IT Cybersecurity Analyst II

Club Car

Virginia (MN)

On-site

USD 85,000 - 120,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Club Car is seeking a Cybersecurity Analyst II to protect our information systems through ongoing security operations, IAM, PAM, EDR, and SOC activities. You will work with IT teams and MSPs to reduce risk and ensure compliance with industry standards.

Responsibilities include managing IAM/PAM, monitoring access logs, configuring MFA and SSO, supporting ITGCs, vulnerability management, and incident response. A strong foundation in NIST/ISO frameworks and hands-on security tooling is required.

Qualifications

  • Bachelor's degree or higher in a relevant field; 3–5 years of cybersecurity experience.
  • Experience with IAM, PAM, EDR, vulnerability management, security monitoring, incident response support, and compliance activities.
  • Strong knowledge of cybersecurity frameworks (e.g., NIST, ISO 27001, CIS Controls).
  • Hands-on experience with security technologies including SIEM, EDR, IAM, PAM, and vulnerability management tools.

Responsibilities

  • Support IAM, PAM, EDR, vulnerability management, security monitoring, and SOC activities.
  • Assist with ITGC design, implementation, and audit readiness.
  • Collaborate with IT and MSPs to reduce risk and improve security posture.
  • Contribute to incident response, threat detection, and root cause analysis.

Skills

IAM
PAM
EDR
SOC
ITGC
vulnerability management
security monitoring
incident response
compliance activities
NIST/ISO 27001/CIS Controls
Microsoft 365 security
cloud security
identity governance

Education

Bachelor's degree in Computer Science, Information Security, or a related field

Tools

SIEM
EDR
IAM
PAM
vulnerability management tools

Job description

Club Car boasts a 60+ year history of industry-leading innovation and design, initially focused on golf cars and then expanding to commercial utility vehicles and personal-use transportation.

General Job Description

The Cybersecurity Analyst II plays a critical role in protecting the organization's information systems by maintaining, monitoring, and continuously improving cybersecurity operations and controls. This position is responsible for day-to-day security operations, including Identity and Access Management (IAM), Privileged Access Management (PAM), Endpoint Detection and Response (EDR), Security Operations Center (SOC) functions, IT General Controls (ITGC), vulnerability management, compliance support, and security monitoring activities. The ideal candidate possesses a strong understanding of cybersecurity frameworks, security best practices, and hands-on experience with security technologies, and operates with a high degree of independence while partnering with IT teams, managed security service providers, and cybersecurity leadership to reduce organizational risk.

Essential Job Functions
  • Manage and support IAM tools and systems, ensuring secure authentication and authorization mechanisms are in place.
  • Oversee the provisioning and de-provisioning of user accounts, ensuring appropriate access levels based on the principle of least privilege.
  • Monitor and audit user access logs, ensuring compliance with security policies.
  • Administer, support, and enforce Multi-Factor Authentication (MFA) and Single Sign-On (SSO) solutions.
  • Collaborate with HR, IT, and other departments to ensure role-based access controls (RBAC) are in place and up to date.
  • Privileged Access Management (PAM):
  • Administer, support, and continuously improve PAM solutions to ensure secure management of privileged accounts.
  • Perform periodic reviews and audits of privileged accounts, ensuring access is limited and monitored.
  • Manage and automate the rotation of privileged credentials, ensuring secure password management.
  • Monitor privileged sessions in real-time and respond to potential security threats associated with misuse of privileged accounts.
  • Maintain the inventory of all privileged accounts and provide continuous improvement recommendations.
  • Endpoint Detection and Response (EDR):
  • Administer, configure, and maintain EDR solutions across corporate endpoints.
  • Continuously monitor and analyze EDR alerts, logs, and endpoint activity; investigate security events to support threat detection, incident response activities, and root cause analysis.
  • Develop, tune, and refine endpoint detection rules to improve visibility into suspicious or malicious activity.
  • Collaborate with managed security providers and IT teams to ensure timely investigation and remediation of security events identified through EDR tools.
  • Maintain EDR platform health, agent coverage, and configuration compliance across enterprise endpoints.
  • Support endpoint security initiatives, including hardening, patch validation, and control effectiveness reviews.
  • Security Operations Center (SOC) Tasks:
  • Collaborate with the SOC to identify, investigate, and respond to cybersecurity threats and incidents.
  • Monitor security alerts and events from SIEM and other monitoring tools.
  • Conduct incident triage and elevate potential incidents based on established procedures.
  • Support incident investigations, containment, eradication, recovery, and post-incident reviews under the direction of cybersecurity leadership.
  • Maintain up-to-date documentation of security incidents, threat intelligence, and mitigation efforts.
  • IT General Controls (ITGC) Implementation:
  • Assist in the design, implementation, and continuous improvement of IT General Controls (ITGCs), ensuring alignment with industry best practices and compliance requirements (e.g., SOX, HIPAA, GDPR).
  • Perform periodic reviews and testing of ITGCs to evaluate effectiveness and support audit readiness.
  • Provide recommendations to strengthen IT controls and mitigate identified risks and control deficiencies.
  • Collaborate with internal and external audit teams to ensure ITGCs are properly documented, maintained, and supported with appropriate evidence.
  • Develop, maintain, and periodically review security policies, standards, and procedures aligned with the organization's risk management strategy.
  • Vulnerability Management:
  • Conduct regular vulnerability assessments across the organization’s networks, endpoints, servers, cloud services, and applications.
  • Utilize vulnerability scanning and security assessment tools to identify security weaknesses, outdated software, and misconfigurations.
  • Collaborate with IT teams to prioritize, track, and remediate vulnerabilities based on risk, exploitability, and business impact.
  • Develop and maintain vulnerability metrics, dashboards, and reporting to communicate security posture and remediation progress to leadership.
  • Monitor emerging threats and vulnerabilities and coordinate timely remediation and patch management activities.
  • Validate remediation efforts and track vulnerability trends to measure control effectiveness and risk reduction over time.
Additional Responsibilities
  • Participate in cybersecurity awareness training programs, helping to educate employees about security best practices and phishing awareness.
  • Assist with security risk assessments and the development of a risk mitigation strategy.
  • Stay current with the latest cybersecurity trends, attack methods, and defense strategies.
  • Contribute to the continuous improvement of the organization's cybersecurity framework.
  • Participate in security-related projects as needed, providing technical guidance and ensuring adherence to security standards.
  • Review security controls and assist with remediation planning and risk reduction efforts alongside IT stakeholders.
  • Assess and improve security controls across Microsoft 365, cloud platforms, identity systems, SaaS applications, and endpoint technologies.
  • Develop and maintain cybersecurity metrics, dashboards, and reporting to communicate security posture, remediation progress, and risk reduction efforts to leadership.
Education, Experience & Skills
  • Bachelor's degree in Computer Science, Information Security, or a related field, or equivalent experience.
  • 3–5 years of progressively responsible cybersecurity experience.
  • Experience with IAM, PAM, EDR, vulnerability management, security monitoring, incident response support, and compliance activities.
  • Strong knowledge of cybersecurity frameworks (e.g., NIST, ISO 27001, CIS Controls).
  • Hands-on experience with security technologies, including SIEM, EDR, IAM, PAM, and vulnerability management tools.
  • Experience supporting Microsoft 365 security, cloud security controls, and identity governance initiatives.
  • Preferred Certifications:
    • Security+
    • CySA+
    • SSCP
    • GSEC
    • CISSP or CISM (preferred but not required)

Club Car is a diverse and inclusive environment. We are an equal opportunity employer, dedicated to hiring a diverse workforce; including individuals with disabilities and United States qualified protected veterans.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

IT Cybersecurity Analyst II
IT Cybersecurity Analyst II

Club Car, LLC • North Augusta (GA)

On-site
USD 90,000 - 110,000
Cybersecurity Analyst II - IAM, EDR & SOC
Cybersecurity Analyst II - IAM, EDR & SOC

Club Car • Virginia (MN)

On-site
USD 85,000 - 120,000
Senior Cyber Security Analyst
Senior Cyber Security Analyst

Ampcus Inc • Washington

On-site
USD 90,000 - 120,000
Cybersecurity Analyst
Cybersecurity Analyst

TurnPoint Services • Louisville (KY)

On-site
USD 70,000 - 100,000
Cybersecurity Analyst
Cybersecurity Analyst

Jobtailor • Cincinnati (OH)

On-site
USD 110,000 - 140,000
Senior Cybersecurity Manager
Senior Cybersecurity Manager

Concert Golf Partners • Town of Florida (NY)

On-site
USD 120,000 - 144,000
Medical benefits
Dental benefits
Vision benefits
+4
Cybersecurity Engineer
Cybersecurity Engineer

Hirebridge • Chicago (IL)

Hybrid
USD 85,000 - 120,000
Senior Cybersecurity Manager
Senior Cybersecurity Manager

Concert Golf • Florida

On-site
USD 108,000 - 132,000
Medical, dental, vision benefits
401(k) plan with match
Paid time off and holidays
+1
Cybersecurity Lead
Cybersecurity Lead

21 Air LLC. • Miami (FL)

Hybrid
USD 120,000 - 170,000
Cybersecurity Analyst
Cybersecurity Analyst

PWCampbell • Pittsburgh

On-site
USD 90,000 - 120,000