Security Systems Analyst (GRC & Linux) in Columbia
Energy Jobline
Columbia, United States of America
yesterday
Role details
Contract type
Temporary contract Employment type
Full-time (> 32 hours) Working hours
Regular working hours Languages
EnglishJob location
Columbia, United States of America
Tech stack
Computer Security
Linux
Intrusion Detection Systems
Virtual Private Networks (VPN)
Python
Linux Servers
Open Source Technology
Ansible
Virtual Local Area Networks
Software Vulnerability Management
Network Routers
Snort (Software)
Scripting (Bash/Python/Go/Ruby)
Nessus
Server Operating Systems & Platforms
Job description
- Responsible for applying recommended OS patches and kernel upgrades to maintain up-to-date server operating systems.
- Able to automate recurring tasks using scripting , preferably Python or Ansible.
- Manage updates for security tools on Linux systems, configure and deploy both open-source and commercial security tools, and troubleshoot Linux servers and applications at an advanced level.
- Develop strategies to enhance operational workflows.
- Demonstrate foundational knowledge of routers, switches, network VLANs, and VPN configurations. Governance, Risk, and Compliance (GRC):
- Serve as the primary technical contact for internal and external audits, providing evidence of system controls and configurations.
- Conduct technical risk assessments on the Linux environment, identify vulnerabilities, and document remediation plans.
- Translate complex compliance requirements into technical standards for the engineering team.
- Perform vulnerability management by running scans (Nessus, OpenVAS) and prioritizing remediation based on technical severity and compliance impact.
- Assess risk and control design/operation, including process documentation, mapping controls to risks, and identifying gaps.
- Support compliance and audit activities by collecting evidence, tracking issues, managing audit requests, and facilitating walkthroughs and testing.
- Maintain the control library and policies, ensuring alignment with frameworks such as ISO 27001, NIST, SOX, and SOC 2, as applicable.
- Prepare reports and dashboards for leadership, manage metrics, and support governance forums.
- Coordinate with control owners, IT/security, business units, and internal audit teams.
- Automate tasks, notifications, attestations, and periodic assessments within the GRC-Archer tool.
- Manage customer expectations and participate in all required review and regulatory discussions related to assigned projects.
- Ability to lift physical appliances and perform rack and stack operations for servers in the datacenter.
Requirements
- Must be available to work onsite in Columbia, SC, Monday through Friday from 9 AM to 5 PM, with a minimum onsite presence of three days per week.
- Possess hands-on administrative experience with IT security technologies, including Snort Intrusion Detection System (IDS) sensors.
About the company
Energy Jobline is the largest and fastest growing global Energy Job Board and Energy Hub. We have an audience reach of over 7 million energy professionals, 400,000+ monthly advertised global energy and engineering jobs, and work with the leading energy companies worldwide.
We focus on the Oil & Gas, Renewables, Engineering, Power, and Nuclear markets as well as emerging technologies in EV, Battery, and Fusion. We are committed to ensuring that we offer the most exciting career opportunities from around the world for our jobseekers.