These are the ATS keywords, credentials, and software terms that recur across current cybersecurity analyst job descriptions — organized so you can scan for what your resume is missing. Placement matters as much as presence: an ATS keyword buried in a skills list ranks lower than the same term used in context inside an experience bullet.
Title variants
- Cybersecurity Analyst
- Security Analyst
- SOC Analyst
- Information Security Analyst
- Tier 1 SOC
- Tier 2 SOC
- Security Operations Analyst
- Vulnerability Analyst
- GRC Analyst
SIEM
- Splunk
- Microsoft Sentinel
- IBM QRadar
- LogRhythm
- Elastic SIEM
- SIEM
- log analysis
- event correlation
EDR and endpoint
- CrowdStrike Falcon
- Microsoft Defender for Endpoint
- SentinelOne
- Carbon Black
- EDR
- endpoint detection and response
Threat and detection
- threat detection
- threat hunting
- incident response
- IR
- malware analysis
- digital forensics
- DFIR
- IOC
- IOA
- kill chain
- MITRE ATT&CK
Vulnerability management
- Tenable Nessus
- Qualys
- Rapid7
- InsightVM
- CVE
- CVSS
- vulnerability assessment
- patch management
- remediation tracking
Network security
- firewalls
- IDS
- IPS
- Palo Alto
- network traffic analysis
- Wireshark
- packet capture
- DLP
Frameworks
- MITRE ATT&CK
- NIST CSF
- ISO 27001
- SOC 2
- CIS Controls
- Cyber Essentials
- risk assessment
Certifications
- CompTIA Security+
- CEH
- CISSP
- CISM
- OSCP
- GIAC
- CySA+
- Azure Security Engineer Associate
- AWS Security Specialty
Long-tail phrases
- cybersecurity analyst resume examples
- how to write a cybersecurity analyst resume
- SOC analyst cv
- information security analyst resume
- security+ resume
Pasting these terms into your resume verbatim without matching context can read as keyword stuffing to a human reviewer, even if it passes the ATS. The full Cybersecurity Analyst resume guide shows where each category belongs and how to work it into real experience bullets.