Computer Information Systems, Cybersecurity, IT, or related field preferred.
- ISO 27001 Lead Implementer certification is a plus.
- Work Authorization: USC / H4EAD.
- Employment type: W2 Contract Only.
- Location: Houston, TX.