> Markdown version of [/jobs/ext/3006733-experienced-security-analyst](https://www.wearedevelopers.com/jobs/ext/3006733-experienced-security-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Experienced Security Analyst - **Company:** iPipeline, Inc. - **Location:** Fort Wayne, IN, United States - **Experience:** Experienced - **Salary:** $94,875.0 - $151,800.0 - **Contract:** Permanent contract - **Skills:** Software System Penetration Testing, Cloud Computing Security, Network Security, Network Forensics, PCI Data Security Standards, Phishing, Security Information and Event Management, Firewalls (Computer Science), Vulnerability Analysis - **Published:** September 19, 2026 - **Apply:** https://www.careerjet.com/job/us6c0d9b499e4e9fe8dcfb28e7cfae0f52/eaa ## About the Role * Threat Analysis: Ability to assess and mitigate advanced threats, such as malware, phishing, and APTs. * Network Forensics: Experience conducting forensic analysis on compromised systems and networks. * Incident Response: Proficiency in handling and responding to security incidents and breaches. * Compliance Knowledge: Understanding of regulatory frameworks (e.g., GDPR, HIPAA, SOC 2, PCI DSS, NIST, ISO 27001). * Proficient with network security, cloud security, encryption techniques, firewalls, SIEM (Security Information and Event Management), vulnerability scanning tools, and other security technologies. * Proficient written and verbal communication skills to report findings and collaborate with teams. ## Description The Experienced Security Analyst investigates, analyzes, and resolves security incidents. This role handles more complex threats, conducts in-depth forensics, and contributes to incident response planning. * Security Risk Management: * Monitor and assess security alerts and system events, identifying potential security risks, threats, or vulnerabilities in systems and infrastructure. * Implement controls to mitigate security risks, ensuring the organization's security posture is continually improved. * Conduct regular security audits and assessments (e.g., vulnerability scans, penetration testing). * Incident Response and Remediation: * Detect, analyze and investigate security incidents, determining root causes and impact. * Develop and implement remediation strategies for confirmed incidents. * Ensure that security breaches are properly documented, analyzed, and remediated. * Coordinate with external vendors or authorities in case of a major incident (e.g., data breach). * Security Tools and Technologies: * Implement and manage in-scope security tools. * Continuously evaluate and upgrade security tools to meet evolving threats and compliance requirements. * Regulatory Compliance: * Implement frameworks and practices to comply with industry regulations, laws, and standards around data protection, privacy, and industry-specific requirements. * Keep abreast of changing regulatory landscapes and ensuring the organization adjusts policies and practices accordingly. * Collaboration: * Work with legal teams to ensure contracts and agreements (e.g., with third-party vendors) comply with security and regulatory requirements. * Coordinate with audit teams to ensure compliance with both internal and external audits. * Assist in conducting security training sessions for employees and liaise with legal, HR, and IT to ensure cohesive security practices. * Reporting and Documentation: * Provide regular reports to senior management on security and compliance posture. * Create detailed documentation for audits and compliance reviews. * All other duties as assigned. * Specific to Audit and Compliance: * Update and maintain security policies, procedures, and documentation. Collaborate with other teams (e.g., IT, Legal, HR) to ensure consistent security and compliance practices across the organization. * Lead portions of internal audits and participate in external audits. Maintain audit schedules and track remediation efforts. * Interpret and apply regulatory and audit standards (e.g., SOC 2, SOX, Cyber Essentials. Identify compliance gaps and propose corrective actions. * Conduct risk assessments and analyze effectiveness of controls. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [WeAreDevelopers LIVE - Web Performance in an AI World](https://www.wearedevelopers.com/videos/2130-wearedevelopers-live-web-performance-in-an-ai-world) - [Small, Secure, Interconnected: The next Internet Protocol](https://www.wearedevelopers.com/videos/100062-small-secure-interconnected-the-next-internet-protocol) - [Passkeys: Truly Phishing-Resistant? Implementation and Pitfalls](https://www.wearedevelopers.com/videos/100156-passkeys-truly-phishing-resistant-implementation-and-pitfalls) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Securing Your Web Application Pipeline From Intruders](https://www.wearedevelopers.com/videos/53-securing-your-web-application-pipeline-from-intruders) ## Related Articles - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [11 Best Practices For PHP Security](https://www.wearedevelopers.com/magazine/90-11-best-practices-for-php-security)