Monitor, investigate, and respond to security alerts, phishing, vulnerabilities, and incidents for managed security clients. Conduct threat hunts, collect evidence, identify root causes, perform containment and remediation, and create incident reports and SOPs. Support deployment of security toolsets, collaborate with analysts and engineers, communicate with clients, and participate in after-hours or on-call coverage.
The Senior Security Analyst will monitor and manage alerts generated from various security tools and respond to and mitigate security threats for CompassMSP’s managed security service clients. They will also assist in deploying and managing the technology that enables our core security services, maximizing and bolstering our clients’ security with their technical expertise and knowledge of security industry best practices.
Job requirements
Preferred Additional Experience:
Job responsibilities
Benefits
CompassMSP is committed to fair and equitable compensation practices. Salary range will reflect experience, location and other factors. This position is eligible for an annual bonus.
Job requirements
- 5+ years of experience in a SOC/incident response role.
- Demonstrated experience conducting alert and incident investigationsend-to-end with minimal oversight and sound escalation judgment
- Execution-oriented: able to perform containment, blocking, isolation, and basic remediation in small and mid-sized business environments.
- Experience monitoring and responding to threatsimpactingWindows, Microsoft 365 / Entra ID, and firewalls.
- Familiarity and comfort working acrossEDR,firewalladministration, identity and email security consoles, ticketing systems, RMM tools, and security telemetry sources.
Preferred Additional Experience:
- Infrastructure Recovery & IT Engineering
- Network, cloud, and endpoint recovery
- Firewall, VPN, and zero-trust environments
- Backup validation and isolated recovery environments
- Active Directory, virtual hosts, domain controllers, migrations, and secure system restoration
- Endpoint wipe-and-reload and related rebuild activities
Job responsibilities
- Investigate, manage,respond to,and escalatesecurity alerts from various security platforms, such as EDR/XDR, SIEM, etc.
- Analyze security events escalated from tier 1 tovalidatethreats and respond accordingly.
- Investigate and respond to reported phishing emails.
- Analyze, prioritize, and track vulnerabilitiesdetected by vulnerability scanners.
- Researchemerging threatsand perform global threat huntsto support correlating industrydata and threat feeds with our clients’ environments andattack surfaces.
- Conduct incident response procedures, investigatingindicators of compromise,identifyingroot causes, collecting evidence, anddrafting incident response reports.
- Collaborate with othersecurityanalysts,compliance analysts,Compassengineers,andvCISOs,lendingthem yourtechnicalexpertisein ordertoprovide exceptional managed security services toour clients.
- Interface directly with clients and end users wheninvestigating threats and managing/troubleshooting managed security tools.
- Assistin the deployment of the managed security services toolstackto new clients.
- Assistwithinternal quality projects, including developing standardsandsecurityservicesforCompassMSP.
- Stay current with the latest industry trends, best practices, and regulatory requirements tohelpcontinuously enhance our securityservices.
- Hunt for emerging threats using a combination ofmethods and tools such as SIEM querying, software testing, sandboxing, etc.Translate the results of threat hunts into actionable alerts andanalysisSOPs to aid the SOC in protecting clients.
- Create andmaintaininternal standard operating procedures.
- Participate in a flexible work schedule to includeafter hours/ on-call shifts.
Benefits
- Competitive pay
- Quarterly Bonuses
- Progressive PTO
- Medical/Dental/Vision/Life/Disability available
- Tax deferred retirement plan with company match
- Career Development and Coaching
- Fun work environment!
CompassMSP is committed to fair and equitable compensation practices. Salary range will reflect experience, location and other factors. This position is eligible for an annual bonus.
Similar Jobs
Artificial Intelligence • Big Data • Cloud • Information Technology • Software • Big Data Analytics • Automation
Secures enterprise business applications and integrations, including NetSuite and SAP SuccessFactors. Reviews configurations, access models, APIs, data flows, IAM, logging, and cloud controls; performs risk assessments, threat modeling, and audit support; aligns controls with FedRAMP, ISO 27001, SOC 2, and SOX requirements. Partners with application owners, cloud teams, IT, security, and business stakeholders to implement least privilege, secure configurations, compensating controls, and remediation plans.
Top Skills:
Api SecurityAWSAzure AdDell BoomiIamNetSuiteOktaRbacSap SuccessfactorsSIEMSso
Artificial Intelligence • Big Data • Cloud • Security • Software • Cybersecurity • Infrastructure as a Service (IaaS)
Lead complex security investigations across endpoint, identity, cloud, email, SaaS, and network environments. Own incidents through containment, remediation coordination, documentation, and post-incident review. Tune detections, queries, dashboards, workflows, and SOAR playbooks; improve SOC metrics, threat coverage, alert fidelity, and response processes. Partner on vulnerability and cloud-risk remediation, participate in global on-call rotation, use approved AI capabilities responsibly, and mentor analysts.
Top Skills:
Cloud SecurityDarktrace EmailEdrEmail SecurityIdentity SecurityMitre Att&CkPowershellPythonRapid7 Exposure CommandRapid7 InsightidrRapid7 InsightvmSIEMSoarSumo Logic Cloud SiemVulnerability ManagementWiz
Artificial Intelligence • Automotive • Greentech • Information Technology • Machine Learning • Software • Cybersecurity
Administer and improve Workday and multi-platform HR security, including role-based access, security groups, access reviews, request approvals, audit support, governance documentation, and compliance controls. Evaluate elevated access requests, identify risks, resolve routine issues, coordinate remediation, and escalate complex decisions. Partner with HR, IT, Legal, and Compliance stakeholders to strengthen policies, processes, and least-privilege access across Workday, Peakon, UKG, Prism, and HR data platforms.
Top Skills:
Cei Hr OdsExcelMicrosoft FabricPeakonPower BIPrismSailpointServicenowSharepointTableauUkgWorkday
What you need to know about the Colorado Tech Scene
With a business-friendly climate and research universities like CU Boulder and Colorado State, Colorado has made a name for itself as a startup ecosystem. The state boasts a skilled workforce and high quality of life thanks to its affordable housing, vibrant cultural scene and unparalleled opportunities for outdoor recreation. Colorado is also home to the National Renewable Energy Laboratory, helping cement its status as a hub for renewable energy innovation.
Key Facts About Colorado Tech
- Number of Tech Workers: 260,000; 8.5% of overall workforce (2024 CompTIA survey)
- Major Tech Employers: Lockheed Martin, Century Link, Comcast, BAE Systems, Level 3
- Key Industries: Software, artificial intelligence, aerospace, e-commerce, fintech, healthtech
- Funding Landscape: $4.9 billion in VC funding in 2024 (Pitchbook)
- Notable Investors: Access Venture Partners, Ridgeline Ventures, Techstars, Blackhorn Ventures
- Research Centers and Universities: Colorado School of Mines, University of Colorado Boulder, University of Denver, Colorado State University, Mesa Laboratory, Space Science Institute, National Center for Atmospheric Research, National Renewable Energy Laboratory, Gottlieb Institute



