Information Security Specialist
Role details
Job location
Tech stack
Job description
The IT Security Specialist is responsible for designing, implementing, and maintaining the organization's cybersecurity infrastructure across information technology, operational technology, and cloud environments. This position plays a vital role in safeguarding corporate systems, networks, and information by monitoring emerging threats and vulnerabilities. The individual in this role will work collaboratively with all departments across Aebi Schmidt Group to assess risk, coordinate vulnerability remediation, and develop defensible architectures to protect our assets. The IT Security Specialist will apply technical expertise to implement and manage security tools, automate key processes, and support incident response activities to minimize business impact and maintain continuity of operations. This position requires strong analytical and problem-solving skills, a comprehensive understanding of cybersecurity principles and technologies, and the ability to communicate effectively with both technical and non-technical stakeholders. Key responsibilities *Design, implement, and manage cybersecurity solutions across endpoints, networks, cloud, and identity management systems *Conduct vulnerability assessments and coordinate remediation efforts across IT and DevOps teams *Monitor, triage, and manage alerts from cybersecurity related tools and services *Leverage cybersecurity related tools and benchmarks to harden and build defensible IT systems and resources *Participate in incident response efforts including triage, containment, eradication, and post-incident efforts *Perform risk assessments on new technologies, vendors, and IT system changes *Automate repetitive tasks using Python, Bash, PowerShell, Terraform, or equivalent scripting languages What you need to be successful
Requirements
*Bachelor's degree in computer science, information systems, cybersecurity, or related field *Relevant cybersecurity certifications such as CompTIA's Security+ *5+ years of hands-on experience in cybersecurity or infrastructure security role *3 - 5 years of experience in cloud technologies such as AWS and Azure *Strong understanding of networking and security protocols, firewalls, VPN's, SIEM, EDR/XDR, and vulnerability management *Knowledge of IAM concepts; idP, MFA, SSO, SAML/OAuth2, and the access policies that control them *Working knowledge of scripting or automation languages such as Python, PowerShell, or equivalent *Industry leading certifications such as CISSP, CEH, GICSP, or GSEC *Exposure to compliance standards such as ISO 27001, NIST, and PCI DSS *Experience with CI/CD pipelines or DevSecOps methodologies *Familiarity with the MITRE ATT&CK framework and threat hunting *Implement and manage OT cybersecurity controls across plant floor networks, control systems, and IT infrastructure *Data management and discovery tools such as Purview or other data loss prevention technologies
Benefits & conditions
Why The Shyft Group? Our people are our greatest asset, and your success is our success! That's why we provide comprehensive benefits that support your health, financial security, and work-life balance-so you can thrive both personally and professionally. Health & Wellness: Medical, Dental, Vision, HSA/FSA, Wellness Plan Financial Security: 401(k) with match, Disability, Life Insurance Work/Life & Growth: Educational Reimbursement, EAP, Dependent Care At The Shyft Group, we don't just offer benefits-we invest in your well-being. Join us and experience the difference!