- Company Name
- The Phoenix Group
- Job Title
- Information Technology Security Analyst
- Job Description
-
**Job Title**
Information Technology Security Analyst
**Role Summary**
Protect enterprise and cloud environments by identifying, investigating, and responding to security incidents, managing vulnerabilities, and continually strengthening security controls through automation and collaboration.
**Expectations**
- Deliver timely threat detection and incident response.
- Maintain and improve security tooling and processes.
- Communicate security posture and improvement plans clearly to stakeholders.
**Key Responsibilities**
- Review alerts, logs, and network activity to detect threats and abnormal behavior.
- Investigate incidents, coordinate escalation, and support containment, remediation, and post‑mortem activities.
- Conduct vulnerability assessments, validate findings, and advise on patching and remediation.
- Tune, manage, and audit endpoint protection, SIEM/EDR, monitoring, and scanning platforms.
- Analyze user, system, cloud, and email activity to detect misuse or compromise.
- Collaborate with IT, engineering, and vendors to enhance defensive controls and security workflows.
- Contribute to security policies, procedures, and awareness initiatives.
- Support regulatory, audit, and third‑party risk assessment activities.
- Produce reports on security posture, incidents, and improvement initiatives.
- Stay current on attacker techniques, industry trends, and evolving threat landscapes.
**Required Skills**
- Security operations, incident response, or risk‑focused IT experience.
- Knowledge of NIST, ISO, HIPAA, GDPR, and other regulatory frameworks.
- Proficiency with identity and access management, authentication, and directory services.
- Understanding of networking, endpoint protection, and detection technologies.
- Experience in vulnerability management, malware analysis, or forensic investigations.
- Familiarity with security platforms, SIEM, and EDR tools.
- Ability to script/automate routine security tasks (PowerShell, Python, Bash).
**Required Education & Certifications**
- Bachelor’s degree in a technology‑related field or equivalent hands‑on experience.
- Industry certifications (e.g., CISSP, CISM, CEH, CompTIA Security+, GIAC, or similar) are a plus but not mandatory.
New york city, United states
Hybrid
28-01-2026