Search jobs > Overland Park, KS > Information security

Sr Information Security Analyst - Glass Family of Companies

G.A.S. Global
Overland Park, KS
Full-time

Opportunity Details

Sr Information Security Analyst

JOB-10042406

Anticipated Start Date

08 / 19 / 2024

Location

Overland Park, KS

Type of Employment

Contract-to-Hire

Employer Info

Our client is an employee-owned engineering, procurement, consulting, and construction company with a 100-year legacy of creating a better world for humanity today, and for generations to come.

Job Summary

Our client is seeking a Sr. Information Security Analyst will support the Cyber Defense and Operations (CDO) programs including Security Operations Center (SOC), Incident Response (IR), threat monitoring, threat hunting, EDR management, and assist with cybersecurity assessment activities.

Job Description

  • In this role, the candidate will be responsible for monitoring, analyzing, and maintaining the security and integrity of networks and applications by ensuring system controls are properly deployed while adhering to security standards and industry best practices.
  • The Information Security Analyst will have knowledge and experience with SIEM, Incident Response, event analysis, threat intelligence, EDR, and security operations.
  • Responsible for the day-to-day operation and response to alerts, alert triage, and escalation from SIEM, IDS / IPS, EDR, email & web security, application, and network security devices.
  • Proactively search for signs of malicious activities and potential security incidents.
  • Investigate and resolve security events and incidents.
  • Conduct forensic analysis of security breaches and incidents.
  • Investigate and analyze the root cause of incidents and breaches.
  • Analyze various data sources, such as SIEM logs, network traffic, and endpoint data to identify anomalies and indicators of compromise.
  • Continuously review, test, and improve the Incident Response Plan (IRP).
  • Document and maintain procedures related to Security Operations Center (SOC) and Incident Response & Operations.
  • Monitor, triage, and respond to alerts from information security tools and escalate issues to senior management as needed.
  • Oversight and governance over the coverage and quality of the log sources being consumed by the SIEM (such as workstations, servers, cloud platforms, EDR, network devices, firewall, secure mail gateways, and applications).
  • Maintain up-to-date knowledge of emerging threats and vulnerabilities.
  • Generate technical and executive metrics for visibility and continuous improvement for the Security Operations Center (SOC) and Incident Response & Operations Programs.
  • Coordinate and participate in risk assessment efforts and assist with remediation of findings.
  • Identify security risks and exposures; determine the root causes of security incidents and recommend the plan of action to improve the security posture.
  • Monitor trending TTP's to prepare for future breach attempts.
  • Analyze and remediate EDR related incidents and gaps.
  • Support and manage security tools by continuously tuning and optimizing capabilities.
  • Collaborate with other teams to learn from every incident and harden preventions to "never experience the same problem twice".
  • Perform other duties as assigned.

Skills Required

  • 4+ years of Information Security experience.
  • 3+ year experience with responding to cybersecurity events and incidents.
  • Knowledge of security technologies and tools (e.g., SIEM, IDS / IPS, EDR).
  • Ability to communicate and work effectively with others, harness different skills and experience, and build a strong sense of team spirit even if escalating critical incidents to IT stakeholders with conflicting schedules.
  • Action and results-oriented with the ability to overcome obstacles and able to work well under deadlines in a changing environment.
  • Knowledge of security technologies and tools (e.g., SIEM, IDS / IPS, EDR).
  • Strong speaking and writing skills with ability to effectively communicate to both engineers and senior leadership.
  • Strong understanding of current threats and trends present in the cybersecurity and OT field.
  • Highly motivated individual with the ability to self-start, prioritize, multi-task, and has a "can-do" attitude.
  • Knowledge of security and privacy frameworks such as Cyber Kill Chain, MITRE, NIST, ITIL, SANS, NERC CIP, CIS, CMMC, OWASP, etc.
  • One or more certifications : Security+, GCIA, GCIH, CEH, CISSP

Education / Training / Certifications

Bachelor’s degree in information security or equivalent work experience

Additional Requirements

  • Overland Park KS preferred; open to any Company office
  • 30+ days ago
Related jobs
Promoted
Seaboard Corporation
Mission, Kansas

This position will work collaboratively with Information Security Teams in each division to collect and manage data from multiple resources and systems to allow for centralized reporting of the Information Security program effectiveness through risk analysis. The Information Security GRC Analyst wil...

Promoted
Black & Veatch
Overland Park, Kansas

Company: Black & Veatch Family of Companies. This contact information is for disability accommodation requests only; you may not use this contact information to inquire about the status of applications. Our comprehensive benefits portfolio is a key component of this commitment and offers an array of...

G.A.S. Global
Overland Park, Kansas

Must have at least 8 years of experience, be proficient in Autodesk Civil 3D, Bentley MicroStation, AutoCAD, Bluebeam, and ideally PVCase, and possess strong leadership and supervisory skills in utility-scale solar project design. Our client is an employee-owned engineering, procurement, consulting,...

Dairy Farmers of America
Kansas City, Kansas

Bachelor's degree in the field of Information Technology, Information Systems, Computer Science, Business, or related equivalent experience. SAP Business Analyst will participate in a cross-functional team environment as part of the DFA Shared Applications Team. The requirements herein are intended ...

G.A.S. Global
Overland Park, Kansas

Our client is an employee-owned engineering, procurement, consulting, and construction company with a 100-year legacy of creating a better world for humanity today, and for generations to come. The candidate should have at least 11 years of related experience, be skilled in Autodesk Civil 3D, Bentle...

Aaron's Family of Companies
Kansas City, Kansas

Plan Life Insurance Medical, Dental, & Vision Insurance Paid Time Off Discounts and stock purchasing plan Direct Deposit Sundays Off. Our Delivery Drivers represent the face of Aaron’s – after all, they’re on the front lines interacting with our customers. Covering a wide variety of responsibilities...

G.A.S. Global
Overland Park, Kansas

Intermediate knowledge of engineering of high voltage substation engineering design principles and applicable design guides and standards related to assigned engineering discipline. Our client is an employee-owned engineering, procurement, consulting, and construction company with a 100-year legacy ...

State of Kansas
Shawnee, Kansas

This position is assigned to the Information Technology Division under the Administrative Branch of the KBI. Monitor systems relating to the emergency operations of the KBI and serve as the KBI communications center in the event of such emergencies;. Consistent demonstration of ownership of tasks or...

CGS
Kansas City, Kansas

Providing configuration management (CM) recommendations for information system security software, hardware, and firmware and coordinating changes and modifications with the ISSM, Security Control Assessor (SCA), and Authorizing Official (AO). A minimum of five (5) years experience as an Information ...

Mediabistro
Overland Park, Kansas

May be responsible for support of project finalization including for example consolidation of records for as-built drawings or information to take off as-built quantities. Company: Black & Veatch Family of Companies. This contact information is for disability accommodation requests only; you may not...