Job Summary :
The Security Analyst is responsible for ensuring the security and integrity of the organization's information systems and data. This role involves identifying and mitigating security risks, reviewing project security requirements, and maintaining compliance with security standards. The Security Analyst will also focus on detection engineering by designing systems to detect malicious activities and implementing automation technologies to streamline security operations, including vulnerability management and incident response.
General Duties and Responsibilities :
- Identify and ensure mitigation of information security risks within the organization.
- Review requests for adherence to security policies, ensuring requests are executed correctly.
- Identify security incidents and respond to ensure threats and risks are contained.
- Maintain integrity of security controls, toolsets, and other security-relevant services.
- Develop and analyze security reports, and build presentations as required.
- Monitor and audit systems for security violations, vulnerabilities, and abnormalities.
- Develop, implement, and maintain alignment with security control frameworks.
- Assist with incident handling and other incident response activities, as required.
- Implement and evaluate the effectiveness of data loss prevention (DLP) policies and
detections.
Create actionable alerts based on detected threats to prompt immediate response fromconcerned teams.
Implement automation technologies to streamline security operations such as vulnerability management and incident response.Educational and Certification Requirements :
A degree in Cybersecurity, Information Technology, Computer Science, or related field is desirable. Industry recognized certifications are a plus, including CISSP, CISM, CEH, CompTIA Security+, etc.Certifications from public cloud providers (AWS, Azure, Google, Oracle) is a plus.General Knowledge, Skills, and Abilities :
An Information Security Analyst should possess a working level understanding of controls (e.g., access control, auditing, authentication, encryption, and system integrity). Experience with Microsoft Active Directory, encryption algorithms, network monitoring, TCP / IP networks, and intrusion detection / prevention systems is important. Skills in scripting with PowerShell, Python, or Bash are a plus.A working level understanding of controls (e.g., access control, auditing, authentication, encryption, and system integrity).Versed in operating systems such as Linux (various distributions) and Microsoft Windows.Experience with Microsoft Active Directory, encryption and algorithms, authorization and authentication mechanisms / software, network monitoring, TCP / IP networks, DNS, nextgeneration firewalls, and intrusion detection / prevention systems.
General knowledge of network design and common network protocols, and infrastructuresystems.
Ability to create scripts to automate processes in PowerShell, Python or Bash is a plus.Ability to recognize and analyze malware.Ability to analyze large data sets and identify patterns and anomalies.Ability to quickly create and deploy countermeasures or mitigations under pressure.Build effective relationships. Develop and use collaborative relationships to facilitate the accomplishment of work goals.Experience with the PCI-DSS, ISO-27001, and / or SOC II compliance frameworks is a plus.Experience implementing and measuring security controls aligned with NIST 800-53 and the Center for Internet Security (CIS) is a plus.Project Management skills is a plus.Experience with the following technologies is a plus : SentinelOne Singularity Platform, Tanium, Google Chronicle SIEM, Cloudflare L3-L7 security technologies, Tenable.io, Lacework, Recorded Future, KnowBe4, ServiceNow, Jira, Microsoft Defender for Endpoints, Microsoft Security and Compliance, Microsoft Azure Key Vault.Experience with the native security service solutions for public cloud service providers (AWS, Google, Azure, Oracle) is a plus.ref : hirist.tech)