Information Security Analyst

Cobalt Benefits Group LLC

Manchester (NH)

On-site

USD 85,000 - 110,000

Full time

3 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Cobalt Benefits Group LLC is seeking an Information Security Analyst to safeguard information assets across cloud and on‑prem environments. The role involves monitoring controls, investigating alerts, and coordinating remediation in a regulated setting.

The successful candidate will work with IT Operations, infrastructure, and application teams, contributing to risk management, data protection, and secure deployment of AI-enabled services.

Qualifications

  • 3–5 years of experience in security operations, cloud security, infrastructure security, or a comparable role.
  • Hands-on experience investigating alerts and working across endpoint, identity, email, network, cloud, and data security controls.
  • Experience with vulnerability assessment, remediation tracking, patch management, incident response, and security control validation.
  • Understanding of data discovery, classification, data loss prevention, sensitive-information handling, and insider-risk concepts.
  • Ability to explain technical findings, business impact, and recommended actions to both technical and non-technical audiences.

Responsibilities

  • Monitor security platforms for suspicious activity and triage incidents.
  • Coordinate containment, remediation, and post-incident follow-up.
  • Analyze logs across endpoints, networks, and cloud to distinguish incidents from normal activity.
  • Maintain incident response plans and case documentation.
  • Assist in securing hybrid environments and implementing Zero Trust concepts.

Skills

Security operations
Cloud security
Infrastructure security
Incident response
Vulnerability management
Documentation
Communication
PowerShell

Education

Bachelor's degree or equivalent

Tools

PowerShell

Job description

About this position

Description: Cobalt Benefits Group is seeking an Information Security Analyst to help safeguard information assets and technology services across cloud and on-premises environments. The analyst will monitor security controls, investigate alerts, coordinate remediation, and improve the organization’s ability to prevent, detect, and respond to cybersecurity risk.

The successful candidate will bring practical experience across multiple security domains rather than expertise in a single vendor platform. The role works closely with IT Operations, infrastructure, and application teams in a regulated environment.

Security Operations & Incident Response
  • Monitor managed detection and response, endpoint, identity, email, network, cloud, and security analytics platforms for suspicious activity.
  • Triage and investigate alerts; document findings; coordinate containment, remediation, recovery, and post-incident follow-up.
  • Analyze event, identity, endpoint, cloud, application, and network logs to distinguish security incidents from expected activity and false positives.
  • Maintain incident response plans, investigation procedures, escalation paths and case documentation.
Cloud, Identity & Secure Access
  • Assess and improve security across public cloud subscriptions, storage, workloads, applications, and hybrid connectivity.
  • Administer identity and access controls including multifactor authentication, conditional access, role-based access, privileged access, service identities, access reviews, and joiner-mover-leaver processes.
  • Support Zero Trust and secure access services for private applications.
  • Partner with administrators and engineers to design secure access for cloud data platforms, application hosting, and future AI-enabled services.
Data Protection, Human Risk & Insider Risk
  • Operate data security posture management capabilities to discover sensitive data, excessive access, shadow data, orphaned files, and insecure sharing.
  • Administer data loss prevention controls across email, endpoints, collaboration platforms, cloud services, applications, and file repositories.
  • Support data discovery, classification, information protection, retention, encryption, and remediation workflows for regulated and confidential information.
  • Administer security awareness training, phishing simulations, targeted education, completion tracking, and human-risk reporting.
Endpoint, Network & Application Security
  • Support endpoint detection and response, device security, mobile device management, application control, browser protection, and workstation security baselines.
  • Coordinate vulnerability and exposure management across endpoints, servers, network devices, databases, applications, and cloud workloads and prioritize remediation through patching.
  • Assess application and infrastructure changes for secure configuration, logging, access, data protection, and resilience requirements.
  • Monitor security systems, including firewalls, intrusion detection systems, to detect and respond to security incidents in a timely manner.
  • Collaborate on operating system, application, firmware, and security patching; validate remediation and document accepted exceptions.
Resilience, Governance & Continuous Improvement
  • Support backup, recovery, immutable storage, business continuity, and disaster recovery security requirements.
  • Maintain policies, standards, procedures, diagrams, and inventories.
  • Contribute to automation and repeatable analysis using scripting, query languages, and workflow integrations.
  • Evaluate emerging security requirements for cloud, software-as-a-service, and AI Agents.
  • Partner with business and technology stakeholders to establish AI governance, security controls, and risk management practices that enable the responsible use of generative AI, AI agents, automation, and machine-to-machine services.
  • Contribute to the organization’s AI Risk Management Framework (AI RMF) program by supporting AI inventory management, risk assessments, control validations, policy development, monitoring activities, and ongoing governance reviews.

Requirements:

Job Requirements

  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or a related field, or equivalent relevant experience.
  • Three to five years of experience in security operations, cloud security, infrastructure security, or a comparable role.
  • Hands‑on experience investigating alerts and working across endpoint, identity, email, network, cloud, and data security controls.
  • Experience with vulnerability assessment, remediation tracking, patch management, incident response, and security control validation.
  • Understanding of data discovery, classification, data loss prevention, sensitive‑information handling, and insider‑risk concepts.
  • Ability to explain technical findings, business impact, and recommended actions to both technical and non‑technical audiences.
  • Strong judgment, discretion, documentation, analytical thinking, and the ability to manage multiple priorities.

Preferred Qualifications

  • Experience in a regulated environment and familiarity with security or compliance frameworks such as NIST, MITRE ATT&CK, SOC 2, or HITRUST.
  • Experience securing hybrid environments with cloud infrastructure, productivity platforms, on‑premises systems, virtualized infrastructure, and software‑as‑a‑service applications. Working knowledge of cloud security, identity governance, and hybrid infrastructure.
  • Familiarity with security information and event management, extended detection and response, cloud security posture management, web application protection, and security orchestration.
  • Experience with scripting or security analytics using PowerShell, query languages, or comparable automation methods.
  • Relevant industry or cloud security certifications

Equal Opportunity Employer, including disability/protected veterans

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Information Security Analyst
Information Security Analyst

Socket.dev • Manchester (NH)

On-site
USD 90,000 - 120,000
IT Security Analyst
IT Security Analyst

Fortegra • Jacksonville (FL)

On-site
USD 85,000 - 120,000
Information Security Analyst - Cloud & Incident Response
Information Security Analyst - Cloud & Incident Response

Cobalt Benefits Group LLC • Manchester (NH)

On-site
USD 85,000 - 110,000
Information Technology Security Analyst
Information Technology Security Analyst

The Phoenix Group • New York (NY)

On-site
USD 80,000 - 120,000
Cyber Defense & Cloud Security Analyst
Cyber Defense & Cloud Security Analyst

Socket.dev • Manchester (NH)

On-site
USD 90,000 - 120,000
Information Security Analyst
Information Security Analyst

Cisive • Maryland

Hybrid
USD 80,000 - 110,000
Security Analyst
Security Analyst

AGS - American Gaming Systems • Las Vegas (NV)

On-site
USD 90,000 - 120,000
Senior Cyber Security Analyst
Senior Cyber Security Analyst

Ampcus Inc • Washington

On-site
USD 90,000 - 120,000
Information Security Analyst
Information Security Analyst

Talener • Boston (MA)

On-site
USD 125,000 - 175,000
Comprehensive benefits
Cyber Security Analyst
Cyber Security Analyst

Compunnel, Inc. • San Antonio (TX)

On-site
USD 85,000 - 110,000