- Manage and maintain security controls aligned with vendor guidance, CIS benchmarks, and Microsoft best practices
- Provide second-level support to Cyber Security Analysts
- Participate in department, work unit, and credit union meetings
- Collaborate with security partners to strengthen organizational resilience
- Assess information risks to protect member data and secure access to services
- Triage security events and incidents
- Report findings and recommend corrective actions
- Perform vulnerability assessments
- Evaluate the security posture of IT infrastructure and vendor relationships
- Identify and document risk mitigation strategies
- Investigate and resolve security incidents through second-level escalations
- Conduct proactive threat hunting, security reviews, and internal audits
- Create security playbooks
- Streamline alert management processes
- Provide weekly project updates
- Promote awareness of regulatory standards, upstream risks, and industry best practices
- Analyze server, network, and IT service requirements and recommend improvements
- Monitor emerging security threats
- Procure software and services in alignment with procurement policies
- Maintain documentation for sustainability and knowledge sharing
- Develop, document, and test security readiness
- Monitor the network perimeter, endpoints, and infrastructure
- Assess risk and support regulatory compliance
Requirements
- 7+ years’ experience working in an Information Technology environment
- Strong analytical and investigative skills
- Experience administering IT security controls in an organization
- Knowledge of technical infrastructure, networks, applications, and systems
- Strong understanding of adversary tactics and techniques, including the MITRE ATT&CK framework
- Certified Information Systems Security Professional (CISSP), or related certification
- Advanced skills and/or certification in cyber security principles, ITIL Foundations, and COBIT Governance
- Advanced skills and/or certification in Microsoft Enterprise systems
- In-depth knowledge of M365 Security, Microsoft Azure Security, Windows Enterprise environments, and Windows operating systems
- Strong blue team skills, including system security, system auditing, threat intelligence, incident handling, and detection
- Excellent customer service qualities, exceptional communication and organizational skills, attention to detail, and project management skills
Core Competencies
Demonstrates expertise in managing security controls, conducting vulnerability assessments, and ensuring regulatory compliance within IT environments. Proficient in threat hunting, incident handling, and maintaining security documentation to protect organizational assets.
Highest-signal resume keywords
- CISSP Certification
- M365 Security Knowledge
- Microsoft Azure Security Expertise
- Advanced Cyber Security Principles
- Strong Analytical Skills
ATS Optimization Keywords
Hard Skills
- IT Security Controls Administration
- Vulnerability Assessment
- Incident Handling
- Threat Intelligence
- System Auditing
- Risk Mitigation Strategies
- Security Posture Evaluation
- Adversary Tactics Understanding
- Security Playbook Creation
- Alert Management Streamlining
Soft Skills
- Exceptional Communication Skills
- Attention to Detail
- Project Management Skills
- Customer Service Qualities
- Organizational Skills
Certifications & Qualifications
- Certified Information Systems Security Professional (CISSP)
- ITIL Foundations Certification
- COBIT Governance Certification
Industry Keywords
- Cyber Security
- Regulatory Compliance
- Information Technology
- Risk Assessment
- Security Controls
Tools & Technologies
- Microsoft Enterprise Systems
- Windows Operating Systems
- Network Monitoring Tools
- Security Information and Event Management (SIEM)
- CIS Benchmarks