IT Security Specialist
Role details
Job location
Tech stack
Job description
Under general direction, the IT Security Specialist will evaluate the effectiveness of internal data controls, business and technical processes, and technology platforms to ensure system and data integrity. This role will support security operations through hands-on analysis, troubleshooting, and review of IT systems and data environments., * Perform security and integrity reviews of IT systems and data
- Analyze and respond to security events, alerts, and incidents
- Troubleshoot technical and security-related issues
- Document processes, findings, and remediation steps
- Collaborate with internal stakeholders and communicate findings effectively
- Support ongoing improvements to security posture and processes
Requirements
-
Minimum 2+ years of hands-on experience in at least one of the following:
-
SOC Analysis
-
Threat Hunting
-
Detection Engineering
-
Network Security Engineering
Experience working in client-facing environments, including:
- Email, chat, and video communication
- Screen sharing and technical discussions
Minimum 2+ years of active technical troubleshooting, including:
- Investigating system or security issues
- Creating documentation (runbooks, reports, procedures)
Strong interest in information security and evolving threat landscape
Ability to demonstrate knowledge in at least 3 of the following domains:
- Governance, Risk, and Compliance (GRC)
- Cloud Security / Hosted Applications
- Containerization
- Application Security
- Network Security / Zero Trust Architecture
- Endpoint Security / OS Hardening
- Security Tooling & Automation (PowerShell, Python, Bash)
- Malware Analysis / Digital Forensics
- Incident Response & Remediation
- Penetration Testing
- Cyber Threat Intelligence (CTI)
- Vulnerability Management
- Data Protection
Nice-to-Have Qualifications
-
Certifications:
-
ISACA CRISC
-
ISC2 SSCP
Experience with:
- SOAR platforms and automation tools
- AI tools/models for security automation, reporting, or research
Familiarity with frameworks:
- NIST (CSF 2.0, 800-53, 800-207)
- MITRE ATT&CK
- OWASP
Exposure to:
- Web application penetration testing
- Broader information security community involvement