Affinity

Network Security Analyst II

Affinity$95K — $115K *
Healthcare
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Minimum of seven years of experience in cybersecurity or a closely related field
  • Hands-on experience with Microsoft Sentinel and Kusto Query Language
  • Proficiency in using SIEM for log analysis and security monitoring
  • Experience with NDR for network traffic analysis and incident support
  • Knowledge of network security concepts including firewalls and VPNs
  • Strong communication and analytical skills

Responsibilities

  • Monitor security alerts, logs, and network events
  • Analyze suspicious activity and anomalous network behavior
  • Perform incident triage and documentation
  • Develop and maintain detection rules and alerts
  • Support threat hunting activities using various investigative techniques
  • Assist with vulnerability and risk assessments
  • Document findings and communicate with stakeholders
  • Collaborate with internal teams on security events

Benefits

  • Opportunities for career growth and skill enhancement
  • Collaboration with a dedicated security team
  • Exposure to diverse security challenges in a public health context
  • Engagement in hands-on security operations
  • Supportive work environment focused on the well-being of the community
Full Job Description
City : Austin

State : Texas

Neos is Seeking a Network Security Analyst II fora long-term contract role with our client in Austin, TX.

***ONSITE -ONLY CANDIDATES CURRENTLY RESIDING IN THE AUSTIN, TX AREA

(within 50 miles) WILL BE CONSIDERED***

Position is FULLY ONSITE onsite-No Remote Work(Austin, TX 78751)

No calls, no emails, please respond directly to the "apply" link with your resume and contact details.

DESCRIPTION OF SERVICES

A network security analyst ensures that information systems and computer networks are secure. This includes protecting the company against hackers and cyber-attacks, as well as monitoring network traffic and server logs for activity that seems unusual. Additionally, these analysts are responsible for finding vulnerabilities in the computer networks and creating recommendations for how to minimize these vulnerabilities. The network security analyst investigates security breaches, develops strategies for any security issues that arise, and utilizes the help of firewalls and antivirus software to maintain security. DISCLAIMER: Candidates for this position will be subject to a pre-employment security review to determine employment eligibility.

The position is expected to work onsite at HHSC in Austin, TX full-time, Monday - Friday during agency business hours.

Job Summary

The Network Security Analyst II performs advanced cybersecurity and network security analysis work in support of HHSC's enterprise security operations. This role is responsible for monitoring, detecting, investigating, and responding to security events across on-premises, cloud, and endpoint environments. The ideal candidate is a hands-on security operations professional with strong experience across SIEM, SOAR, EDR, network detection, and incident response platforms. This role requires sound judgment, technical depth, attention to detail, and a strong commitment to protecting HHSC systems, data, and services that support the health and well-being of Texans.

Essential Job Functions

  • Monitor security alerts, logs, network events, endpoint telemetry, and threat intelligence feeds.
  • Analyze suspicious activity, anomalous network behavior, malware indicators, endpoint detections, and SIEM correlation events to determine scope, impact, and required response actions.
  • Perform incident triage, investigation, escalation, containment coordination, and documentation in alignment with HHSC security operations procedures.
  • Develop, tune, and maintain detection rules, dashboards, alerts, playbooks, and queries to improve visibility across network, endpoint, identity, and cloud environments.
  • Support threat hunting activities using KQL, SPL, packet/session analysis, endpoint telemetry, and other investigative techniques.
  • Assist with vulnerability, risk, and control assessments for network security infrastructure and enterprise information systems.
  • Document findings, prepare incident reports, track corrective actions, and communicate technical information to security leadership and business stakeholders.
  • Collaborate with network, infrastructure, cloud, endpoint, and application teams to validate security events and implement risk mitigation measures.
  • Maintain awareness of emerging cyber threats, attack techniques, indicators of compromise, and security best practices relevant to healthcare and public-sector environments.
  • Support compliance, audit, and reporting activities by providing evidence, metrics, and security operations documentation as requested.

Required Qualifications

  • Minimum of seven years of experience in cybersecurity, network security, security operations, incident response, or a closely related information security role.
  • Hands-on experience with Microsoft Sentinel, including incident management, analytics rules, workbooks, automation, data connectors, and Kusto Query Language.
  • Experience using SIEM for log analysis, alert investigation, dashboarding, correlation searches, and security monitoring.
  • Experience with NDR for network traffic analysis, packet/session investigation, threat detection, and incident support.
  • Experience with EDR tools, including endpoint alert triage, device investigation, advanced hunting, and response actions.
  • Working knowledge of network security concepts, including firewalls, IDS/IPS, proxy logs, DNS, VPN, TCP/IP, segmentation, and secure network architecture.
  • Ability to analyze complex security events, correlate data across multiple sources, and produce clear written documentation and recommendations.
  • Knowledge of security frameworks, standards, and regulatory considerations such as NIST, CIS Controls, HIPAA, and state information security requirements.
  • Strong communication, collaboration, problem-solving, and analytical skills.

Preferred Education and Certifications

  • Bachelor's degree in cybersecurity, computer science, information systems, information technology, or a related field. Relevant experience may be considered in place of education where applicable.
  • Microsoft security certifications are strongly preferred, such as Microsoft Certified: Security Operations Analyst Associate, Microsoft Certified: Cybersecurity Architect Expert, Microsoft Certified: Azure Security Engineer Associate, or Microsoft 365 Defender-related certifications.
  • Additional preferred certifications include CompTIA Security+, CySA+, GIAC security certifications, CISSP, CISM, CISA, Splunk Core Certified Power User, Splunk Enterprise Security Certified Admin, or SentinelOne product certifications.

Knowledge, Skills, and Abilities

  • Knowledge of SIEM, SOAR, EDR, XDR, network detection and response, log management, and threat intelligence concepts.
  • Skill in writing and interpreting KQL, SPL, and security queries to support investigations and reporting.
  • Skill in identifying indicators of compromise, attacker tactics, suspicious network patterns, and endpoint-based threats.
  • Ability to prioritize alerts, document investigative steps, and escalate incidents based on severity and business impact.
  • Ability to work independently and collaboratively in a security operations environment with shifting priorities and time-sensitive incidents.
  • Ability to communicate cybersecurity risks, findings, and recommended actions to both technical and non-technical audiences.

Work Expectations

  • Participate in incident response, escalation, and after-action review activities as needed.
  • Support enterprise security monitoring for systems that process, store, or transmit sensitive information.
  • Follow HHSC policies, procedures, standards, and applicable state and federal security requirements.
  • Maintain accurate operational documentation, investigation notes, metrics, and leadership-ready summaries.
  • May be required to provide support outside normal business hours during high-priority security incidents or planned maintenance activities.

CANDIDATE SKILLS AND QUALIFICATIONS

Required Skills/Experience

  • 7 years - Required - Knowledge of SIEM, SOAR, EDR, XDR, NDR
  • 7 years - Required - Experience with security log collection and management
  • 7 years - Required - Experience with threat intelligence concepts
  • 7 years - Required - Skill in writing and interpreting KQL, SPL, and security queries to support investigations and reporting
  • 7 years - Required - Experience in SIEM platform/architecture support
  • 7 years - Required - Experience in detection engineering methodology and implementation

Preferred Skills/Experience

  • 10 years - Preferred - Knowledge of SIEM, SOAR, EDR, XDR, NDR
  • 10 years - Preferred - Experience with security log collection and management
  • 10 years - Preferred - Experience with threat intelligence concepts
  • 10 years - Preferred - Skill in writing and interpreting KQL, SPL, and security queries to support investigations and reporting
  • 10 years - Preferred - Experience in SIEM platform/architecture support
  • 10 years - Preferred - Experience in detection engineering methodology and implementation


#DICE

#LI-IC

About Affinity

Affinity’s patented technology structures and analyzes millions of data points across emails, calendars, and third-party sources to offer users the tools they need to automatically manage their most valuable relationships, prioritize important connections, and discover untapped opportunities. Affinity uses artificial intelligence to analyze relationship strength and illuminate the best paths to warm introductions. The platform also offers a holistic view of users’ networks in a centralized, automatically updated database without any manual upkeep. Founded in 2014, Affinity is headquartered in San Francisco, California. Affinity has raised $120M to date and is backed by leading investors including Menlo Ventures, Advance Venture Partners, 8VC and MassMutual Ventures. It has over 2,700 customers in 70 countries, including venture capital firms such as Bain Capital Ventures and Kleiner Perkins, private equity firms such as SoftBank Group, investment bankers such as Woodside Capital Partners, financial services firms such as Fidelity Investments, real estate companies such as Tishman Speyer, insurers such as American Family Insurance and enterprises such as Nike, Qualcomm and Twilio. Affinity has been named in Fortune Magazine's Best Workplaces, Inc. Magazine's Best Workplaces and editor's number one pick, the Data Breakthrough Award, BIG Innovation Award and others.
Learn more about Affinity
Size
1,000 employees
Industry
Founded
2014

Similar Jobs

More Jobs at Affinity

More Healthcare Jobs

Find similar Network Security Analyst II jobs: