Overview
The IT Security Analyst improves the security posture of the Institute through network monitoring, incident response, vulnerability management, security awareness, and compliance-related work. Analysts utilize multiple technologies to detect and respond to security incidents and recommend the appropriate controls to community members to mitigate threats and vulnerabilities. The position collaborates with teams across the Institute to develop and implement security standards and compliance requirements to support the research and educational mission.
Responsibilities
Monitor multiple security technologies using a Security Information and Event Management (SIEM) tool to detect IT security incidents.
Investigate detections to determine if true or false positives, utilizing knowledge of the security tools, networking, software, and systems. Determine the impact of incidents to Institute data and systems.Compile data and reports for operational analysis and respond to incidents with the appropriate communication, following established procedures.Continuously improve processes, suggesting new alerts, creating dashboards, opportunities for automation, etc.Security OperationsDevelop and manage security services such as network-based vulnerability scanning, virus management, and intrusion detection.
Consult with clients on the data classification of their information resources.Assess threats and vulnerabilities regarding information assets and recommend the appropriate information security controls and measures.Strategy and PlanningSupport the planning, execution, and management of multi-faceted security projects.
Actively participate in the Security team's planning activities.Research and review new or updated internal or third-party security applications.Evaluate and recommend tools and solutions that provide security functions.CommunicationsCommunicate with all levels of management across the Institute to resolve technical and procedural information security risks.
May represent the IS&T Security team among various departments, labs, centers, and committees.Collaborate on projects to ensure that security issues are addressed throughout the project life cycle.Provide reports to management concerning residual risk, vulnerabilities, and other security exposures, including misuse of information assets and noncompliance.ComplianceStay abreast of new developments within the legal and regulatory environment impacting the Institute.
Maintain an up-to-date understanding of industry best practices, threats, exploits, and trends.Contribute to the development of security standards and compliance requirements of applications, network infrastructure, servers, and workstations.Document IT security policies, procedures, and standards.Education and OutreachDevelop IT security awareness and compliance training programs in collaboration with team members.
Conduct IT security awareness training sessions for students, faculty, and staff.Coaching and MentoringProvide ongoing knowledge transfer and training with team members upon technology implementation.
Provide technical coaching and mentoring less experienced team members.May guide IT colleagues on the usage and administration of security tools that control and monitor information security.Additional responsibilities as requested and / or required.Required Qualifications & Technical Skills
A bachelor's degree (or equivalent work experience) and a minimum of 5 years of experience in cybersecurity, information systems, or another related field are required.2 years of information security experience required.Working knowledge of security best practices, threats, exploits, and trends across computer platforms.Understanding of networking and system administration concepts and common log types.Demonstrated experience with security tools such as vulnerability scanners, endpoint detection and response, Intrusion Detection Systems (IDS), SIEM, etc.Understanding of common phishing techniques and experience analyzing email headers.Strong analytical skills with the ability to break down raw information and undefined problems into specific, workable components.Desired Qualifications & Technical Skills
Related security certification (e.g., CISSP).Proficiency with scripting languages (e.g., Python, Ruby, PERL).Experience with ticketing systems such as ServiceNow.EEO Employer
Apex Systems is an equal opportunity employer. We do not discriminate or allow discrimination on the basis of race, color, religion, creed, sex (including pregnancy, childbirth, breastfeeding, or related medical conditions), age, sexual orientation, gender identity, national origin, ancestry, citizenship, genetic information, marital status, disability, or any other characteristic protected by law. Apex will consider qualified applicants with criminal histories in a manner consistent with applicable law. If you require an accommodation in using our website for a search or application, please contact our Employee Services Department at the provided contact information.
J-18808-Ljbffr