Cybersecurity Analyst

Socket.dev

Guaynabo (PR)

On-site

USD 70,000 - 90,000

Full time

5 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Grupo Ferré Rangel is seeking a Cybersecurity Analyst to actively assess security, implement controls, and respond to incidents for ongoing protection of systems and data. The role emphasizes PCI compliance, SOC2 alignment, and collaboration across IT functions to maintain a robust security posture.

The position is full-time in Puerto Rico with flexible hours to address incidents and ensure regulatory adherence.

Qualifications

  • Bachelor’s degree in CS, IT, or related field required or equivalent experience.
  • Minimum 2+ years in information technology or security roles.

Responsibilities

  • Perform regular security assessments and tests to identify weaknesses.
  • Develop and apply security controls to reduce risks and improve posture.
  • Investigate suspicious activity and correlate events for timely resolution.
  • Conduct weekly PCI compliance scans and uphold SOC2 and other standards.
  • Manage security tools and ensure proper access controls and endpoint protection.
  • Develop training modules and run simulated phishing and security awareness exercises.
  • Respond to alerts via email and ticketing system, prioritizing critical events.
  • Coordinate with IT teams to implement security best practices and changes.

Skills

Cybersecurity analysis
Incident response
Risk management
Networking knowledge
Security tools
Firewalls
Vulnerability scanning
Analytical skills
Bilingual EN/ES

Education

Bachelor’s degree in Computer Science or related field

Tools

SIEM
IDS/IPS
Vulnerability scanners
Firewall technologies

Job description

Grupo Ferré Rangel

It's fun to work in a company where people truly BELIEVE in what they're doing!

We're committed to bringing passion and customer focus to the business.

The Cybersecurity Analyst position is a Full time, Regular position.

MAIN RESPONSIBILITIES
  • Conducts regular security assessments and penetration tests to proactively identify weaknesses in our systems and infrastructure.
  • Develops and implements security controls and measures to mitigate risks and enhances the overall security posture.
  • Promptly identifies and investigates any suspicious activities that may signal a security breach, while performing a fast analysis and correlation of events to ensure timely resolution of potential issues.
  • Conducts weekly system scans to uphold compliance with PCI regulations and policies. Additionally, it ensures adherence to other regulatory standards, such as SOC2, necessitating comprehensive understanding of processes, documentation, and related requirements.
  • Guarantees optimal performance and configuration of all security tools and systems by managing and maintaining their settings. This includes removing redundant servers and computers, verifying that all authorized users have appropriate access permissions to applications and systems, and ensuring effective implementation of endpoint protection policies, including handling any necessary exceptions.
  • Assists in the creation of tailored training modules and simulated attacks, utilizing customizable templates to educate employees within the company, and creating awareness of cybersecurity threats.
  • Emphasizes the importance of ongoing updates to ensure all users are promptly informed of cybersecurity protocols, especially with the arrival of new personnel.
  • Responds to alerts through various channels including email, the Help Desk ticketing system, and any other notifications from fellow employees, prioritizing actions based on the criticality of each alert.
  • Facilitates information exchange between analysts and other IT departments. In the event of a new vulnerability affecting a product managed by another team, ensure prompt sharing of relevant details, and recommend viable alternatives to address the issue.
  • Checks that all scheduled tasks and updates perform successfully, as well as coordinating the updates with Infrastructure personnel so that they are performed without affecting the operation.
  • Collaborates with cross-functional teams to implement security best practices and ensure compliance with relevant regulations and standards.
  • Stay up to date with the latest cybersecurity trends, threats, and technologies to continuously improve our security posture.
  • Complies fully and consistently with the Company's standards, policies, and procedures and the local and federal laws applicable to our industry, business, and employment practices.
  • May perform other duties and responsibilities as assigned, in accordance with the education and experience requirements contained in this document.
QUALIFICATIONS
  • Bachelor’s degree in Computer Science, Information Technology, or a related field.
  • 2+ years of experience in information technology roles.
KNOWLEDGE, SKILLS AND ABILITIES
  • Proven experience in cybersecurity analysis, incident response, and risk management.
  • Strong knowledge of networking protocols and security technologies.
  • Highly knowledgeable about computers, including networks, operating systems, applications, and web apps.
  • Experience with security tools such as SIEM, IDS/IPS, firewalls, and vulnerability scanners.
  • Excellent analytical, problem-solving, and communication skills.
  • Ability to work independently and collaboratively.
  • Excellent multitasking skills and ability to manage multiple projects.
  • Proven ability to prioritize and handle multiple tasks at once; strong attention to detail is a must.
  • Proven organizational skills, with experience working in a fast-paced and high-volume environment.
  • Ability to identify solutions independently and make sound business decisions.
  • Experience utilizing Microsoft Office products (MS Word, Excel, and Outlook).
  • Bilingual (writing, conversational and reading comprehension in English and Spanish)
CERTIFICATIONS/ LICENSES/ PROFESSIONAL AFFILIATIONS
  • Certifications such as CompTIA Security+, CEH (Certified Ethical Hacker), CISSP, CISM, or GIAC certifications, and membership in recognized cybersecurity professional organizations (e.g., ISACA, (ISC)²), are preferred.
WORKING CONDITIONS

The work environment characteristics described here are representative of those an employee encounters while performing the essential functions of this job.

  • The noise level in the work environment is usually moderate.
  • Will operate a computer, copier, and other modern office equipment. The employee generally works indoors in an office.
  • Ability to work in a fast-paced environment with flexible hours, including evenings or weekends, to respond to security incidents, perform system maintenance, or support cross-functional cybersecurity initiatives.
  • Occasional offsite visits may be required, as requested by the organization.
PHYSICAL REQUIREMENTS

The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job.

  • Ability to sit for extended periods while working on a computer and managing various cybersecurity projects and incidents.
  • Regular use of hands and fingers for typing, digital navigation, and handling office equipment.
  • Occasional lifting and carrying of equipment, such as laptops, servers, or security hardware, typically up to 25 pounds.
  • Strong visual and auditory skills are essential for monitoring system alerts, analyzing logs, and assessing potential security threats.

If you thrive in an environment that fosters growth and collaboration with motivated, enthusiastic high achievers, you'll find a fulfilling career with us!

Grupo Ferré Rangel

¡Nada mejor que trabajar en un lugar donde todos realmente CREEN en su propósito!

Nuestra misión es aportar pasión y atención al cliente en cada paso del camino.

La posición Cybersecurity Analyst es Full time y Regular.

MAIN RESPONSIBILITIES
  • Conducts regular security assessments and penetration tests to proactively identify weaknesses in our systems and infrastructure.
  • Develops and implements security controls and measures to mitigate risks and enhances the overall security posture.
  • Promptly identifies and investigates any suspicious activities that may signal a security breach, while performing a fast analysis and correlation of events to ensure timely resolution of potential issues.
  • Conducts weekly system scans to uphold compliance with PCI regulations and policies. Additionally, it ensures adherence to other regulatory standards, such as SOC2, necessitating comprehensive understanding of processes, documentation, and related requirements.
  • Guarantees optimal performance and configuration of all security tools and systems by managing and maintaining their settings. This includes removing redundant servers and computers, verifying that all authorized users have appropriate access permissions to applications and systems, and ensuring effective implementation of endpoint protection policies, including handling any necessary exceptions.
  • Assists in the creation of tailored training modules and simulated attacks, utilizing customizable templates to educate employees within the company, and creating awareness of cybersecurity threats.
  • Emphasizes the importance of ongoing updates to ensure all users are promptly informed of cybersecurity protocols, especially with the arrival of new personnel.
  • Responds to alerts through various channels including email, the Help Desk ticketing system, and any other notifications from fellow employees, prioritizing actions based on the criticality of each alert.
  • Facilitates information exchange between analysts and other IT departments. In the event of a new vulnerability affecting a product managed by another team, ensure prompt sharing of relevant details, and recommend viable alternatives to address the issue.
  • Checks that all scheduled tasks and updates perform successfully, as well as coordinating the updates with Infrastructure personnel so that they are performed without affecting the operation.
  • Collaborates with cross-functional teams to implement security best practices and ensure compliance with relevant regulations and standards.
  • Stay up to date with the latest cybersecurity trends, threats, and technologies to continuously improve our security posture.
  • Complies fully and consistently with the Company's standards, policies, and procedures and the local and federal laws applicable to our industry, business, and employment practices.
  • May perform other duties and responsibilities as assigned, in accordance with the education and experience requirements contained in this document.
QUALIFICATIONS
  • Bachelor’s degree in Computer Science, Information Technology, or a related field.
  • 2+ years of experience in information technology roles.
KNOWLEDGE, SKILLS AND ABILITIES
  • Proven experience in cybersecurity analysis, incident response, and risk management.
  • Strong knowledge of networking protocols and security technologies.
  • Highly knowledgeable about computers, including networks, operating systems, applications, and web apps.
  • Experience with security tools such as SIEM, IDS/IPS, firewalls, and vulnerability scanners.
  • Excellent analytical, problem-solving, and communication skills.
  • Ability to work independently and collaboratively.
  • Excellent multitasking skills and ability to manage multiple projects.
  • Proven ability to prioritize and handle multiple tasks at once; strong attention to detail is a must.
  • Proven organizational skills, with experience working in a fast-paced and high-volume environment.
  • Ability to identify solutions independently and make sound business decisions.
  • Experience utilizing Microsoft Office products (MS Word, Excel, and Outlook).
  • Bilingual (writing, conversational and reading comprehension in English and Spanish)
CERTIFICATIONS/ LICENSES/ PROFESSIONAL AFFILIATIONS
  • Certifications such as CompTIA Security+, CEH (Certified Ethical Hacker), CISSP, CISM, or GIAC certifications, and membership in recognized cybersecurity professional organizations (e.g., ISACA, (ISC)²), are preferred.
WORKING CONDITIONS

The work environment characteristics described here are representative of those an employee encounters while performing the essential functions of this job.

  • The noise level in the work environment is usually moderate.
  • Will operate a computer, copier, and other modern office equipment. The employee generally works indoors in an office.
  • Ability to work in a fast-paced environment with flexible hours, including evenings or weekends, to respond to security incidents, perform system maintenance, or support cross-functional cybersecurity initiatives.
  • Occasional offsite visits may be required, as requested by the organization.
PHYSICAL REQUIREMENTS

The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job.

  • Ability to sit for extended periods while working on a computer and managing various cybersecurity projects and incidents.
  • Regular use of hands and fingers for typing, digital navigation, and handling office equipment.
  • Occasional lifting and carrying of equipment, such as laptops, servers, or security hardware, typically up to 25 pounds.
  • Strong visual and auditory skills are essential for monitoring system alerts, analyzing logs, and assessing potential security threats.

Si disfrutas de un ambiente que promueve el crecimiento y la colaboración con personas motivadas, entusiastas y comprometidas con el éxito, ¡tenemos la carrera ideal para ti!

Grupo Ferré Rangel de ser un Patrono con Igualdad de Oportunidades de Empleo. No discriminamos por raza, color, religión, sexo, orientación sexual, identidad de género, origen nacional, edad, discapacidad, información genética u otro estado o característica protegida por las leyes federales, estatales o locales. Todos los solicitantes calificados serán considerados para empleo sin importar estas características. Animamos a personas de todos los orígenes y experiencias a postularse. Si necesitas asistencia o acomodos razonables debido a una discapacidad, por favor contáctanos en talento@gfrpr.com.

LinkedIn

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Executive, New Business Development
Executive, New Business Development

Grupo Ferré Rangel • Guaynabo (PR)

On-site
USD 70,000 - 110,000
Talent Acquisition Coordinator
Talent Acquisition Coordinator

Grupoferrerangel • Guaynabo (PR)

Hybrid
USD 45,000 - 60,000
Flexible work schedule
Opportunity for professional development
Customer Engagement Rep II
Customer Engagement Rep II

Grupoferrerangel • Ceiba (PR)

On-site
USD 26,000 - 38,000
Customer Engagement Rep II
Customer Engagement Rep II

Grupo Ferré Rangel • Ceiba (PR)

On-site
USD 26,000 - 34,000
ESPEC COMERCIAL CIBERSEGURIDAD
ESPEC COMERCIAL CIBERSEGURIDAD

Claropr • Guaynabo (PR)

On-site
USD 90,000 - 120,000
Mailing & Fulfillment Operator
Mailing & Fulfillment Operator

LinkActiv LLC • Guaynabo (PR)

On-site
USD 24,000 - 36,000
Cybersecurity Analyst - Proactive Security & Response
Cybersecurity Analyst - Proactive Security & Response

GFR SERVICES LLC • Guaynabo (PR)

On-site
USD 70,000 - 110,000
Cybersecurity Engineer
Cybersecurity Engineer

Reyes Holdings • Rosemont (IL)

On-site
USD 100,000 - 140,000
Medical
Dental
Vision coverage
+3
DevSecOps
DevSecOps

FYG | For Your Growth • United States

Hybrid
USD 120,000 - 180,000
Hybrid work model
Especialista Comercial en Ciberseguridad
Especialista Comercial en Ciberseguridad

Claro Puerto Rico • Guaynabo (PR)

On-site
USD 70,000 - 110,000