- Company Name
- Search Services
- Job Title
- Information Security Analyst and Engineer
- Job Description
-
Job Title: Information Security Analyst and Engineer
Role Summary:
Hybrid security engineering role focused on protecting mission‑critical systems, monitoring threats, responding to incidents, and advancing overall security maturity through program improvement and stakeholder collaboration.
Expactations:
- Deliver day‑to‑day security operations support including monitoring, incident handling, and remediation tracking.
- Partner with consultants, MSPs, and internal teams to align security controls with business goals.
- Contribute to security policy development, risk assessments, and compliance reporting.
Key Responsibilities:
- Develop and implement security processes, tools, and controls across platforms.
- Monitor SIEM/EDR alerts, analyze logs, and investigate security incidents.
- Track vulnerability findings, coordinate remediation, and validate fixes.
- Prepare metrics and dashboards to assess program effectiveness.
- Design secure architectures for applications and infrastructure.
- Perform penetration test analysis, risk assessments, and vendor reviews.
- Conduct security training, phishing simulations, and awareness programs.
- Manage data‑loss prevention enhancements and incident response planning.
- Support business continuity, disaster recovery testing, and compliance reviews.
- Validate MSP‑delivered security solutions against standards.
- Automate repetitive tasks to increase efficiency.
Required Skills:
- 3–5 years of IT security experience with hands‑on implementation and analysis.
- Proficiency in EDR, SIEM configuration and investigations.
- Knowledge of firewalls, email gateways, internet filters, VPNs, and network security.
- Understanding of OS, network, and application security concepts.
- Familiarity with NIST Cybersecurity Framework.
- Experience in hybrid, Azure‑preferential, and SaaS environments.
- Strong analytical, troubleshooting, and communication skills.
- Adaptability to learning new technologies and collaborative environments.
Required Education & Certifications:
- Bachelor’s degree in Computer Science, Information Security, or related technical field.
- (Preferred) CISSP, CompTIA Security+, GIAC, or equivalent security certifications.
- (Preferred) Experience with regulatory frameworks such as NERC CIP, SOX, or similar.
(Word count: 219)