66degrees

Information Security Analyst

66degrees

contract

Posted on:

Origin:  • 🇺🇸 United States

Visit company website
AI Apply
Apply

Job Level

JuniorMid-Level

Tech Stack

AWSCloudDNSFirewallsSMTP

About the role

  • Protect the integrity and confidentiality of client data and infrastructure while enabling business functionality in all systems and environments by supporting applicable security solutions.
  • Lead incident response activities and provide timely response to security incidents and alerts generated by security tools or the SOC
  • Assist in improving processes, identify efficiencies, and recommend solution enhancements to improve service level delivery
  • Contribute to “Continuous Improvement and Posture Management” efforts, in respect to client’s information security tooling and systems.
  • Support the client Information Security Governance and Compliance team as needed during risk assessments, internal and external Information Security Audits, and Vendor reviews
  • Champion vulnerability remediation efforts and act as a liaison to IT and application owners for patch management
  • Gather and report on key organizational information security metrics
  • Provide Level II Support for incident and request tickets escalated from other technical teams
  • Communicate with stakeholders to assist remediation efforts.
  • Lead / Assist in root-cause analysis for security incidents events leading to resolution.
  • Contribute to weekly and monthly posture and response operations reporting.
  • Be responsible for analysis and recommendation of upgrades, changes, implementation specific to the support and scaling of client’s security operations.

Requirements

  • Bachelor’s degree in discipline appropriate to assignment or an equivalent combination of education and experience
  • Related certifications (e.g., GSEC, CISSP, AWS) preferred
  • At least 2 years’ experience in an Information Security role or 3 years’ experience in an IT engineering capacity with progressively difficult responsibilities
  • 2+ years of experience with cloud infrastructure and O365 services and technology
  • Experience working with and managing Active Directory / MS Entra ID
  • Experience with SOAR (Security Orchestration, Automation, and response)
  • Experience with vulnerability assessment and patch management practices
  • Experience with KQL and SPL or other Query Languages
  • Knowledge of industry security standards, guidelines, and regulatory/compliance requirements related to information security such as ISO 27001, NIST 800-53, SOC2, PCI, SOX, etc.
  • Knowledge of Windows Event and network device logging
  • Knowledge of networking protocols and concepts including TCP, DNS, DHCP, Firewalls, VPN, and Web proxies
  • Understanding of email transmission, routing, and authentication concepts including, SMTP, SPF, DKIM and DMARC
  • Demonstrated incident response experience including dealing with malware and endpoint anti- virus and detection and response solutions
  • Excellent Prioritization, decision making, critical thinking, communication skills
  • Ability to coordinate and perform multiple tasks/projects simultaneously, balancing priorities and deliverables