> Markdown version of [/jobs/ext/2554901-information-security-analyst-administrator](https://www.wearedevelopers.com/jobs/ext/2554901-information-security-analyst-administrator). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information Security Analyst & Administrator - **Company:** CYNET SYSTEMS INC. - **Location:** Frankfort, KY, United States - **Salary:** $93,600.0 - $104,000.0 - **Contract:** Permanent contract - **Skills:** Active Directory, Software System Penetration Testing, Microsoft Azure, Cisco PIX, CompTIA Security+, Cyber Security, Computer Engineering, Network Address Translation, Multi-Factor Authentication, Identity and Access Management, Virtual Private Networks (VPN), Information Systems Security Architecture Professional, Python (Programming Language), Network Security, Log Analysis, OpenID, PCI Data Security Standards, Ping (Networking Utility), Windows PowerShell, Role-Based Access Control, Azure Active Directory, Phishing, Kusto Query Language, Security Assertion Markup Language (SAML), Security Information and Event Management, Single Sign-On, Systems Integration, SSL Certificate Management, Scripting, Enterprise Software Applications, Okta, Cyberark, QRadar, Firewalls (Computer Science), Azure Security Center, Information Technology, Palo Alto Networks, Nessus, Microsoft Sentinel, Fortinet, CIS Benchmarks, Splunk, Qualys, Servicenow, Vulnerability Analysis - **Published:** August 25, 2026 - **Apply:** https://www.dice.com/job-detail/318017ab-e02d-4afe-9bc1-9a93800506ab ## About the Role * Deep technical expertise in Microsoft Active Directory and Microsoft Entra ID. * Experience designing and implementing IAM integrations, provisioning workflows, and access controls. * Proven experience implementing and maintaining role-based access control frameworks. * Proven ability to lead and mentor technical engineering teams. * Strong understanding of identity security principles and enterprise authentication models. * Previous experience with NIST CSF, ISO 27001, or CIS Controls frameworks. * Bachelor s degree, preferably in Computer Science, Information Technology, Computer Engineering, or related IT discipline; or equivalent experience., * Strong understanding of identity security principles and enterprise authentication models (SAML, OIDC, SCIM) and access control models like Fine-Grained Authorization (FGA). * Experience with public sector modernization programs. * Experience with firewalls and network security: Palo Alto Networks, Fortinet FortiGate, Cisco ASA/FTD rule writing, NAT, VPN configuration. * Experience with SIEM: Splunk (SPL queries), Microsoft Sentinel (KQL), IBM QRadar correlation rule tuning, dashboard creation. * Experience with endpoint security: CrowdStrike Falcon, Microsoft Defender for Endpoint, Carbon Black alert triage, isolation, policy management. * Experience with IAM: Active Directory, Azure Active Directory, Okta, CyberArk for PAM. * Scripting skills: PowerShell and Python for automation of repetitive security tasks (log parsing, alert enrichment, AD queries). * Experience with ServiceNow and integration with prevalent identity access management platforms. * Knowledge of tools and platforms: ServiceNow, Active Directory, Okta, Ping Identity, Azure AD, Cisco ASA, Fortinet FortiGate, Palo Alto PA-OS, Check Point, Splunk, IBM QRadar, Microsoft Sentinel, eSet, Proofpoint Nessus, Qualys, N-Discovery, OpenVAS, ISO 27001 compliance checklists, CJIS compliance tools, SSAE 16 audit frameworks, NIST & FedRAMP frameworks. * Certifications: CompTIA Security+, CISSP (Certified Information Systems Security Professional), Microsoft Azure Security Engineer Associate (AZ-500), Microsoft Applied Skills. * Ability to administer Active Directory Domain Services. Skills: * Information Security. * Identity and Access Management (IAM). * OKTA. * Azure platform. * Active Directory. * Microsoft Entra ID. * Role-based access control (RBAC). * NIST CSF. * ISO 27001. * CIS Controls. * SIEM (Splunk, Microsoft Sentinel, QRadar). * Vulnerability scanning. * Penetration testing. * Risk assessment. * Multi-factor authentication. * PowerShell. * Python. Qualification And Education: * Bachelor s degree in Computer Science, Information Technology, Computer Engineering, or related IT discipline; or equivalent experience. ## Description * Serve as primary IT Security Subject Matter Expert (SME) for the organization. * Manage user authentication, authorization, and access control policies to prevent unauthorized access. * Support the design and build of role-based access control security frameworks for the department. * Perform vulnerability scans, penetration tests, and risk assessments to identify and mitigate threats. * Monitor security alerts, investigate breaches, and respond to incidents promptly. * Develop, enforce, and update security policies; ensure compliance with legal and regulatory requirements. * Educate staff on security best practices and protocols. * Support the creation and maintenance of business continuity and disaster recovery plans. * Administer identity and access management (IAM) systems including OKTA, Active Directory, Azure AD, and privileged access workstations. * Monitor SIEM platforms (Splunk, Microsoft Sentinel, QRadar) for security events, tune alert rules, and escalate confirmed incidents. * Implement and enforce multi-factor authentication, certificate management, and single sign-on configurations across enterprise applications. * Develop and maintain security policies, standards, and procedures aligned with NIST CSF, ISO 27001, or CIS Controls frameworks. * Support security audits and compliance assessments for SOC 2, HIPAA, PCI-DSS, or FedRAMP by gathering evidence and remediating findings. * Perform security reviews on new systems, applications, and vendors as part of the change management and third-party risk process. * Investigate phishing incidents, malware infections, and unauthorized access events; document findings and implement corrective controls. * Identify and mitigate security-related project risks, issues, and dependencies, and develop contingency plans to ensure project success. ## Related Videos - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Delegating the chores of authenticating users to Keycloak](https://www.wearedevelopers.com/videos/1558-delegating-the-chores-of-authenticating-users-to-keycloak) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Get started with securing your cloud-native Java microservices applications](https://www.wearedevelopers.com/videos/123-get-started-with-securing-your-cloud-native-java-microservices-applications) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Best Coding Boot Camps in Germany](https://www.wearedevelopers.com/magazine/237-best-coding-boot-camps-in-germany)