Join Verdantas – A Top #ENR 81 Firm,
We at Verdantas are seeking a highly motivated and detail-oriented Information Security Analyst, to protect our company’s critical systems and sensitive data. You will be an integral part of our security team, responsible for implementing, maintaining, and monitoring our security posture. The ideal candidate will have a strong technical background, a proactive mindset, and a passion for staying ahead of the latest security trends and threats.
Key Responsibilities
Security Operations & Monitoring :
- Monitor security alerts from SIEM, IDS / IPS, firewalls, and other security tools to identify and investigate potential security incidents.
- Perform vulnerability scans and assessments, prioritizing and tracking remediation efforts.
- Manage and configure security tools, including EDR / XDR, antivirus, and email security gateways.
- Conduct log analysis and forensic investigations to determine the root cause of security events.
Incident Response :
Serve as a key member of the incident response team.Respond to and mitigate security incidents in a timely and effective manner.Document incidents and develop runbooks for future reference.Security Architecture & Engineering :
Design, implement, and maintain security controls and technologies to protect cloud (e.g., AWS, Azure, GCP) and on-premises infrastructure.Implement and manage identity and access management (IAM) policies and practices.Harden systems, networks, and applications based on industry best practices (e.g., CIS Benchmarks).Assist in the development and enforcement of security policies, standards, and procedures.Governance, Risk, and Compliance (GRC) :
Participate in risk assessments and audits (e.g., SOC 2, ISO 27001, PCI-DSS, HIPAA).Assist in third-party security risk assessments.Promote security awareness across the organization through training and communication.Required Qualifications & Skills
Bachelor’s degree in computer science, Information Security, or a related field, or equivalent experience.[8+] years of experience in an information security role.Hands-on experience with core security technologies (SIEM, EDR, Firewalls, IDS / IPS, DLP).Strong understanding of networking protocols (TCP / IP, DNS, HTTP / S) and network security.Knowledge of operating systems (Windows, Linux, macOS) and their security aspects.Familiarity with cloud security principles (AWS, Azure, or GCP).Understanding of common attack vectors, malware, and threat actor tactics (e.g., MITRE ATT&CK framework).Excellent problem-solving and analytical skills.Strong written and verbal communication skills.Preferred Qualifications & Skills
Relevant industry certifications such as :Entry-Level : Security+, GIAC GSECMid-Level : CISSP, CISM, CEH, CompTIA CySA+Cloud-Specific : CCSP, AWS Certified Security - Specialty, Azure Security Engineer AssociateExperience with scripting languages (e.g., Python, PowerShell, Bash) for automation.Knowledge of application security (SAST, DAST) and secure SDLC practices.Experience with penetration testing or red teaming tools and methodologies.Prior experience in a regulated industry (finance, healthcare, etc.)