Monitor, investigate, and respond to security alerts, phishing, vulnerabilities, and incidents for managed security clients. Conduct threat hunts, collect evidence, identify root causes, perform containment and remediation, and create incident reports and SOPs. Support deployment of security toolsets, collaborate with analysts and engineers, communicate with clients, and participate in after-hours or on-call coverage.
The Senior Security Analyst will monitor and manage alerts generated from various security tools and respond to and mitigate security threats for CompassMSP’s managed security service clients. They will also assist in deploying and managing the technology that enables our core security services, maximizing and bolstering our clients’ security with their technical expertise and knowledge of security industry best practices.
Job requirements
Preferred Additional Experience:
Job responsibilities
Benefits
CompassMSP is committed to fair and equitable compensation practices. Salary range will reflect experience, location and other factors. This position is eligible for an annual bonus.
Job requirements
- 5+ years of experience in a SOC/incident response role.
- Demonstrated experience conducting alert and incident investigationsend-to-end with minimal oversight and sound escalation judgment
- Execution-oriented: able to perform containment, blocking, isolation, and basic remediation in small and mid-sized business environments.
- Experience monitoring and responding to threatsimpactingWindows, Microsoft 365 / Entra ID, and firewalls.
- Familiarity and comfort working acrossEDR,firewalladministration, identity and email security consoles, ticketing systems, RMM tools, and security telemetry sources.
Preferred Additional Experience:
- Infrastructure Recovery & IT Engineering
- Network, cloud, and endpoint recovery
- Firewall, VPN, and zero-trust environments
- Backup validation and isolated recovery environments
- Active Directory, virtual hosts, domain controllers, migrations, and secure system restoration
- Endpoint wipe-and-reload and related rebuild activities
Job responsibilities
- Investigate, manage,respond to,and escalatesecurity alerts from various security platforms, such as EDR/XDR, SIEM, etc.
- Analyze security events escalated from tier 1 tovalidatethreats and respond accordingly.
- Investigate and respond to reported phishing emails.
- Analyze, prioritize, and track vulnerabilitiesdetected by vulnerability scanners.
- Researchemerging threatsand perform global threat huntsto support correlating industrydata and threat feeds with our clients’ environments andattack surfaces.
- Conduct incident response procedures, investigatingindicators of compromise,identifyingroot causes, collecting evidence, anddrafting incident response reports.
- Collaborate with othersecurityanalysts,compliance analysts,Compassengineers,andvCISOs,lendingthem yourtechnicalexpertisein ordertoprovide exceptional managed security services toour clients.
- Interface directly with clients and end users wheninvestigating threats and managing/troubleshooting managed security tools.
- Assistin the deployment of the managed security services toolstackto new clients.
- Assistwithinternal quality projects, including developing standardsandsecurityservicesforCompassMSP.
- Stay current with the latest industry trends, best practices, and regulatory requirements tohelpcontinuously enhance our securityservices.
- Hunt for emerging threats using a combination ofmethods and tools such as SIEM querying, software testing, sandboxing, etc.Translate the results of threat hunts into actionable alerts andanalysisSOPs to aid the SOC in protecting clients.
- Create andmaintaininternal standard operating procedures.
- Participate in a flexible work schedule to includeafter hours/ on-call shifts.
Benefits
- Competitive pay
- Quarterly Bonuses
- Progressive PTO
- Medical/Dental/Vision/Life/Disability available
- Tax deferred retirement plan with company match
- Career Development and Coaching
- Fun work environment!
CompassMSP is committed to fair and equitable compensation practices. Salary range will reflect experience, location and other factors. This position is eligible for an annual bonus.
Similar Jobs
Security • Cybersecurity
Lead OT security monitoring and triage operations, investigate suspicious activity across industrial networks, tune detections, manage vulnerabilities and asset classification, and escalate findings to incident responders and threat hunters. Produce customer-facing reports, support platform operations, mentor analysts, and collaborate across cybersecurity teams. The role requires shift-based coverage, remote coordination, and expertise in network security with a strong interest in ICS/OT environments.
Top Skills:
BashDnp3DnsDragos PlatformEthernet/IpFirewallsIds/IpsMitre Att&Ck For IcsModbusNetwork Traffic AnalyzersPacket AnalysisPcapPythonSIEMTcp/Ip
Artificial Intelligence • Big Data • Cloud • Security • Software • Cybersecurity • Infrastructure as a Service (IaaS)
Lead complex security investigations across endpoint, identity, cloud, email, SaaS, and network environments. Own incidents through containment, remediation coordination, documentation, and post-incident review. Tune detections, queries, dashboards, workflows, and SOAR playbooks; improve SOC metrics, threat coverage, alert fidelity, and response processes. Partner on vulnerability and cloud-risk remediation, participate in global on-call rotation, use approved AI capabilities responsibly, and mentor analysts.
Top Skills:
Cloud SecurityDarktrace EmailEdrEmail SecurityIdentity SecurityMitre Att&CkPowershellPythonRapid7 Exposure CommandRapid7 InsightidrRapid7 InsightvmSIEMSoarSumo Logic Cloud SiemVulnerability ManagementWiz
Logistics • Software
The Workday Reporting and Security Analyst develops and maintains Workday reports, dashboards, calculated fields, and People Analytics to deliver workforce insights. The role gathers reporting requirements, validates data, troubleshoots issues, conducts release testing, and documents solutions. It also administers Workday security roles and policies, audits access, enforces privacy and SOX controls, supports internal and external audits, and partners with HR, Finance, IT, vendors, and business stakeholders.
Top Skills:
Business ObjectsCrystal ReportsExcel Pivot TablesExcelWorkday HcmWorkday People AnalyticsWorkday Report DesignerWorkday Report Writer
What you need to know about the NYC Tech Scene
As the undisputed financial capital of the world, New York City is an epicenter of startup funding activity. The city has a thriving fintech scene and is a major player in verticals ranging from AI to biotech, cybersecurity and digital media. It also has universities like NYU, Columbia and Cornell Tech attracting students and researchers from across the globe, providing the ecosystem with a constant influx of world-class talent. And its East Coast location and three international airports make it a perfect spot for European companies establishing a foothold in the United States.
Key Facts About NYC Tech
- Number of Tech Workers: 549,200; 6% of overall workforce (2024 CompTIA survey)
- Major Tech Employers: Capgemini, Bloomberg, IBM, Spotify
- Key Industries: Artificial intelligence, Fintech
- Funding Landscape: $25.5 billion in venture capital funding in 2024 (Pitchbook)
- Notable Investors: Greycroft, Thrive Capital, Union Square Ventures, FirstMark Capital, Tiger Global Management, Tribeca Venture Partners, Insight Partners, Two Sigma Ventures
- Research Centers and Universities: Columbia University, New York University, Fordham University, CUNY, AI Now Institute, Flatiron Institute, C.N. Yang Institute for Theoretical Physics, NASA Space Radiation Laboratory



