Information Security Analyst

Considine Search
CA, United States
$150K-$170K a year
Full-time

Summary

Reporting to the Information Security Director, the Information Security Analyst works within a diverse and exciting team of 6 additional skilled cybersecurity professionals.

Collectively, this team is responsible for the ongoing operation of the Firm’s information security program, ensuring the robust protection of sensitive data and systems.

The Information Security Analyst is a wide-ranging, hands-on role encompassing the design, implementation, and maintenance of advanced cybersecurity technologies, performing in-depth security reviews for new projects and technologies, and providing a frontline response for security incidents.

The ability to communicate effectively with all levels of the business regarding security issues while ensuring that the Firm’s information assets are adequately protected is essential.

Understanding security in a holistic and highly technical manner is essential for this role. We’re looking for individuals who think strategically about and fix specific security risks in the environment.

We want to bring you onboard if you have experience in protecting cloud environments (in particular, Microsoft Azure), SIEM, XDR, threat intelligence, automation, network security, application security, forensics / IR, and security architecture in general! You have the expertise we need! We have an excellent environment in which to take your career forward!

Responsibilities

Act as the primary resource / lead or backup resource for at least 2 of the Firm’s security platforms (Palo Alto SaaS / SASE / Strata, FireEye, Microsoft Defender for Endpoint Identity Etc, Azure Sentinel, CyberArk, Splunk, Varonis, Vectra, Forescout, Illumio, and others) including design, implementation, and maintenance of those platforms.

Continually evaluate new features for implementation in the environment.

  • Develop functional knowledge of the comprehensive security architecture in order to support those technologies when needed, as well as integrate these technologies creatively and effectively.
  • Perform front line security incident response as a member of a 5 person on call rotation (working in conjunction with Managed Security Services Providers).

Using the Firm’s established processes and procedures, provide timely investigation and resolution to all suspicious email reports, malware instances, and other security events.

Develop automation scripts to assist in the team’s incident response effort.

  • Using established processes, conduct detailed, written security reviews for vendors, projects, and technologies. The security review process includes conducting initial intake interviews with stakeholders, researching and performing due diligence, using third party risk management tools, conducting risk assessments, and presenting final recommendations for moving forward in a secure manner.
  • Throughout the system development lifecycle (SDLC), assess and review the Firm’s current technology infrastructure to identify key risk areas, ensuring that adequate controls are in place to address those risks.

Take a lead position to research specific security technologies and controls as requested by senior management.

Skills and Qualifications :

  • Four year degree in computer science or related field, or the equivalent work experience preferred.
  • A minimum of 5 - 7 years of experience in an information technology security role, or equivalent work experience in other areas of the broader Information Technology field, working with and configuring Microsoft security technologies.

This includes a strong foundation in managing and securing Microsoft systems to ensure robustness of IT infrastructure. Information Security certifications are considered a plus (CISSP, CISA, CEH, GSEC, OSCP, CRISC, Palo Alto, Cisco, Splunk, and others).

Non-security certifications in Cisco, Microsoft, and Cloud considered.

  • Scripting abilities (e.g. PowerShell) are a plus
  • This role is highly technical and expertise in at least some of the following is required : Next generation firewalls (e.

g. Palo Alto) and endpoint security tools (Defender for Endpoint), ethical hacking, web app penetration testing, email security (Proofpoint), SIEMs (Splunk, Sentinel), threat analysis tools, vulnerability scanners, authentication, encryption, authorization, continuous auditing tools / techniques, network segmentation, access control, privileged account management, or other information security tools.

Deep understanding of networking and operating systems concepts considered very important.

  • This role requires diligent adherence to specified processes and procedures with a professional and consistent end product.
  • Experience managing and leading security projects, including defining requirements, developing project plans, and delivering results
  • Excellent oral and written communication skills.
  • Strong organizational skills to handle multiple priorities.

Compensation

$150,000 to $170,000

Job Type : Full-time, Hybrid

Salary : $150,000 to $170,000

Exempt / Not Exempt : Exempt

30+ days ago
Related jobs
Promoted
VirtualVocations
Orange, California

A company is looking for an Information Assurance Security Analyst. ...

Promoted
Strategic Employment Partners (SEP)
Los Angeles, California

Our manufacturing client has been a leader within a very essential industry for well over 50 years, and they are seeking an IT Security Analyst to join their stable company. The primary responsibility of this role is to implement, configure, and manage their security applications and ensure endpoint...

Promoted
VirtualVocations
Sunnyvale, California

A company is looking for an Information Security Operations Analyst II. ...

Promoted
Sumitomo Mitsui Financial Group, Inc.
Los Angeles, California

Information Security Analysts, under supervision, will support the day-to-day administration and operations of the Bank's Information Security program by performing a broad spectrum of activities. Information Security Analysts must be able to quickly and accurately interpret actionable signals, inte...

Promoted
VirtualVocations
Fullerton, California

Key Responsibilities:Develop and implement a comprehensive Cyber Threat Intelligence ProgramBuild and maintain a Threat Intelligence Platform (TIP) or MISPCollaborate with incident response teams to analyze and respond to security incidentsRequired Qualifications:Bachelor's degree in Computer Scienc...

AMN Healthcare Inc.
San Diego, California

As a key member of our Information Security team, the Information Security Analyst II will take a front and center role in designing and implementing security protocols across diverse environments, including Azure, AWS, IaaS, PaaS, SaaS, and on-premises infrastructure. At least one (two preferred) c...

RAND
Santa Monica, California
Remote

RAND AI &Information Security Analysts advance RAND’s research in the intersection of AI, information security, and biosecurity by performing qualitative and quantitative research driving recommendations for the White House, multiple regulatory agencies, intelligence community, and other arms of the...

TEKsystems
Lompoc, California

TEKsystems is looking for a Secret Cleared Information Security Analyst to sit at Vandenberg Space Force Base. This role requires an ACTIVE Secret Clearance and Security+ certification, and experience working with ACAS/Nessus Vulnerability Scanners. The company is an equal opportunity employer and w...

Acara Solutions
Anaheim, California

Description Acara Solutions is seeking a Senior Information Security Analyst (DLP) to protect our clients data against unauthorized access and ensure compliance with GLBA and other regulations. Collaborate with information security teams and business units. Bachelor's degree in computer science, inf...

Metro
Los Angeles, California

This role focuses on supporting cybersecurity initiatives and processes to ensure the protection of Metro's information assets. Experience analyzing data, conducting research, and utilizing multiple software systems to support administrative functions within the information security domain. Experien...