> Markdown version of [/jobs/ext/1403631-sr-security-analyst-i-t](https://www.wearedevelopers.com/jobs/ext/1403631-sr-security-analyst-i-t). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Sr. Security Analyst - I.T. - **Company:** Baker Group - **Location:** Ankeny, IA, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Amazon Web Services, Microsoft Azure, Cloud Computing Security, Complex Networks, CompTIA Security+, Cyber Security, Information Systems, Identity and Access Management, IT Management, Cloud Services, Security Information and Event Management, Firewalls (Computer Science), Information Technology, CIS Benchmarks - **Published:** July 23, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=f99b0fbc6673193c ## About the Role * Bachelor's degree in computer science, cybersecurity, information systems, or related field, or equivalent relevant experience required * Minimum of five years' experience in information security, with demonstrated progression of responsibility * Hands-on experience with incident response across the full lifecycle (detection, containment, eradication, recovery) * Deep working knowledge across multiple of the following: SIEM, EDR, firewalls, identity and access management and cloud security (Azure and/or AWS) * Working knowledge of NIST CSF or CIS Controls, or SOC2, including practical experience applying controls in a production environment CERTIFICATES, LICENSES, REGISTRATIONS * CompTIA Security+ ,preferred * CISSP, preferred * CISM, CISA, GCIH, GCIA or GSEC, preferred MENTAL AND PHYSICAL COMPETENCIES REQUIRED TO PERFORM ESSENTAL FUNCTIONS * Demonstrated ability to identify, prioritize, and mitigate complex network and application vulnerabilities, along with the capacity to clearly explain risk and prevention strategies to technical and non-technical audiences * Skilled in risk-based decision making, weighing security needs against operational and business impact * Excellent verbal and written communication skills, with proven ability to influence without authority * Ability to lead under pressure during active security incidents * Strong problem-solving skills with a methodical, evidence-based approach to investigation * Demonstrated coaching and mentorship ability * Passion for technology and strong desire to work with new technologies ENVIRONMENTAL ADAPTABILITY * Prolonged periods of sitting at a desk and working on a computer * Must be able to lift 10 pounds occasionally * May have occasional visits to a job site which would require periods of standing, walking and/or climbing stairs ## Description The Senior Security Analyst - IT serves as a technical leader within Baker Group's cybersecurity function, responsible for advanced threat detection, complex incident response, security architecture input, and the maturation of the organization's security program. This role leads investigations into significant security events, drives improvements to controls and processes, mentors junior analysts and acts as a trusted advisor to IT leadership and business stakeholders on risk-based security decisions. This is an individual contributor role with technical mentorship responsibilities. Performs related work as required., The following duties are typical for this job. These are not to be construed as exclusive or all inclusive. Other duties may be required and assigned. * Contribute to complex incident response investigations, including containment, eradication, recovery and post-incident reporting. * Design, tune, and continuously improve detection content across SIEM, EDR and other security platforms. * Conduct threat hunting based on threat intelligence, attacker tradecraft and environmental telemetry. * Provide security architecture input on new systems, applications, cloud service and infrastructure changes. * Provide strategic direction for the vulnerability management program - risk-based prioritization and exception review. * Serve as a senior point of contact for internal and external audit engagements; review evidence, address complex control inquiries and support assessors. * Contribute to the development and maintenance of security policies, standards and procedures aligned to NIST CSF, CIS Controls, and applicable regulatory frameworks. * Oversee third-party/vendor risk assessment processes and advise on remediation of identified vendor risks. * Mentor and develop Security Analyst I and II team members through coaching, technical reviews and structured knowledge transfer. * Support tabletop exercises, incident response drills and disaster recovery testing. * Evaluate and recommend new security technologies and process improvements; contribute to implementation of significant changes. * Translate technical security risks into business language for technical and non-technical audiences. * Stay current on emerging threats, vulnerabilities, and security best practices through ongoing training, conferences and professional development opportunities, sharing knowledge across the team. ## Related Videos - [Your Manager Doesn’t Come with a User Manual (But You Can Totally Write One)](https://www.wearedevelopers.com/videos/1495-your-manager-doesn-t-come-with-a-user-manual-but-you-can-totally-write-one) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Leverage Cloud Computing Benefits with Serverless Multi-Cloud ML ](https://www.wearedevelopers.com/videos/78-leverage-cloud-computing-benefits-with-serverless-multi-cloud-ml) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Engineering/Manager Pendulum: Generating compound interest on your career](https://www.wearedevelopers.com/videos/100348-engineering-manager-pendulum-generating-compound-interest-on-your-career) ## Related Articles - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Top-Paying Tech Jobs (with Salaries)](https://www.wearedevelopers.com/magazine/372-top-paying-tech-jobs-with-salaries) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed)