Honeywell Aerospace Technologies→
Cybersecurity Analyst I at Honeywell Aerospace Technologies in Remote
Entry LevelRemoteFull-timeRemote$97k–$121k/yr
Skills
cybersecuritysecurity informationevent management (siem)endpoint detectionresponse (edr)networkingoperating systemssecurity conceptsmicrosoft sentinelmicrosoft defender for endpointcomptia security+certified in cybersecuritymitre att&ck frameworkcloud environmentspowershellpythonservicenowanalytical skills
Job Description
Summary: Honeywell Aerospace Technologies is seeking a Cybersecurity Analyst I to join their team. This role involves monitoring, triaging, and responding to security alerts as the first line of defense within the Security Operations Center (SOC), while utilizing various security tools to enhance the organization's cybersecurity posture.
Responsibilities:
- Monitor security alerts using tools such as Microsoft Sentinel, Splunk, and Microsoft Defender for Endpoint
- Perform initial triage and analysis of alerts (phishing, malware, suspicious login activity, endpoint detections)
- Investigate alerts using endpoint, network, and cloud logs
- Escalate confirmed or complex incidents to Tier 2/3 teams
- Create and update incident tickets in ServiceNow or similar platforms
- Follow incident response procedures aligned with NIST SP 800-61
- Document findings, actions taken, and outcomes clearly and accurately
- Support detection tuning by identifying false positives and recurring alert patterns
- Participate in shift handoffs and maintain situational awareness of ongoing incidents
Required Qualifications:
- 0–2 years of experience in cybersecurity, IT, or SOC environment
- Basic understanding of Networking (TCP/IP, DNS, HTTP/S)
- Basic understanding of Operating systems (Windows/Linux)
- Basic understanding of Security concepts (authentication, MFA, least privilege)
- Familiarity with SIEM or EDR tools
- Strong analytical and problem-solving skills
- Ability to follow structured processes and document clearly
Preferred Qualifications:
- Bachelor's degree in Cybersecurity, IT, or related field (or equivalent experience)
- CompTIA Security+ certification
- Certified in Cybersecurity (CC)
- Experience with Microsoft Defender for Endpoint
- Experience with Microsoft Sentinel
- Knowledge of MITRE ATT&CK framework
- Exposure to cloud environments (Azure/AWS)
- Basic scripting (PowerShell or Python)
- Experience handling tickets in ServiceNow
- Strong communication (written and verbal)
- Ability to work under pressure in a fast-paced environment
- Team collaboration and accountability
- Attention to detail
Required Skills: Cybersecurity, Security Information, Event Management (SIEM), Endpoint Detection, Response (EDR), Networking, Operating systems, Security concepts, Microsoft Sentinel, Microsoft Defender for Endpoint, CompTIA Security+, Certified in Cybersecurity, MITRE ATT&CK framework, Cloud environments, PowerShell, Python, ServiceNow, Analytical skills
Benefits: Employer subsidized Medical, Dental, Vision, and Life Insurance, Short-Term and Long-Term Disability, 401(k) match, Flexible Spending Accounts, Health Savings Accounts, EAP, Educational Assistance, Parental Leave, Paid Time Off (for vacation, personal business, sick time, and parental leave), 12 Paid Holidays
Benefits
Employer subsidized Medical, Dental, Vision, and Life Insurance
Short-Term and Long-Term Disability
401(k) match
Flexible Spending Accounts
Health Savings Accounts
EAP
Educational Assistance
Parental Leave
Paid Time Off (for vacation, personal business, sick time, and parental leave)
12 Paid Holidays