Information Security Analyst (SOC)

Kforce Inc.
Commerce, CA, United States
7 days ago
Apply on www.dice.com
Prepare application

Role details

Contract type
Internship / Graduate position
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Job source

Tech stack

JIRA CompTIA Security+ Cyber Security Identity and Access Management Information Technology Operations Python (Programming Language) Windows PowerShell Role-Based Access Control Azure Active Directory Anti-Phishing Web Application Security Security Information and Event Management
+12 more
Software Vulnerability Management Scripting Okta QRadar Information Technology Nessus Microsoft Sentinel SailPoint Splunk Qualys Servicenow Vulnerability Analysis

Job description

A client with Kforce is seeking an Information Security Analyst (SOC) to join their team. This is a hybrid position in Commerce, CA., The Information Security Analyst is a position on the Information Security team, responsible for supporting day-to-day security operations. This role supports Identity and Access Management actions, user access recertification, security event monitoring, vulnerability management, and initial triage of security incidents, including email header analysis for phishing and spoofing investigations. The Analyst works under the guidance of senior analysts and the Cyber Security Services Manager, following established procedures and escalating complex or high-risk issues as needed., * Support periodic user access recertification/attestation campaigns, working with system and business owners to validate and remove inappropriate access

  • Maintain accurate records of access changes to support audit and compliance requirements
  • Monitor security event alerts (SIEM or equivalent tools) for anomalies, policy violations, and potential threats
  • Perform initial triage and analysis of security events, escalating confirmed or suspected incidents per the incident response process
  • Conduct email header analysis to investigate suspicious, phishing, or spoofed emails, and take appropriate response actions (e.g., blocking senders, quarantining messages, user notification)
  • Assist in documenting incident timelines, actions taken, and lessons learned
  • Run scheduled vulnerability scans and assist in maintaining scan schedules and scope lists
  • Help prepare and distribute routine vulnerability reports for IT and application owners
  • Track open vulnerabilities and follow up with owners to confirm remediation status until closure
  • Escalate overdue or high-severity findings to senior analysts or the manager

Requirements

  • Bachelor’s degree in Information Security, Computer Science, Information Technology, or a related field, or equivalent practical experience
  • Must have experience with incident investigation and response
  • Experience in information security, IT operations, or helpdesk/service desk role
  • Hands-on experience (including internships or coursework) with an IAM management tool (e.g., SailPoint, Okta, Saviynt, Microsoft Entra ID/Azure AD, or similar)
  • Basic understanding of user access recertification/attestation processes
  • Basic understanding of email header structure and ability to identify indicators of phishing or spoofing
  • Basic understanding of vulnerability management concepts and exposure to vulnerability scanning tools (e.g., Tenable/Nessus, Qualys, Rapid7) is a plus
  • Exposure to security event monitoring or SIEM tools (e.g., Splunk, Microsoft Sentinel, QRadar) is a plus
  • Familiarity with URL/web filtering concepts and tools (e.g., proxy or secure web gateway solutions)
  • Familiarity with EDR/XDR tools
  • Strong attention to detail and ability to follow documented procedures accurately
  • Good written and verbal communication skills for ticket documentation and cross-team coordination
  • Ability to prioritize and manage multiple tickets/requests in a fast-paced environment

Preferred Qualifications:

  • Industry certification such as CompTIA Security+, or equivalent (or actively pursuing)
  • Familiarity with ITSM/ticketing platforms (e.g., ServiceNow, Jira Service Management)
  • Basic scripting or automation exposure (e.g., PowerShell, Python) for repetitive task efficiency
  • Understanding of least-privilege and role-based access control (RBAC) principles

Benefits & conditions

The pay range is the lowest to highest compensation we reasonably in good faith believe we would pay at posting for this role. We may ultimately pay more or less than this range. Employee pay is based on factors like relevant education, qualifications, certifications, experience, skills, seniority, location, performance, union contract and business needs. This range may be modified in the future.

We offer comprehensive benefits including medical/dental/vision insurance, HSA, FSA, 401(k), and life, disability & ADD insurance to eligible employees. Salaried personnel receive paid time off. Hourly employees are not eligible for paid time off unless required by law. Hourly employees on a Service Contract Act project are eligible for paid sick leave.

Note: Pay is not considered compensation until it is earned, vested and determinable. The amount and availability of any compensation remains in Kforce’s sole discretion unless and until paid and may be modified in its discretion consistent with the law.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com
Prepare application

Good distractions

Loading talks and stories from around this role…