IT Security Analyst
Role details
Job location
Tech stack
Job description
The Security Analyst is an integral part of the Gen II Technology team. The Security Analyst is responsible for the administration and maintenance of IT security systems. Job responsibilities will also include auditing and reporting of systems and applications.
What you'll be doing
- Actively monitor and support internal and external infrastructure systems (Incident & Problem Management), liaising with colleagues as needed
- Manage SIEM solution, creation of dashboards and alerts. Review security events and escalate to ISO and Infrastructure team as needed.
- Manage Security Awareness solution and phishing exercises, train users on best practices and provide remediation training for users who fail phishing tests.
- Review Vulnerability Management Tool findings and work with IT support to remediate issues
- Support the Information Security Officer in developing an IT security assurance program
- Develop general and detailed documentation describing security controls, system specifications, and operating instructions
- Help staff with use of the security system software, providing training where necessary
Requirements
Do you have experience in SIEM?, A strong understanding of security & networking technologies
-
Previous experience managing a SIEM solution
-
Incident Management experience
-
Strong analytical and problem-solving skills
-
Excellent communication and interpersonal skills
-
Ability to cope and work under pressure
-
A results-oriented individual who thrives working in a fast-paced environment
-
Self-motivated with the ability to prioritize, meet deadlines, and manage changing priorities
-
Familiar with key security models and regulations such as ISO 27001, NIST and GDPR.
Technical Profile
Required Knowledge and Experience
-
2+ years' experience implementing and managing Microsoft stack
-
Automation tools and applications
-
Experience managing a SIEM solution
-
Experience providing end users training on security best practices
-
Able to demonstrate an understanding of ISO27001 and information security best practices (Identity and Access management, Incident Management, etc.)
-
Experience preparing project documentation and managing projects through to completion
Desirable Knowledge and Experience
-
CompTIA+ Security or equivalent certification
-
Endpoint management solutions
-
Virus protection & other prevention solutions
-
Mobile Device Management
-
Interest in obtaining CISSP or equivalent certification
Other
- Participate in out of hours support coverage