Job Description
Key Skills Required
Master these to land this role
Want to know if you're a match for this job?
SimSpace serves as an AI Proving Ground where organizations can confidently train, test, and outmaneuver adversaries in any environment. Trusted by allied governments, militaries, enterprises, and research institutions worldwide, SimSpace enables adaptive, AI-ready defenses that stay ahead of evolving threats. Founded in 2015 by experts from U.S. Cyber Command and MIT Lincoln Laboratory, the platform unifies training, testing, and validation in a realistic, live-fire simulation—helping teams evaluate security investments, optimize performance, and compress cyber readiness cycles from months to days.
The Security Analyst supports the security team in protecting the organization's information systems, applications, and data. Working under the guidance of the Director of IT Security and senior security operations staff, this role contributes to the daily technical operations of the Security Operations Center (SOC).
The ideal candidate combines a strong foundation in information security with sound analytical judgment, clear communication, and a collaborative approach. This person will monitor and triage security activity, investigate potential threats, improve security operations, and work across infrastructure and business teams to strengthen security practices and adherence to established policies.
What You Will Do
• Security Monitoring & Incident Response: Serve as a front-line SOC analyst responsible for monitoring, triaging, investigating, and responding to alerts across endpoint, network, identity, cloud, and other security platforms. Determine scope, severity, and potential impact; take appropriate initial containment actions and escalate complex or high-impact incidents as needed.
• Threat Analysis & Hunting: Analyze security telemetry, logs, endpoint activity, network traffic, and related data sources to identify anomalous behavior, indicators of compromise, and potential threats. Conduct targeted threat-hunting activities based on emerging threats, intelligence, and observed attacker behavior.
• Detection Engineering: Assist with developing, testing, tuning, and maintaining SIEM detection rules, correlation logic, and alerting capabilities to improve detection coverage, reduce false positives, and address emerging attack techniques.
• Security Tool Administration: Support the configuration, integration, maintenance, and operational effectiveness of technologies including SIEM, EDR, IDS/IPS, and related endpoint and network security controls.
• Vulnerability Management: Assist with vulnerability scanning, analysis, prioritization, and remediation tracking across systems, applications, and infrastructure. Partner with technical teams to validate findings and support timely remediation.
• Threat Intelligence: Monitor relevant threat intelligence, vulnerabilities, attacker tactics, techniques, and procedures (TTPs), and emerging security trends. Apply relevant intelligence to investigations, threat hunting, and detection improvements.
• Documentation & Process Improvement: Develop and maintain incident-response procedures, playbooks, runbooks, investigation guides, and lessons learned. Identify opportunities to improve SOC processes, detection capabilities, and response procedures.
• Security Awareness & Testing: Support enterprise cybersecurity awareness programs, including training, phishing simulations, and other awareness-testing campaigns. Analyze results and help identify opportunities to strengthen employee security awareness.
What You Will Bring
Strong bilingual proficiency in English and Spanish skills required across written, virtual, and in-person interactions.
Education & Experience: Bachelor's degree in Information Technology, Computer Science, or a related field, plus 2-4 years of experience in information security roles.
Security Fundamentals: Knowledge of information security principles, tools, and technologies, including network security monitoring, incident-response triage, and identity management.
Threat Frameworks: Understanding of common attacker tactics, techniques, and procedures and frameworks such as MITRE ATT&CK.
Networking: Working knowledge of TCP/IP, DNS, HTTP/S, firewalls, VPNs, and common network protocols.
Operating Systems: Experience working with Windows, macOS, and Linux, including command-line interfaces.
Communication & Collaboration: Ability to communicate complex technical issues clearly to both technical and non-technical stakeholders and work effectively across departments.
Execution & Problem Solving: Strong analytical, time-management, and project-management skills, with the ability to manage multiple priorities, solve complex technical issues, and operate effectively in a fast-paced environment.
Mindset: A proactive approach, enthusiasm for continuous learning, and willingness to take ownership and contribute across a dynamic, multifaceted team.
Preferred Qualifications
• Certifications: Professional security certifications such as CompTIA Security+, GSEC, Associate of ISC2, or equivalent.
• Security Frameworks: Familiarity with cybersecurity and risk-management frameworks and standards such as NIST Cybersecurity Framework, NIST SP 800-53, ISO/IEC 27001, SOC 2, or similar frameworks.
• Scripting & Automation: Basic scripting or automation experience with Python, PowerShell, Bash, or similar languages.
• AI for Security Operations: Understanding of how AI can improve security monitoring, troubleshooting, investigation, and operational efficiency, including experience creating or managing AI agents.
• Cloud: Experience working with public-cloud environments such as AWS, Azure, or Google Cloud Platform.
How would you rate this job post?
See what other professionals think about this role.
Similar Opportunities
More Openings at SimSpace
Explore Top Companies in this Space
CrowdStrike
Cybersecurity / Enterprise Software / Artificial Intelligence
Picus Security
Cybersecurity / Enterprise Software / Artificial Intelligence
Artemis Security
Cybersecurity / Artificial Intelligence / Enterprise Software
Nebulock
Cybersecurity / Artificial Intelligence / Enterprise Software
SimSpace
View Company ProfileSimSpace (operating via simspace.com) is a premier cyber simulation platform and AI Proving Grounds enterprise engineered to help security teams train human operators and rigorously test AI agents. Founded in 2015 by experts from U.S. Cyber Command and MIT Lincoln Laboratory, and headquartered in Boston, Massachusetts, with significant operations in Orlando, Florida, the company fundamentally transforms how organizations validate cyber defense at scale. Moving far beyond traditional, basic training exercises, SimSpace natively unifies high-fidelity, military-grade cyber ranges, attack simulations, and agentic AI testing into a single, cohesive ecosystem. The platform empowers users to deploy synthetic, precision-labeled training data, ensure agentic solutions are trustworthy, and outsmart adversaries in a realistic digital replica of their production environment. Under the hood, their advanced capabilities replicate specific infrastructures and full adversary kill chains, enabling adaptive, AI-ready defenses that compress cyber readiness cycles from months to days. Trusted by allied governments, militaries, and critical infrastructure organizations worldwide, and recognized as a Leader in the Forrester Wave, SimSpace remains a definitive cornerstone of the modern cybersecurity landscape, converging human and AI cyber readiness.
Safety First
- Never pay for a job application.
- Do not share sensitive bank info.
- Verify the client before starting work.


