Overview
The Information Security Analyst plays a crucial role in our organization ensuring the security and integrity of our systems and data. This role is pivotal in identifying analyzing and mitigating potential security threats to protect our organization from cyber attacks and breaches. The Information Security Analyst will work closely with crossfunctional teams to implement security measures and respond to security incidents ultimately safeguarding the organizations infrastructure and information assets.
Key Responsibilities
- Conduct regular security assessments and vulnerability testing to identify potential risks
- Participate in the development and implementation of security policies and procedures
- Monitor network traffic for security breaches and investigate violations when they occur
- Collaborate with IT teams to ensure security best practices are integrated into the system development lifecycle
- Respond to security incidents and provide analysis to ensure swift resolution and prevent future occurrences
- Conduct security awareness training and education for staff members
- Proactively research and recommend security enhancements to management
- Manage and ensure compliance with industry security standards and regulations
- Participate in security audits and risk assessments
- Stay abreast of the latest security technologies and trends and evaluate them for implementation
- Assist in the preparation and maintenance of disaster recovery and business continuity plans
- Collaborate with vendors to ensure the security of thirdparty applications and services
- Contribute to the development of incident response and recovery procedures
- Provide regular reporting on security metrics and incidents to management
- Contribute to the development and maintenance of security documentation and procedures
Required Qualifications
- Bachelors degree in Information Security Computer Science or a related field
- Professional certifications such as CISSP CISM or CompTIA Security
- 3 years of experience in information security roles
- Deep understanding of risk management principles and practices
- Proficiency in conducting network security assessments and penetration testing
- Experience in security compliance and regulatory requirements (e.g. GDPR ISO 27001)
- Strong knowledge of incident response and forensic techniques
- Ability to perform vulnerability assessments and security audits
- Familiarity with security tools and technologies such as SIEM IDS/IPS and DLP
- Excellent analytical and problemsolving skills
- Strong communication and interpersonal abilities
- Ability to work effectively in a remote or distributed team environment
- Knowledge of cloud security principles and best practices is a plus
- Experience with scripting and programming languages (e.g. Python PowerShell) is advantageous
- Ability to obtain and maintain security clearance as required
incident response,risk,scripting languages,vulnerability assessment,vulnerability assessments,security compliance,risk management,security tools,information security,security audits,network security,security,cloud security