Logo for Johnson Controls

Security Analyst

Role overview

Qualifications

  • 1–5 years in a SOC, incident response, IT security operations, or adjacent role
  • Experience with at least one of: SIEM, EDR/XDR, secure email gateway, cloud security tools
  • Strong communication skills—able to explain technical issues to non-technical users
  • Understanding of basic networking and Windows/Linux fundamentals

Responsibilities

  • Investigate and respond to security alerts and incidents, performing root cause analysis
  • Lead and support incident response efforts, coordinating across teams
  • Continuously improve detection and response processes through automation
  • Identify and strengthen threat detection and prevention capabilities

Key facts

Hard skills

Other skills

  • Analytical Skills
  • Problem Solving
  • Communication
  • Collaboration
  • Teamwork

About the company

Johnson Controls  logo

Johnson Controls

Smart Buildings & Smart Cities

At Johnson Controls (NYSE:JCI) we transform the environments where people live, work, learn and play. As the global leader in smart, healthy and sustainable buildings, our mission is to reimagine the performance of buildings to serve people, places and the planet. With a history of more than 135 years of innovation, Johnson Controls delivers the blueprint of the future for industries such as healthcare, schools, data centers, airports, stadiums, manufacturing and beyond through its comprehensive digital offering OpenBlue. With a global team of 100,000 experts in more than 150 countries, Johnson Controls offers the world`s largest portfolio of building technology, software as well as service solutions with some of the most trusted names in the industry. For more information, visit www.johnsoncontrols.com or follow us @johnsoncontrols on Twitter.

Company details

Company typeLarge
IndustrySmart Buildings & Smart Cities
Company size10001

Your match analysis

See how your profile stacks up against this role.

We compared the job requirements to your profile to show where you're strong and where you fall short.

Job description

Johnson Controls, a global leader in thermal management, mission-critical building systems, energy efficiency, and decarbonization, helps customers use energy more productively, reduce carbon emissions, and operate with the precision and resilience required in rapidly expanding industries such as data centers, healthcare, pharmaceuticals, advanced manufacturing, and higher education. 

 
For more than 140 years, Johnson Controls has delivered performance where it really matters. Backed by advanced technology, lifecycle services and an industry-leading field organization, we elevate customer performance, turn goals into real-world results and help move society forward. 

What we offer: 

  • Competitive salary

  • Paid vacation/holidays/sick time 

  • Comprehensive benefits package including 401K, medical, dental, and vision care 

  • On the job/cross training opportunities 

  • Encouraging and collaborative team environment 

  • Dedication to safety through our Zero Harm policy 

What you will do:

  • Investigate and respond to security alerts and incidents, performing root cause analysis and driving corrective actions.

  • Lead and support incident response efforts, coordinating across teams to contain and remediate threats.

  • Continuously improve detection and response processes through automation, runbook development, and SOP creation.

  • Identify and strengthen threat detection and prevention capabilities.

  • Integrate threat intelligence into operational workflows to proactively address emerging threats.

  • Collaborate with Security, IT, and Business teams to enhance readiness and resilience through joint response planning.

What You’ll Need to Succeed

  • Extensive experience in Security Operations and Incident Response, with a strong track record of handling complex incidents.

  • Proficiency with modern cybersecurity tools (EDR, SIEM, firewalls, WAF, identity, and cloud security platforms).

  • Experience operationalizing threat intelligence and developing detection strategies for evolving threats.

  • Strong analytical and problem-solving skills, with a focus on process rigor and continuous improvement.

  • Ability to drive action and influence outcomes in fast-paced, cross-functional environments.

  • Excellent communication and collaboration skills, with a team-first mindset and mentoring capabilities.

What we look for:
Required

  • 1–5 years in a SOC, incident response, IT security operations, or adjacent role (e.g., EDR admin, blue team intern/co-op).

  • Experience with at least one of: SIEM, EDR/XDR, secure email gateway, cloud security tools (M365 Defender suite, Defender for Endpoint, Sentinel, Splunk, CrowdStrike, Palo Alto, Zscaler, etc.).

  • Familiarity with core investigation concepts: event correlation, user/host baselining, MITRE ATT&CK, common malware/TTPs, phishing indicators.

  • Strong communication skills—able to explain technical issues to non-technical users and document clearly and concisely.

  • Understanding of basic networking (TCP/IP, DNS, HTTP, VPN) and Windows/Linux fundamentals (processes, services, logs, registry, authentication).

  • Ability to work in a ticket-driven environment with SLAs and handoffs to an MSSP.

  • Inquisitive personality that lends itself to question asking and research


Preferred

  • Exposure to manufacturing/OT environments (ICS/SCADA basics, Purdue model, segmentation concepts, remote access risks).

  • Experience enriching investigations with OSINT Tools (VirusTotal, Shodan, Censys, CyberChef etc.) 

  • Experience with SOAR workflows and playbooks; basic scripting (PowerShell, Python, KQL) for triage automation.

  • Knowledge of identity security (AAD, MFA, conditional access), email security, and cloud log sources.

  • Certifications: Security+, CySA+, Microsoft SC‑200, GSEC, or equivalent.

#LI-Remote

HIRING SALARY RANGE: $76,000-105,000 USD (Salary to be determined by the education, experience, knowledge, skills, and abilities of the applicant, internal equity, and alignment with market data.) All hiring decisions are ultimately made by human reviewers. For details, please visit the About Us tab on the Johnson Controls Careers site at https://jobs.johnsoncontrols.com/about-us

Johnson Controls International plc. is an equal employment opportunity and affirmative action employer and all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, age, protected veteran status, genetic information, sexual orientation, gender identity, status as a qualified individual with a disability or any other characteristic protected by law. To view more information about your equal opportunity and non-discrimination rights as a candidate, visit EEO is the Law. If you are an individual with a disability and you require an accommodation during the application process, please visit here.

Apply once. Then go straight to the hiring manager.

After you apply, unlock the direct contact details of the people who actually make the call. A quick follow-up makes you 5x more likely to land an interview.

MR

Marcus Rivera

Chief Revenue Officer

m.rivera@company.com
linkedin.com/in/marcusrivera
Unlocked after you apply
·

Security Analyst Related jobs

Other jobs at Johnson Controls

Premium

Reach out to the hiring manager directly.

Gain access to the contact details of the hiring managers who actually decide, and reach out to network with them directly. That, plus more when you upgrade:

  • Full match report with fit score and gaps
  • Career diagnostics on how recruiters read you
  • Curated company matches and warm intros
  • 48h early access to new roles

Cancel anytime.