Cyber Security Analyst

Type One Energy

$80K — $95K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 1-3 years of experience in IT, security operations, or a related technical role
  • Familiarity with core security operations concepts including SIEM and vulnerability management
  • Scripting and automation skills, ideally in PowerShell or Python
  • Understanding of endpoint and identity management platforms
  • Strong attention to detail and documentation habits
  • Ability to work effectively with service providers and vendors
  • Strong analytical and troubleshooting skills
  • Preferred: CompTIA Security+ or equivalent certification
  • Preferred: Exposure to compliance frameworks such as NIST CSF or SOC 2
  • Preferred: Hands-on experience with SIEM and detection engineering

Responsibilities

  • Build and automate hardware and software inventory
  • Support the implementation and tuning of a new SIEM
  • Maintain the authoritative system inventory for audits
  • Monitor and triage security events with the managed SOC provider
  • Identify and remediate vulnerabilities across endpoints
  • Support access and change management processes
  • Contribute to incident response and documentation
  • Maintain security documentation and control records
  • Oversee managed service providers and vendor security controls
  • Collaborate with IT, engineering, legal, and finance teams

Benefits

  • Hybrid work policy
  • Stock options
  • Relocation allowance
  • Insurance plans
  • Retirement options
  • Additional voluntary benefits
Full Job Description
Cyber Security Analyst

Location: Madison, WI

Salary: Highly Competitive Plus Benefits

Contract: Permanent, full time

Reporting to: Director of IT

Your role in the mission:

The Security Analyst will help operate and mature Type One Energy's information security program as the second internal security practitioner, working alongside the Senior Cybersecurity Engineer. This is a foundational role with a clear trajectory. In the first year you will lead the buildout of automated hardware and software inventory and support the standup of a new SIEM, establishing the asset visibility and detection foundations on which the broader security program and the company's IT general controls depend. As those foundations stabilize, the role grows into deeper security operations, detection engineering, and incident response. It suits an early-career security professional who is technically curious, process-disciplined, and motivated to build reliable, automated systems from the ground up. You will contribute to:

  • Build and automate hardware and software inventory using existing security and endpoint telemetry, replacing manual reconciliation with reliable, repeatable pipelines
  • Support the implementation and tuning of a new SIEM, including data source onboarding, alert triage, and detection use-case development
  • Maintain the authoritative system inventory and produce audit-ready evidence of its completeness and accuracy in support of IT general controls (ITGC)
  • Monitor, triage, and escalate security events in coordination with the managed SOC provider, developing into an internal point of continuity for security operations
  • Identify, track, and coordinate remediation of vulnerabilities across the endpoint and identity estate
  • Support access management, change management, and asset-completeness evidence in preparation for external audit
  • Contribute to incident response readiness, runbook development, and post-incident documentation
  • Maintain security documentation and control records in alignment with the information security document suite
  • Support oversight of managed service providers and vendors, validating that outsourced controls are performed and evidenced
  • Collaborate with IT, engineering, legal, and finance teams where security intersects their work

What you'll need:

  • One to three years of experience in IT, security operations, or a closely related technical role; equivalent education plus relevant hands-on experience will be considered
  • Working familiarity with core security operations concepts, including SIEM, endpoint detection and response, alerting, and vulnerability management
  • Demonstrated scripting and automation ability (e.g., PowerShell, Python), with a bias toward automating repetitive work rather than performing it manually
  • Understanding of endpoint and identity management platforms (e.g., Microsoft Entra ID, Intune, or equivalents)
  • Strong attention to detail and disciplined documentation habits; comfort owning data quality and reconciliation
  • Ability to work effectively with managed service providers and external vendors
  • Strong analytical, troubleshooting, and problem-solving skills
  • CompTIA Security+ or an equivalent certification, or active progress toward one, preferred
  • Exposure to compliance frameworks such as CIS Controls, NIST CSF, SOC 2, or SOX ITGC, preferred
  • Hands-on exposure to SIEM content or detection engineering, and to asset or SaaS discovery tooling, preferred
  • Experience in a regulated, manufacturing, or critical-infrastructure environment, preferred
  • Familiarity with data classification and DLP concepts such as Microsoft Purview sensitivity labeling, preferred

We offer:

In addition to a basic salary and yearly bonus, you will also get...

  • A hybrid work policy
  • Stock options
  • Relocation allowance
  • Insurance plans
  • Retirement options
  • And many more great voluntary benefits

Similar Jobs

More Jobs at Type One Energy

More Information Technology Jobs

Find similar Cyber Security Analyst jobs: