Security Specialist- Incident Response
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+2 more
Job description
The Junior Security Specialist will support the Information Security Section in maintaining and improving the organization’s security posture. This role assists with basic incident response coordination, vulnerability scanning, and system monitoring and system analyst duties. The individual will work closely with senior team members to learn and apply security best practices, contribute to ongoing security projects, and help ensure the confidentiality, integrity, and availability of organizational systems.
This is a growth-oriented position ideal for candidates with foundational cybersecurity knowledge and a desire to advance their skills in incident response, vulnerability and exposure management, threat detection, and security operations.
PRIMARY DUTIES:
-
Support incident response efforts by gathering data and assisting with ticket triage.
-
Assist with system event triage, non-conformance tracking, and other response actions as needed
-
Assist in performing internal and external vulnerability scans and documenting findings.
-
Support the remediation of identified vulnerabilities by coordinating with system owners and IT staff.
-
Monitor security tools and alerts, escalating issues to senior team members as needed.
-
Participate in security awareness activities, including phishing simulations and training coordination.
-
Help maintain documentation for security policies, procedures, and standards.
-
Collaborate with IT and compliance teams to support risk management and regulatory requirements.
-
Stay informed on basic cybersecurity trends and threats through training and research.
ADDITIONAL DUTIES:
-
Assist with account access reviews and basic IAM tasks.
-
Support endpoint protection efforts, including monitoring and updating security software.
-
Participate in tabletop exercises and team training sessions.
-
Help document un-remediated vulnerabilities in the risk registry under guidance.
-
Perform other information security and cybersecurity duties as directed
Requirements
-
1-3 years of experience in IT or cybersecurity-related roles.
-
Associate’s or Bachelor’s degree in cybersecurity, information technology, or a related field.
-
Entry-level certification preferred (e.g., CompTIA Security+, GIAC GSEC, Microsoft SC-900).
-
Basic understanding of network devices, operating systems, and security principles.
-
Strong desire to learn and grow in the cybersecurity field.
MINIMUM SKILL QUALIFICATIONS:
-
Familiarity with pentesting tools, methodologies, & Incident Response lifecycle.
-
Familiarity with vulnerability scanning tools and basic remediation processes.
-
Understanding of network and endpoint security fundamentals.
-
Ability to follow procedures and document work clearly.
-
Strong communication and teamwork skills.
-
Analytical thinking and attention to detail.
PREFERRED QUALIFICATIONS:
-
Exposure to tools such as SIEM, EDR, IAM, or MDR platforms.
-
Familiarity with NIST, CIS, or ISO security frameworks.
-
Experience with cloud environments and mobile device management.
-
Hands-on experience with basic troubleshooting and system monitoring.
About the company
At VA Farm Bureau, we provide an exceptional benefits package, including ongoing job development and support in all roles, paid training and continuing education reimbursement, medical and dental insurance available on your first day, generous employee 401K contribution, excellent Paid Time off (PTO) plan and more!
Virginia Farm Bureau Companies provide equal employment opportunity in all aspects of employment without regard to race, color, national origin, religion, gender, pregnancy, age, disability, orientation or veteran status.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on vafb.hrmdirect.comGood distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Understanding and Mitigating Common Web Vulnerabilities
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
Where to Find Entry-Level Software Engineering Jobs
System change: restart as developer?