Job Description
SUMMARY
The Security Analyst detects, manages and reduces the impact of cybersecurity threats to the organization. They are responsible for proactively managing the security of the network and identifying weaknesses of company infrastructure (software, hardware and networks).
ESSENTIAL/ NON-ESSENTIAL JOB FUNCTIONS
- Investigate security alerts/notifications from SPLUNK
- Work with the process automation team on cybersecurity initiatives
- Perform risk assessments and maintain the risk register
- Utilize Mimecast and ForcePoint for web and email monitoring
- Review IT small project charters for security risks
- Assist in the completion of vendor SSAE16’s
- Work with the infrastructure team on mitigating penetration testing findings
- Plan, implement and upgrade security technical measures and controls
- Establish plans and protocols to protect data and information systems against unauthorized access, modification and/or destruction
- Perform vulnerability testing and security assessments
- Conduct internal security audits/compliance testing
- Recommend and install appropriate technical tools and countermeasures
- Define, implement and maintain corporate security policies
- Provide input into security awareness communications
- Utilize in‑house tools to manage DLP
EDUCATION AND EXPERIENCE REQUIREMENTS
Required Education and Experience
- Bachelor’s degree in Computer Science or equivalent (e.g., Math, Electrical Engineering, Cyber Security)
- 5+ years of experience
- Experience with IDS/IPS, penetration and vulnerability testing
- Knowledge of TCP/IP, computer networking, routing and switching
- Experience with Windows, UNIX and Linux operating systems
- Knowledge of network protocols and packet analysis tools
Preferred Education and Experience
- Advanced degree preferred
- Experience with Data Loss Prevention (DLP) tools, anti‑virus/anti‑malware tools
- Experience with firewall and intrusion detection/prevention protocols
- Programming skills in C, C++, C#, Java or PHP
- Experience with Security Information and Event Management (SIEM)
CERTIFICATIONS
CISSP, CCE, CEH, GCFE, GCFA, GCIH, GCIA, CCFE, CPT, CREA, CompTIA A+ would be desirable certifications though other comparable certifications and experience would be considered.
SUPERVISORY RESPONSIBILITIES
Supervises others: No
BUDGETARY RESPONSIBILITIES
No, but all team members provide input into the annual planning process and tool evaluation/selections.
TRAVEL REQUIREMENTS
No
COMPETENCIES
- Self‑starter who is able to work independently while supporting the needs of the team
- Excellent oral and written communication skills
- Comfortable interacting with all levels of management
All your information will be kept confidential according to EEO guidelines.