Security Analyst

Athens AdministratorsConcord, CA
Hybrid

About The Position

Athens Administrators is seeking a full-time Security Analyst to join our IT department and support enterprise-wide security initiatives. This position may be remote, provided the employee meets technical requirements and resides in one of our operating states: AZ, CA, FL, ID, IL, MA, NV, NJ, NY, NC, OR, TX, or VA. Employees living within 26 miles of one of our office locations—Concord, CA; Orange, CA; Lake Mary, FL; or San Antonio, TX—are required to work onsite once per week, on a day designated by their supervisor between Tuesday and Thursday. Athens offices operate Monday through Friday, 7:30 a.m. to 5:30 p.m. local time. The standard schedule for this role is Monday through Friday, 37.5 hours per week, with a start time no later than 9:00 a.m. local time. The Security Analyst will be primarily responsible for safeguarding the integrity, confidentiality, and availability of enterprise systems, data, and user access. This position will be responsible for daily security monitoring, incident investigation, compliance support, and vulnerability lifecycle management. The Security Analyst works closely with the System Administrator team, Help Desk leadership, and the Senior IT Manager to identify and mitigate risks in real-time while supporting Athens’ regulatory frameworks such as SOC 1 Type 2, SOC 2 Type 2, HIPAA, NIST, CPRA, CCPA and GPDR.

Requirements

  • Bachelor’s degree in information technology, computer science, or a related field, or equivalent practical experience required
  • CISSP Certification required
  • Significant knowledge of relevant software (including Microsoft Windows 10 and 11, Office 365 and hardware (including PCs., laptops, monitors, printers, etc.)
  • 3–5 years in IT security operations, SOC monitoring, or vulnerability management roles.
  • Working knowledge of: DataDog, CrowdStrike, Duo, OKTA, Mimecast, and Cloudflare.
  • Hands-on experience with Qualys, BitLocker, InTune, Secure FTP.
  • Familiarity with Microsoft 365 DLP, Zoom security configuration, and AWS IAM policies.
  • Experience supporting audit frameworks such as SOC 1/2, HIPAA, or ISO 27001.
  • Experience with privacy regulations such as CCPA, CPRA, GPDR.
  • Proficient with log analysis tools such as DataDog and scripting in PowerShell or Python.
  • Strong customer service and interpersonal skills
  • Effectively work individually, and in a team environment, with clients and employees
  • Ability to assess problems and situations independently quickly and critically, but also to know when to seek additional expertise.
  • Ability to meet employer’s attendance, time zone requirement, and hybrid remote work policy.
  • Ability to type quickly, accurately and for prolonged periods, sit for prolonged periods, and lift up to 20 lbs.
  • Valid driver’s license and ability to local travel required, occasionally to one of our other offices.
  • Reasoning ability, including problem-solving and analytical skills, i.e., proven ability to research and analyze facts, identify issues, and make appropriate recommendations and solutions for resolution
  • Ability to be trustworthy, dependable, and team-oriented for fellow employees and the organization
  • Seeks to include innovative strategies and methods to provide a high level of commitment to service and results
  • Ability to demonstrate care and concern for fellow team members and clients in a professional and friendly manner
  • Acts with integrity in difficult or challenging situations and is a trustworthy, dependable contributor
  • Maintaining honesty and integrity is essential for all roles within the company.

Nice To Haves

  • Relevant certifications such as CompTIA Security+, CompTIA Project+, Microsoft SC-200, AWS Certified Security are highly desirable, willingness to pursue further certifications encouraged.
  • Experience with TX Ramp and/or State Ramp is a huge bonus.

Responsibilities

  • Monitor and investigate alerts from DataDog SEIM, CrowdStrike EDR, Duo, Mimecast, and other security systems.
  • Analyze unusual login activity, access anomalies, or endpoint behaviors and escalate as appropriate.
  • Manage incident response playbooks and assist in root cause analysis (RCA) documentation.
  • Coordinate with system administrators to isolate, triage, and remediate threats.
  • Operate and analyze results from Qualys vulnerability scans across servers, endpoints, cloud resources, and network devices.
  • Work with System Administrators to validate patch deployment and remediation timelines.
  • Participate in annual and ad-hoc penetration testing remediation efforts.
  • Take point to work with the team to remediate any items raised in the penetration test.
  • Support the configuration, policy tuning, and operational use of CrowdStrike, Duo MFA, Cloudflare Zero Trust, OKTA/Entra ID, and Mimecast.
  • Conduct geo-blocking, conditional access rule reviews, and file transfer audits via Secure FTP.
  • Review and maintain Athens security policies and procedures, ensuring compliance with industry standards and regulations.
  • Ensure all Athens team members are educated, have acknowledged and are following the Athens Policies and Procedures based on their role.
  • Act as the primary point of contact for the SOC 1 and SOC 2 auditors
  • Act as the primary point person within Athens as we strive to achieve TX Ramp status
  • Prepare and maintain system logs, evidence, and control testing documentation to support SOC 1 and SOC 2 audits.
  • Monitor Data Loss Prevention (DLP) violations across M365, Secure FTP, and SIMS/CXP claims platforms.
  • Enforce access controls and support system onboarding/offboarding with audit-ready tracking.
  • Assist with staff security awareness training campaigns and phishing simulations.
  • Maintain and enhance internal documentation related to policy, incident response, and tool configuration.
  • Contribute to Athens' security roadmap, proposing improvements in detection, prevention, or automation.
  • Schedule and take point for our Disaster recovery testing annually
  • Answer all security questionnaires from prospects, customers, carriers, our insurance company, etc.

Benefits

  • Medical
  • Vision
  • Dental
  • Life and AD&D
  • Long Term Care
  • Critical Care
  • Accidental
  • Hospital Indemnity
  • HSA & FSA options
  • 401k (and Roth)
  • Company-Paid STD & LTD
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service