Security Analyst

Reposted 3 Days Ago
Milwaukee, WI, USA
In-Office
76K-105K Annually
Mid level
Other • Security
The Role
Investigates and responds to security alerts and incidents, performs root cause analysis, coordinates containment and remediation, and improves detection and response processes. The role develops automation, runbooks, and SOPs; operationalizes threat intelligence; strengthens prevention capabilities; and collaborates with Security, IT, and business teams. Responsibilities include ticket-driven investigations, technical documentation, cross-functional response planning, and enhancing organizational security readiness.
Summary Generated by Built In

Johnson Controls, a global leader in thermal management, mission-critical building systems, energy efficiency, and decarbonization, helps customers use energy more productively, reduce carbon emissions, and operate with the precision and resilience required in rapidly expanding industries such as data centers, healthcare, pharmaceuticals, advanced manufacturing, and higher education. 

 
For more than 140 years, Johnson Controls has delivered performance where it really matters. Backed by advanced technology, lifecycle services and an industry-leading field organization, we elevate customer performance, turn goals into real-world results and help move society forward. 


What we offer: 

  • Competitive salary
  • Paid vacation/holidays/sick time 
  • Comprehensive benefits package including 401K, medical, dental, and vision care 
  • On the job/cross training opportunities 
  • Encouraging and collaborative team environment 
  • Dedication to safety through our Zero Harm policy 

What you will do:

  • Investigate and respond to security alerts and incidents, performing root cause analysis and driving corrective actions.
  • Lead and support incident response efforts, coordinating across teams to contain and remediate threats.
  • Continuously improve detection and response processes through automation, runbook development, and SOP creation.
  • Identify and strengthen threat detection and prevention capabilities.
  • Integrate threat intelligence into operational workflows to proactively address emerging threats.
  • Collaborate with Security, IT, and Business teams to enhance readiness and resilience through joint response planning.

What You’ll Need to Succeed

  • Extensive experience in Security Operations and Incident Response, with a strong track record of handling complex incidents.
  • Proficiency with modern cybersecurity tools (EDR, SIEM, firewalls, WAF, identity, and cloud security platforms).
  • Experience operationalizing threat intelligence and developing detection strategies for evolving threats.
  • Strong analytical and problem-solving skills, with a focus on process rigor and continuous improvement.
  • Ability to drive action and influence outcomes in fast-paced, cross-functional environments.
  • Excellent communication and collaboration skills, with a team-first mindset and mentoring capabilities.

What we look for:
Required

  • 1–5 years in a SOC, incident response, IT security operations, or adjacent role (e.g., EDR admin, blue team intern/co-op).
  • Experience with at least one of: SIEM, EDR/XDR, secure email gateway, cloud security tools (M365 Defender suite, Defender for Endpoint, Sentinel, Splunk, CrowdStrike, Palo Alto, Zscaler, etc.).
  • Familiarity with core investigation concepts: event correlation, user/host baselining, MITRE ATT&CK, common malware/TTPs, phishing indicators.
  • Strong communication skills—able to explain technical issues to non-technical users and document clearly and concisely.
  • Understanding of basic networking (TCP/IP, DNS, HTTP, VPN) and Windows/Linux fundamentals (processes, services, logs, registry, authentication).
  • Ability to work in a ticket-driven environment with SLAs and handoffs to an MSSP.
  • Inquisitive personality that lends itself to question asking and research

Preferred

  • Exposure to manufacturing/OT environments (ICS/SCADA basics, Purdue model, segmentation concepts, remote access risks).
  • Experience enriching investigations with OSINT Tools (VirusTotal, Shodan, Censys, CyberChef etc.) 
  • Experience with SOAR workflows and playbooks; basic scripting (PowerShell, Python, KQL) for triage automation.
  • Knowledge of identity security (AAD, MFA, conditional access), email security, and cloud log sources.
  • Certifications: Security+, CySA+, Microsoft SC‑200, GSEC, or equivalent.

HIRING SALARY RANGE: $76,000-105,000 USD (Salary to be determined by the education, experience, knowledge, skills, and abilities of the applicant, internal equity, and alignment with market data.) All hiring decisions are ultimately made by human reviewers. For details, please visit the About Us tab on the Johnson Controls Careers site at https://jobs.johnsoncontrols.com/about-us

Johnson Controls International plc. is an equal employment opportunity and affirmative action employer and all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, age, protected veteran status, genetic information, sexual orientation, gender identity, status as a qualified individual with a disability or any other characteristic protected by law. To view more information about your equal opportunity and non-discrimination rights as a candidate, visit EEO is the Law. If you are an individual with a disability and you require an accommodation during the application process, please visit here.

Skills Required

  • 1-5 years of experience in a SOC, incident response, IT security operations, or an adjacent role
  • Experience with at least one SIEM, EDR/XDR, secure email gateway, or cloud security tool
  • Familiarity with event correlation, user and host baselining, MITRE ATT&CK, common malware/TTPs, and phishing indicators
  • Strong communication skills and ability to explain technical issues to non-technical users and document clearly
  • Understanding of TCP/IP, DNS, HTTP, VPN, Windows/Linux fundamentals, processes, services, logs, registry, and authentication
  • Ability to work in a ticket-driven environment with SLAs and handoffs to an MSSP
  • Inquisitive personality with strong research and question-asking skills
  • Exposure to manufacturing or OT environments, including ICS/SCADA, Purdue model, segmentation, and remote access risks
  • Experience using OSINT tools such as VirusTotal, Shodan, Censys, or CyberChef
  • Experience with SOAR workflows and playbooks
  • Basic scripting with PowerShell, Python, or KQL
  • Knowledge of identity security, email security, and cloud log sources
  • Security+, CySA+, Microsoft SC-200, GSEC, or equivalent certification

Johnson Controls Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Johnson Controls and has not been reviewed or approved by Johnson Controls.

  • Retirement Support — Retirement support is positioned as a meaningful part of the package through employer 401(k) matching, repeatedly framed as a strong pillar of the overall rewards mix. The matching contribution is described with specific match levels in multiple places, reinforcing perceived value for long-term saving.
  • Leave & Time Off Breadth — Time off is presented as comparatively robust, with multiple paid holiday categories, vacation time, and sick time described as generous or “amazing” in places. Paid time off breadth appears to be a consistent contributor to total rewards attractiveness beyond base pay.
  • Flexible Benefits — Benefits are described as broad and customizable, spanning standard medical/dental/vision plus optional add-ons like pet insurance, identity protection, and legal support. Tuition reimbursement is repeatedly highlighted as a high-value option supporting professional development.

Johnson Controls Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Chennai
100,000 Employees
Year Founded: 1885

What We Do

At Johnson Controls, we transform the environments where people live, work, learn and play. From optimizing building performance to improving safety and enhancing comfort, we drive the outcomes that matter most. Dedicated to protecting the environment, we deliver our promise in industries such as healthcare, education, data centers and manufacturing. With a global team of 100,000 experts in more than 150 countries and over 130 years of innovation, we are the power behind our customers’ mission. Our leading portfolio of building technology and solutions includes some of the most trusted names in the industry, such as Tyco®, York®, Metasys®, Ruskin®, Titus®, Frick®, Penn®, Sabroe®, Simplex®, Ansul® and Grinnell®.

Similar Jobs

Nasuni Logo Nasuni

Operations Analyst

Artificial Intelligence • Big Data • Cloud • Security • Software • Cybersecurity • Infrastructure as a Service (IaaS)
Easy Apply
Remote or Hybrid
United States
550 Employees

Cox Enterprises Logo Cox Enterprises

HR Data Security Sr. Analyst (Workday)

Artificial Intelligence • Automotive • Greentech • Information Technology • Machine Learning • Software • Cybersecurity
Remote or Hybrid
United States
30000 Employees
81K-122K Annually
Hybrid
2 Locations
16528 Employees
111K-189K Annually
In-Office or Remote
2 Locations
2082 Employees
135K-165K Annually

Similar Companies Hiring

Milestone Systems Thumbnail
Artificial Intelligence • Security • Software • Analytics • Big Data Analytics
Lake Oswego, OR
1500 Employees
Rosendin Thumbnail
Other • Manufacturing
San Jose, CA
6219 Employees
OmniCable Thumbnail
Other
West Chester, Pennsylvania
815 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account