Infrastructure Security Analyst at ARS-Rescue Rooter
—
Jun 30, 2026
—
Jul 21, 2026
What this job asks for AI summary
A security operations role focused on maintaining and improving the hardening posture of servers, endpoints, networks, and mobile devices. Day-to-day work involves monitoring CIS benchmark compliance, tracking patch SLAs, validating endpoint protection and SIEM telemetry, and coordinating remediation with infrastructure teams. The role also covers Azure cloud security posture management and network controls such as firewall rules and Zscaler policies, with involvement in an on-call rotation.
Mid level · 3+ years · Remote · Full-time
“or” means any one of them counts — you don't need all of them.
We read this from the posting text with AI. Skim the description below before ruling yourself out.
How this req sits in the market our data
Roughly 600 people nationally plausibly meet what this posting asks for (information security analysts). range 180–900
Applicant volume Moderate — A normal amount of company. The rare requirements below are what will separate a shortlisted application from the rest.
Rare in this occupation — lead with these, and say what you built with them.
Most people in this occupation already list these. Still required — just not what gets you shortlisted.
What the occupation pays Median $132,021 (middle half $99,961–$167,095).
Estimated from BLS employment for this occupation and area, per-skill prevalence across our listing corpus, and published wage benchmarks — as of Jul 28, 2026. It is a model, not a headcount.
Why we read it this way (8)
The role sits at the boundary of security analysis (15-1212) and infrastructure/systems operations (15-1244). The primary framing — monitoring security posture, validating controls, CSPM, CIS compliance, and SIEM/EDR telemetry — tips it toward Information Security Analysts, but the heavy infrastructure-operations context (patch compliance, endpoint management, network segmentation) makes 15-1244 a credible runner-up.
Windows and Linux are listed together as a combined infrastructure/OS requirement ('Windows/Linux'); they are treated as interchangeable alternatives for the same gate rather than two separate hard requirements.
The 'AI Fluency' requirement (Claude or ChatGPT) is explicitly listed under Required Qualifications with firm language, so it is treated as a hard gate. Claude and ChatGPT are captured as interchangeable alternatives on a single skill.
Zscaler (ZIA/ZPA), Azure Security Center/Defender for Cloud, EDR/AV, vulnerability scanners, and configuration management tools appear under a 'Tools & Technologies' section rather than a formal requirements block. However, Zscaler and Azure Defender for Cloud are specific enough and central enough to the stated responsibilities that they are treated as hard gates consistent with the role's scope. Firewall/IDS/IPS and CSPM tooling are marked preferred as they appear more as context for the network security work.
No compensation range is stated in the posting.
Role includes an on-call rotation, noted here as it may affect candidate interest but is not captured in structured fields.
Ignored 1 non-technology phrase(s) as skills (responsibilities/concepts, not named tools): Azure Defender for Cloud.
Caller marked this a fully-remote role — scored against the national candidate pool.
Read the full posting
The employer publishes the full description on their own site — read it there ↗. Or sign in to read it here — it's free, and it also lets you track this application.