Overview
The Cyber Security Specialist is responsible for the technical implementation, monitoring, and maintenance of cybersecurity controls to protect AAI’s IT infrastructure, systems, applications, and data. The role focuses on threat detection, vulnerability management, incident response, log analysis, and continuous security improvement across on-premises and cloud environments.
Responsibilities
- Implement, configure, and maintain technical security controls including firewalls, IDS/IPS, endpoint protection, SIEM, and data protection solutions.
- Monitor security systems and dashboards to detect, analyze, and respond to security alerts and incidents.
- Perform incident response activities including triage, containment, eradication, recovery, and post-incident analysis.
- Conduct vulnerability assessments, configuration reviews, and security hardening for servers, endpoints, network devices, and applications.
- Analyze system logs, network traffic, and security events to identify indicators of compromise (IOCs) and attack patterns.
- Support threat hunting activities and proactive identification of security weaknesses.
- Assist in the deployment and maintenance of identity and access management (IAM) controls, including privileged access and authentication mechanisms.
- Work with IT and infrastructure teams to remediate security findings and ensure secure system configurations.
- Perform regular security testing such as vulnerability scanning and assist with penetration testing activities.
- Maintain and update security documentation, incident reports, and technical procedures.
- Stay current with emerging cyber threats, vulnerabilities, exploits, and security technologies.
- Support compliance with internal security policies, standards, and regulatory requirements.
- Perform any other duties as assigned by the President & CEO.
Qualifications
- Bachelor’s Degree in Computer Science, Information Technology, Cybersecurity, Engineering, or a related field
- Professional security certifications such as CISSP, CEH, Security+, GCIH, or equivalent.
Work Experience
- 3+ years of hands-on experience in a technical cybersecurity role (Cyber Security Specialist, Analyst, SOC Analyst, or similar).
- Practical experience with security monitoring, incident detection, and incident response.
- Experience working with SIEM platforms, endpoint security tools, vulnerability scanners, and network security devices is an advantage.
- Familiarity with log analysis, packet analysis, and basic digital forensics concepts.
- Strong understanding of TCP/IP, networking protocols, operating systems (Windows/Linux), and system security concepts.
- Knowledge of common attack techniques, malware, phishing, and exploitation methods.
- Ability to analyze security data and troubleshoot complex technical issues.
- Familiarity with security frameworks and standards (e.g., NIST, ISO 27001).