Johnson Controls

Security Analyst

Johnson Controls$76K — $105K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 6+ years in Security Operations, incident response, or related field.
  • Experience with SIEM, EDR/XDR, or cloud security tools.
  • Familiarity with investigation concepts like MITRE ATT&CK.
  • Strong communication skills for technical and non-technical audiences.
  • Understanding of networking fundamentals and OS environments.
  • Skilled in a ticket-driven work environment with SLAs.

Responsibilities

  • Investigate security alerts and incidents, performing root cause analysis.
  • Lead incident response efforts, coordinating with multiple teams.
  • Enhance detection and response processes through automation.
  • Identify and improve threat detection capabilities.
  • Integrate threat intelligence into operational workflows.
  • Collaborate across teams to strengthen cyber resilience.

Benefits

  • Paid vacation, holidays, and sick time.
  • Comprehensive benefits including 401K and health coverage.
  • On-the-job and cross-training opportunities.
  • Encouraging and collaborative team environment.
  • Commitment to safety through a Zero Harm policy.
Full Job Description

What we offer:

  • Competitive salary

  • Paidvacation/holidays/sicktime

  • Comprehensive benefits package including 401K, medical, dental, and vision care

  • On the job/cross training opportunities

  • Encouraging and collaborative team environment

  • Dedication to safety through our Zero Harm policy

What you will do:

  • Investigate and respond to security alerts and incidents, performing root cause analysis and driving corrective actions.

  • Lead and support incident response efforts, coordinating across teams to contain and remediate threats.

  • Continuously improve detection and response processes through automation, runbook development, and SOP creation.

  • Identify and strengthen threat detection and prevention capabilities.

  • Integrate threat intelligence into operational workflows to proactively address emerging threats.

  • Collaborate with Security, IT, and Business teams to enhance readiness and resilience through joint response planning.

What Youll Need to Succeed

  • Extensive experience in Security Operations and Incident Response, with a strong track record of handling complex incidents.

  • Proficiency with modern cybersecurity tools (EDR, SIEM, firewalls, WAF, identity, and cloud security platforms).

  • Experience operationalizing threat intelligence and developing detection strategies for evolving threats.

  • Strong analytical and problem-solving skills, with a focus on process rigor and continuous improvement.

  • Ability to drive action and influence outcomes in fast-paced, cross-functional environments.

  • Excellent communication and collaboration skills, with a team-first mindset and mentoring capabilities.

What we look for:
Required

  • 1 6 years in a SOC, incident response, IT security operations, or adjacent role (e.g., EDR admin, blue team intern/co-op).

  • Experience with at least one of: SIEM, EDR/XDR, secure email gateway, cloud security tools (M365 Defender suite, Defender for Endpoint, Sentinel, Splunk, CrowdStrike, Palo Alto, Zscaler, etc.).

  • Familiarity with core investigation concepts: event correlation, user/host baselining, MITRE ATTCK, common malware/TTPs, phishing indicators.

  • Strong communication skills 6able to explain technical issues to non-technical users and document clearly and concisely.

  • Understanding of basic networking (TCP/IP, DNS, HTTP, VPN) and Windows/Linux fundamentals (processes, services, logs, registry, authentication).

  • Ability to work in a ticket-driven environment with SLAs and handoffs to an MSSP.

  • Inquisitive personality that lends itself to question asking and research


Preferred

  • Exposure to manufacturing/OT environments (ICS/SCADA basics, Purdue model, segmentation concepts, remote access risks).

  • Experience enriching investigations with OSINT Tools (VirusTotal, Shodan, Censys, CyberChef etc.)

  • Experience with SOAR workflows and playbooks; basic scripting (PowerShell, Python, KQL) for triage automation.

  • Knowledge of identity security (AAD, MFA, conditional access), email security, and cloud log sources.

  • Certifications: Security+, CySA+, Microsoft SC90, GSEC, or equivalent.

#LI-Remote

HIRING SALARY RANGE: $76,000-105,000 USD (Salary to be determined by the education, experience,knowledge, skills, and abilities of the applicant, internal equity, and alignment with marketdata.) All hiring decisions are ultimately made by human reviewers. For details, pleasevisit the About Us tab on the Johnson Controls Careers site athttps://jobs.johnsoncontrols.com/about-us

About Johnson Controls

Johnson Controls International plc is a multinational conglomerate headquartered in Cork, Ireland that produces automotive parts such as batteries and electronics and HVAC equipment for buildings. It employs 105,000 people in around 2,000 locations across six continents. As of 2019, it was listed as 389th in the Fortune Global 500; in 2020, it became ineligible for the list. Johnson Controls was founded in 1885 by Warren S. Johnson, a professor at the State Normal School in Whitewater, Wisconsin. Originally called the Johnson Electric Service Company, it focused on automatic temperature regulation. In 1974, the company changed its name to Johnson Controls.
Learn more about Johnson Controls
Size
101,000 employees
Market Cap
$44.1 billion
Industry
Net Income
$923 million
Founded
1885
5 Year Trend
+2.1%
Revenue
$22 billion
NASDAQ

Similar Jobs

More Jobs at Johnson Controls

More Information Technology Jobs

Find similar Security Analyst jobs: