Senior Cybersecurity Analyst

Law Llc
Newtown, PA, United States
about 2 months ago
Apply on www.techcareers.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
10 years minimum
Compensation
$120,000.0 - $132,000.0
Working hours
Shift work

Tech stack

Microsoft Windows Access Control List Artificial Intelligence Software System Penetration Testing User Authentication Microsoft Azure Network Operating System (NOS) Cyber Security Information Systems Computer Networks Data Governance Identity and Access Management
+16 more
Information Technology Audit Networking Hardware Intrusion Detection and Prevention Virtual Private Networks (VPN) Network Protocols Network Management System Remote Access Technology Penetration Tools Software Configuration Management Software Engineering TCP/IP Firewalls (Computer Science) Information Technology Tenable Nessus Network Server Vulnerability Analysis

Job description

The Senior Cybersecurity Analyst position is integral for protecting, monitoring and improving the security posture of LSAC’s network and intellectual property such as test items, candidate data and systems data.

These duties include responsibility to partner with other departments throughout LSAC to raise Security awareness and to educate all LSAC staff in Security best practices, fully utilize tools required to monitor, to analyze, and to react to Security threats and related incidents, and maintain compliance with outside organizations (such as SOC2 and Financial and IT Audits, etc.). Additional responsibilities are to monitor and report on the intrusion prevention systems, alerts, identifying and reacting to suspicious network traffic, firewalls, websites re: penetration testing, project deliverables to follow security guidelines, etc. Endorse and implement all the best practices and procedures that are directly related to the overall Security Systems Program.

Responsibilities:

Essential Job Functions

Reasonable accommodation may be made to enable individuals with disabilities to perform the essential functions of this position. The individual employed in this position will be required to:

  • Improve, manage, and provide direction re: LSAC Security Policies, Procedures, and Best Practices and maintain and enhance the formal Security Systems Program.
  • Assist in the Development of effective Cybersecurity policies to address existing and future threats such as AI computer policies, data governance and compliance.
  • Perform IT Security inspections, tests, system level audits and reviews of existing IT software and hardware to support and conduct the annual reviews to ensure compliance with SOC2, IT and Financial Audits, PCI/DSS, etc.

  • Evaluate and recommend new Security products and services (hardware and software).
  • Consult, monitor, and report on Security systems, e.g. such as intrusion prevention and detection systems, VPNs, and firewalls.
  • Perform network and system vulnerability scans and penetration testing on workstations, servers, network devices, and other computer systems and work with appropriate groups to close Security gaps.
  • Develop and support the development of automated tools that analyze the Security violations found in access control logs to discover patterns and evidence of problems.
  • Provide consultation and assistance to Infrastructure, Executive Staff, and other staff from other departments relating to information and systems Security.
  • Maintain a high level of confidentiality in identifying and aiding in resolving Security issues.
  • Monitor the networks and websites for the proper Security procedures, software configuration, and signs of compromise or attempted compromise.
  • Actively promote and enhance Security Awareness programs to LSAC staff and partnering with the Human Resources Department.
  • Participate in all Information Security projects and attend meetings to provide input and recommendations on issues that have an impact on LSAC’s Security infrastructure.
  • Evaluate and recommend solutions to current or potential Security threats as they relate to the data and computing environment.
  • Participate as a member of the Security Incident Response Team and Test Security Task Force.
  • Respond to Security incidents providing critical documentation and consultation by preserving all records indicating changes made to access control lists to facilitate investigations, as well as involvement to the response, root cause analysis, and implementation of a solution.
  • Keep abreast of the trends and issues in the industry related to Computer Security., The LSAC standard business hours are Monday-Friday, 8:30 a.m. - 4:45 p.m. ET. While these are the standard office hours for LSAC, as an exempt employee, the employee will be expected to work the hours necessary to satisfactorily complete their assignments in a responsible and professional manner.

Requirements

Excellent written and verbal communication skills.

Holds a strong sense of accountability for both individual and team objectives.

Embraces a forward-thinking mindset, contributing to a culture of continuous improvement and creativity.

Excellent time management, prioritization, attention to detail and organization skills

Please provide any additional behaviors, attitudes, or skills that a person in this position would need to be successful in this role (i.e., adaptability, software competency level)

Ability to provide technical leadership and consultation and to apply project management skills.

Solid understanding of TCP/IP and application development & security best-practices.

Ability to enhance, comply, and implement the Security Systems Program throughout LSAC with overall responsibility and accountability to meet industry standards and best practices to provide a safe and protective data and systems environment., * Bachelor’s degree in Information Systems and/or Security curriculum is required.

  • A Minimum of 10 years of IT experience and greater than 5 years of experience in IT Security or an equivalent combination of education, training, and experience is required.
  • Professional certifications such as CISSP, GIAS, Microsoft MCSE and/or other Security certifications are a plus.
  • Broad working knowledge of Security Program issues and best practices, including system threat vulnerability assessments, system Security requirements/architectures, and Security risk mitigation plans that will enable the IT systems and data information mission to be protected and successful.
  • Solid experience with establishing and promoting a Security Systems Program and the ability to provide the guidance to raise Security Awareness throughout LSAC.
  • Knowledge and experience with various network protocols, firewalls, penetration tools, remote access, network operating systems, PC operating systems and vulnerabilities and network management tools.
  • Experience with Security tools and best practices, Windows based systems, Tenable Nessus, Microsoft Azure, Windows Defender and other technical platforms and administration.
  • Basic knowledge of authentication systems including token-based authentication and digital certificates.
  • Basic knowledge of encryption and decryption

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.techcareers.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:50 min

Queues in TCP stacks and continuous network connections

Clemens Vasters Clemens Vasters · World Congress 2022

5:02 min

Mapping distributed compute paradigms to modern vehicles

Joachim Werner · LIVE

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

10:35 min

Teaching and coaching security concepts for lasting impact

Tanya Janca · World Congress 2021

1:27 min

Binding executable logic into network servers

Saoussen Chaabnia Saoussen Chaabnia · Europe 2026 Virtual

13:51 min

Integrating automated recordings to fix asynchronous state bugs

Filip Hric · LIVE

Videos

See all

Related articles

See all