Securance Consulting · 4 hours ago
Senior IT Professional / Tier 2 Security Analyst (Identity and Access Management)
Securance Consulting is seeking a Senior IT Professional / Tier 2 Security Analyst specializing in Identity and Access Management. This role involves managing identity security controls, performing investigations within the Security Operations Center, and providing technical guidance to junior analysts.
Cyber SecurityInformation ServicesInformation Technology
Responsibilities
Administer and manage identity governance and administration (IGA) platforms
Manage and maintain MFA technologies and authentication policies
Review access provisioning, deprovisioning, and privilege changes
Monitor for identity misuse, privilege escalation, and anomalous access behavior
Validate role-based access controls and least-privilege enforcement
Perform Tier 2 triage of identity-related and access-related security alerts
Classify incident severity and determine escalation thresholds
Own escalation decisions and coordinate handoff to Tier 3 or Incident Response teams
Execute and coordinate containment actions in accordance with incident response procedures
Validate remediation and support formal incident closure
Analyze authentication logs, access logs, endpoint telemetry, and cloud identity telemetry
Correlate identity activity with network, endpoint, and application events
Apply threat intelligence and behavioral indicators to identity investigations
Map identity-related attack techniques using frameworks such as MITRE ATT&CK
Develop and tune SIEM queries and correlation rules for identity-related threats
Reduce false positives and improve detection accuracy through continuous tuning
Validate detection coverage against real-world identity attack techniques
Manage investigation cases within SOC case management and ticketing platforms
Ensure investigations meet documentation, quality, and SLA standards
Produce investigation reports and executive summaries
Present investigation findings to SOC leadership and security management
Document detection gaps, lessons learned, and improvement recommendations
Provide technical guidance and mentorship to Tier 1 analysts
Support training and operational knowledge development
Serve as an operational subject matter expert for identity security investigations
Support investigations in regulated environments, including CJIS where applicable
Ensure investigations align with NIST 800-53 and NIST CSF control expectations
Maintain evidence handling and chain-of-custody standards when required
Qualification
Required
DO NOT APPLY IF YOU ARE NOT A US CITIZEN
To be considered for this role, you must live in Houston, TX
Associate's degree in Computer Science, Management and Information Systems (MIS), Business, or a related field
System-specific technical certifications may substitute for the Associate degree
Experience in IT security, infrastructure, or application support may substitute for education on a year-for-year basis
Minimum of 24 months of technology experience in IT security or in supporting security aspects of IT infrastructure or application teams
Hands-on experience in IAM operations, SOC monitoring, or security investigations
Experience performing Tier 2 alert triage and incident investigation
CompTIA Security+
GIAC GSEC
CompTIA CySA+
Identity and access security monitoring
Tier 2 incident investigation
MFA and identity governance administration
SIEM query development
Threat intelligence application
Incident escalation and containment coordination
SOC case management and documentation
Technical reporting and communication
Preferred
Additional security certifications are preferred
Experience in public sector or regulated environments
Experience with cloud identity platforms
Experience mentoring junior analysts
Experience supporting identity-focused incident response