Cybersecurity Analyst
Role details
Job location
Tech stack
Job description
We are seeking a Cybersecurity Analyst who is available to work out of our Chicago, IL, Cleveland, OH, or Charleston, SC office. The Cybersecurity Analyst will have the exciting opportunity to play a key role in expanding Brookfield Property's information security program. You will be responsible for working with the security engineering team to remediate threats, identify opportunities to improve security processes, hunt for emerging threats, and maintain our industry leading portfolio of security tools. This is a hands-on role; familiarity with Enterprise Security Architectures, Windows systems, Networking, and OT/BMS is critical.
Overall, we seek qualities that display our company's core values which are Humility, Attitude, Do the Right Thing, Together and Own it., * Review security incidents to remediate threats and help lead the escalation of security events in conjunction with the incident response plan
- Monitor and support security tools to ensure effective detection and response, including assisting with tuning to reduce false positives
- Work with our MSSP and other vendors to optimize the escalation processes and reduce false positives
- Collaborate with business and technology teams to promote security awareness and support security best practices
- Follow established playbooks and operational procedures during incident response, and contribute feedback for continuous improvement
- Participate in generating operational improvements through security orchestration and automation tools
Requirements
- Bachelor's degree in Computer Science, Information Security/Cybersecurity, or a related discipline (machine learning, statistics, mathematics, etc.)
- At least 1 year of experience in Security or 3 years in IT including Incident Detection, Incident Response, System Administration, or Service Desk
- Understanding of fundamental security architecture and networking concepts
- Ability to assess and prioritize multiple alerts or incidents based on risk and business impact
- Experience participating in major incident response efforts within a fast-paced environment
- Able to communicate complex and technical issues to diverse audiences, orally and in writing, in an easily understood and authoritative manner
- Knowledge of forensics techniques to determine root cause for security incidents
- Documentation and process improvement skills
- Experience with Windows, networking, or audit logs, SIEM technologies are a plus
- Proven track record of analyzing, diagnosing and solving complex issues
- Experience with Cloud technologies including AWS, Azure, and GCP
- Security+, CySA+, or equivalent foundational certifications, * Previous experience in an environment with extensive OT/IoT presence
- Communication skills that translate technical concepts to non-technical stakeholders
- Ability to find a balance between Security and Business objectives, by creating a culture where security is major consideration
- Scripting in phyton, bash, or other common languages
- Process improvement through automating tasks or scripting