Cybersecurity Monitoring & Response Analyst - Mid Level

USAA•San Antonio, TX
•$77,120 - $147,390•Hybrid

About The Position

The Cybersecurity Monitoring & Response Analyst - Mid Level is responsible for detecting, investigating, and responding to security events, ensuring potential threats are rapidly identified and mitigated. Through continuous monitoring, case management, and decisive response actions, they help safeguard USAA's operations, members, employees, and critical assets from evolving cyber threats. Within defined guidelines and framework, investigates, analyzes, and responds to security anomalies and events (e.g. suspicious behavior, attacks, and security breaches) within USAA's environments using a variety of cyber defense tools to detect and respond to threats. Conducts vulnerability, security configuration, and/or penetration testing assessments of systems and networks. Identifies cyber threats, analyzes operational impacts, and communicates to appropriate stakeholders. Stays current with latest information security threats, exploits, trends, and intelligence.

Requirements

  • Bachelor's degree OR 4 years of relevant education and/or experience.
  • 2 years of related experience in Information Security, Cybersecurity and/or Information Technology with a security focus to include accountability for moderately complex tasks and/or projects.
  • 1 year of related experience in one of the following domains: Security and Risk Management, Asset Security, Security Architecture and Engineering, Communications and Network Security, Identity and Access Management, Security Assessment and Testing, Security Operations, Software Development Security.
  • Availability to work during non-standard business hours including holidays and weekends.
  • Developing level of business acumen in the areas of business operations, risk management, industry practices and emerging trends.

Nice To Haves

  • Experience working in a Security Operations Center (SOC), cybersecurity operations, or related IT security environment.
  • Experience monitoring, triaging, investigating, and responding to cybersecurity alerts, events, and incidents.
  • Experience using Endpoint Detection and Response (EDR) platforms, such as CrowdStrike, Microsoft Defender for Endpoint, or similar tools, to investigate suspicious activity and support incident response.
  • Experience analyzing security events across Windows, Linux, and macOS environments.
  • Experience with security monitoring, log analysis, and SIEM technologies such as Splunk, Elastic, Microsoft Sentinel, or similar platforms.
  • Knowledge of cyber threat hunting, threat intelligence, MITRE ATT&CK, adversary tactics and techniques (TTPs), or digital forensics concepts.
  • Experience with scripting or automation using Python, PowerShell, or similar technologies.
  • Ability to participate in shift work, on-call rotations, weekends, holidays, or other non-standard business hours in support of 24x7 security operations.
  • Familiarity with cloud security monitoring, identity-based threats, and investigating suspicious activity within Azure, AWS, Microsoft 365, or similar platforms.

Responsibilities

  • Maintains awareness of the latest critical information security vulnerabilities, threats, and exploits.
  • Monitors internal and external networks, systems, and applications for security anomalies and events (e.g. suspicious behavior, attacks, and security breaches).
  • Assists in responding to cyber incidents, performing moderately complex analysis using security tools.
  • Builds a broad range of knowledge, understanding, and experience (e.g. forensics, networking, servers, coding, etc.) to determine a malicious actor's tactics, techniques, and procedures.
  • Assists in conducting routine vulnerability management, security configuration assessments, and/or penetration testing operations.
  • Under direct supervision, uses the discoveries from the incident response process to make basic improvements to the existing detection capabilities and security controls.
  • Documents findings of completed alerts and assists with incident documentation.
  • Serves as a resource to team members on escalated issues of a routine nature.
  • Ensures risks associated with business activities are effectively identified, measured, monitored, and controlled in accordance with risk and compliance policies and procedures.

Benefits

  • comprehensive medical, dental and vision plans
  • 401(k)
  • pension
  • life insurance
  • parental benefits
  • adoption assistance
  • paid time off program with paid holidays plus 16 paid volunteer hours
  • various wellness programs
  • career path planning
  • continuing education
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service