IT Security Analyst Level 1

Spellman High Voltage
New York, NY, United States
about 1 month ago
Apply on www.indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience required
1 year minimum
Compensation
$64,000.0 - $80,000.0
Working hours
Regular working hours
Job source

Tech stack

Microsoft Windows Active Directory Amazon Web Services Microsoft Azure Cloud Computing Security CompTIA Security+ Cyber Security Linux Intrusion Detection and Prevention Networking Basics Cloud Services Phishing
+8 more
Zero Trust Network Access Security Information and Event Management Software Vulnerability Management Cloud Platform System Mitre Att&ck Firewalls (Computer Science) Information Technology Vulnerability Analysis

Job description

The Information Security Analyst I is responsible for supporting the organization’s cybersecurity posture through monitoring, detection, response, and continuous improvement activities. This role contributes to protecting enterprise systems, data, and users by assisting with threat detection, vulnerability management, and control validation across hybrid environments (on-premises and cloud).

The analyst operates within the Security Operations function and works closely with IT and security teams to operationalize security controls, support incident response, and ensure alignment with industry frameworks and regulatory requirements.

What You Will Do

  • Monitor and analyze security events from SIEM, endpoint, network, email, and cloud security platforms to identify potential threats and anomalous activity
  • Triage security alerts and escalate or respond in accordance with defined incident response procedures
  • Support incident response activities including investigation, containment, eradication, and recovery, with appropriate documentation and evidence handling
  • Perform vulnerability scanning and assist with risk-based prioritization and remediation tracking
  • Maintain and improve security documentation, including runbooks, standard operating procedures (SOPs), and knowledge base articles
  • Assist in the implementation, configuration, and validation of security controls across endpoints, identity systems, networks, and cloud services
  • Collaborate with infrastructure, application, and business teams to remediate findings and strengthen security posture
  • Contribute to continuous improvement of detection capabilities, including tuning alerts and reducing false positives
  • Support audit and compliance activities by maintaining evidence, control documentation, and participating in assessments
  • Research emerging threats, vulnerabilities, and attack techniques to enhance detection and prevention strategies.
  • Generate clear and concise reports on incidents, vulnerabilities, and security metrics for technical and non-technical stakeholders.
  • Provide occasional on-site or remote support for security implementations and assessments across multiple locations.

Requirements

  • Bachelor’s degree in Cybersecurity, Information Technology, or a related field
  • Minimum 1 year of experience in a security-related role
  • CompTIA Security+, CompTIA CySA+, (ISC)² SSCP or equivalent certification
  • Foundational understanding of security operations concepts, including threat detection, incident response, and vulnerability management
  • Familiarity with security tools such as SIEM, EDR, vulnerability scanners, firewalls, email security platforms, and identity/security controls
  • Basic knowledge of operating systems (Windows and Linux), networking fundamentals, and Active Directory or identity management systems
  • Understanding of modern security principles such as Zero Trust, least privilege access, and defense-in-depth
  • Awareness of common attack techniques (e.g., phishing, malware, credential attacks) and MITRE ATT&CK concepts
  • Ability to identify and assess security risks and vulnerabilities
  • Strong analytical and problem-solving skills with attention to detail
  • Willingness to learn, adapt, and stay current with evolving cybersecurity threats and technologies
  • Ability to work independently and collaboratively in a team environment
  • Ability to communicate effectively with both technical and non-technical stakeholders
  • Ability to work in a fast-paced, dynamic environment
  • Ability to collaborate with cross-functional teams
  • Exposure to cloud environments (e.g., Microsoft 365, Azure, AWS) and associated security controls is a plus
  • Understanding of security frameworks and standards such as NIST Cybersecurity Framework (CSF), NIST SP 800-53, CIS Critical Security Controls, or ISO 27001 preferred

Benefits & conditions

Our good faith estimate of the salary range for this role is $64,000 - $80,000. Exact compensation may vary based on skills, experience, and other factors. In addition to base pay, we offer a full benefits package.

About the company

Spellman High Voltage Electronics Corporation, a family owned business for over 75 years, takes pride in powering progress in health, security and quality of life. We are key partners with the world’s leading medical devices, semiconductor, scientific analytics and industrial systems manufacturers. When they want to push the limits of what’s possible with high voltage applications, they turn to us to make it happen.

While Spellman is not a household name, our products are used to make and often power many of the most advanced technologies that make modern life possible. With design and manufacturing sites in North America, Europe and Asia, we have become the preferred provider of high voltage power solutions for OEMs pushing the boundaries of technology around the world by designing and producing the products they need to power progress.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:38 min

Using language models to self-detect and flag software vulnerabilities

Julian Totzek-Hallhuber Julian Totzek-Hallhuber · World Congress 2026 Europe

1:29 min

Evaluating phishing emails that leverage artificial time constraints

Mauro Verderosa · LIVE

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · World Congress 2025

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

2:39 min

Exposing stored XSS and phishing attacks via markdown

Ramona Schwering Ramona Schwering · World Congress 2026 Europe

26:47 min

Exploring pathways to application security careers and research workflows

Vandana Verma Sehgal · LIVE

Videos

See all

Related articles

See all