Security Analyst

Posted 6 Days Ago
Be an Early Applicant
Tallahassee, FL, USA
In-Office
Mid level
Information Technology
The Role
Implements and enforces enterprise security policies, participates in incident response (CSIRT), evaluates technologies, conducts risk and compliance assessments, supports vulnerability and continuous monitoring, implements secure baselines (SCCM/Group Policy/PowerShell), and advises on security architecture while educating staff.
Summary Generated by Built In
Company Description

vTech can help you avoid the daunting task of writing and posting job offers, shifting through resumes and laboring through the lengthy interview process. Our Staffing solutions will allow you to elude those tasks and place topnotch, high-caliber professionals in the position you need to fill.

We use our expertise, knowledge, and global resources to deliver top-quality candidates and tailor our IT and Non-IT recruitment services to your needs. This allows us to deliver the required results in a timely manner that meets your schedule at a substantially reduced cost.

We pride ourselves for having one of the fastest growth rate and also the lowest turnover rates in the industry just 2.5 percent annually. We focus on the training and retaining qualified professionals with high personal and work ethics. With the help of our extensive database of internal candidates and CATS applicants tracking system, we can provide quality resources within the limited time frame.

We have also successfully placed hundreds of candidates in the areas related to Information Technology, Engineering, professional, Scientific & Clinical, etc. for both our commercial and government clients.

  1. Source: A recruiter sources candidates from various sources; the search starts from our proprietary database. Using advanced sourcing methods like social media, professional networking media, internal, and 3rd party job boards, we identify qualified candidates.
  2. Validate: A recruiter validates the candidates’ experience and skill sets against our client’s position.
  3. Initial Screening: Based on the position and the client’s work culture, the recruiter uses initial screening questions to determine the most suitable candidates.
  4. Submit: the recruiter will submit to the technical team qualified candidates who have passed the initial screening.
  5. Technical Screening: The technical team then prepares a matrix of the particular requirements and required experience for the position and using a list of questions and the results, re-validates the candidates’ technical skills.
  6. Background Check: Administrative personnel will provide a detailed background check, as required, per client agreement.
  7. On board: On successfully completing the above steps, the candidates are welcomed on board and assisted to ensure a smooth integration at the client’s location.

Job Description

• Develops and manages security for more than one IT functional area (e.g., data, systems, network and/or Web) across the enterprise.

• Assists in the development and implementation of security policies and procedures (e.g., user log-on and authentication rules, security breach escalation procedures, security auditing procedures and use of firewalls and encryption routines). Prepares status reports on security matters to develop security risk analysis scenarios and response procedures. Responsible for the tracking and monitoring of software viruses.

• Enforces security policies and procedures by administering and monitoring security profiles, reviews security violation reports and investigates possible security exceptions, updates, and maintains and documents security controls. Involved in the evaluation of products and/or procedures to enhance productivity and effectiveness.

• Provides direct support to the business and IT staff for security related issues.

• Educates IT and the business about security policies and consults on security issues regarding user built/managed systems. Represents the security needs of the organization by providing expertise and assistance in all IT projects with regard to security issues. Must have extensive knowledge in networking, databases, systems and/or Web operations.

• More junior level position primarily focuses on security administration; a more senior level position is involved in developing enterprise security strategies, management of security projects and the most complicated security issues.

Scope of Services:

• The primary function of this position is to provide technical expertise and analysis to assist the Information Security Management Office in their work to establish, implement and monitor the security strategy of the Department.

• This candidate must have a working knowledge of supporting, monitoring and maintaining an enterprise-level Microsoft environment.

• This understanding of networked environments will allow the candidate to review, implement and support security-related functions such as vulnerability management, compliance monitoring, and continuous security monitoring.

Education:

• Bachelor’s Degree in Computer Science, Information Systems, Business Administration, Information Security or another related field; or equivalent work experience.

Experience:

Four years of experience in the work related to the position.

Primary Job Duties/Tasks:

The submitted candidate must be able to perform the following duties and/or tasks:

• Serve as a member of the Computer Security Incident Response Team. Duties includes researching incidents, identifying corrective actions, documenting status and coordinating responses to Computer Security Incidents.

• Complete research and analysis into the security impacts of a variety of technologies, applications (COTS and custom developed) and processes. Provide recommendation that will be used by the Information Security Manager to support purchasing decisions, standards development and risk assessment.

• Review and evaluate System Security Plans developed for Information Technology Systems within the Department. Assess compliance with existing standards and provide recommendations that will be used by the Information Security Manager to support approval of the plans.

• Work with the Information Security Manager and Enterprise Architect to identify technologies, processes and tools that can be implemented to support the security architecture.

• Work in conjunction with the Department’s Patch Management and Configuration Team in identifying secure configurations for standard products. Provide support/information as needed for implementation of secure baselines through package roll out and/or group policy. After implementation of secure baselines, use tools to review and ensure compliance with established baselines.

Knowledge Skills and Abilities (KSAs):

The submitted candidate must be able to apply common knowledge, skills, and abilities in the following areas:

• Knowledge in the use of appropriate security controls to protect the confidentiality, integrity and availability of information technology resources.

• Knowledge of, and experience with, various computing technologies such as, but not limited to: Windows, Windows Server, proxies, firewalls, switches, routers, Transmission Control Protocol/Internet Protocol (TCP/IP)

• Knowledge of perimeter technologies (firewalls, proxies, intrusion detection/prevention systems (IDS/IPS) and vulnerability management tools.

• Knowledge in the use of information security practices and standards such as NIST, CIS Critical Security Controls and the Florida Cybersecurity Standards (74-2 Florida Administrative Code). Ability to review, assess and document compliance with standards.

• Knowledge of Microsoft Systems Center Configuration Manager (SCCM) and other Microsoft support tools/technologies such as Group Policy and PowerShell.

• Knowledge of the application of operating system security settings through direct manipulation of the registry.

• Knowledge of Security Information and Event Management (SEIM) tools. Ability to utilize, configure and manage SPLUNK preferred but not required.

• Skills in applying, analyzing and assessing information systems and security controls.

• Skills in applying, analyzing and assessing information systems and security controls.

• Ability to analyze complex technical architecture for security issues.

• Ability to be self-motivated, detail-oriented with excellent follow through.

• Ability to assess and analyze risk and provide recommendations to successfully manage risk.

• Ability to author documented analysis of systems to verify compliance with security controls.

• Ability to effectively communicate orally and in writing to a variety of audiences. This includes the ability to communicate professionally with management, to communicate technical issues and concepts to non-technical staff, and to effectively explain security concepts and their benefit.

• Ability to solve problems independently and with teams and exhibit sound judgement and decision making skills.

Additional Information

All your information will be kept confidential according to EEO guidelines.

Skills Required

  • Bachelor's degree in Computer Science, Information Systems, Information Security, Business Administration, or equivalent work experience
  • Four years of related information security experience
  • Working knowledge of enterprise-level Microsoft environments (Windows, Windows Server)
  • Knowledge of networking protocols and devices (TCP/IP, switches, routers)
  • Knowledge of perimeter technologies (firewalls, proxies, IDS/IPS) and vulnerability management tools
  • Experience with Microsoft System Center Configuration Manager (SCCM), Group Policy, and PowerShell
  • Ability to apply operating system security settings via registry and implement secure baselines
  • Knowledge of Security Information and Event Management (SIEM) tools
  • Experience or ability to serve on a Computer Security Incident Response Team (CSIRT) and perform incident handling
  • Knowledge of information security standards and practices (NIST, CIS Critical Security Controls, Florida Cybersecurity Standards)
  • Ability to analyze technical architectures for security issues, assess risk, document findings, and communicate to technical and non-technical audiences
  • Experience utilizing, configuring, and managing Splunk
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Washington, District Of Columbia
471 Employees
Year Founded: 2006

What We Do

vTech solution Inc. is a Managed IT Services firm based out of Washington DC with a primary focus on Cloud Computing and Professional Services. vTech was incorporated in January 2006 under the Commonwealth of Virginia as an IT Professional firm. vTech has experienced constant growth over the years and has developed various IT service capabilities by diversifying its service portfolio to IT Consulting, Enterprise Software Solutions, and Cloud Computing Services to provide complete IT Managed Service offerings. Currently, we are one of the nation’s fastest-growing private companies and have been consecutively named in INC. 5000 list for the past five years. Our focus is to enhance the level of success for our clients by efficiently offering the highest quality services. We use the most advanced IT technologies and practices to add value to our client services. We specialized in core competencies which include Cloud solutions, Network Services, Security Solutions, Customized Application Services, System Integration, AI Tools, and Professional IT Services such as Project Management, Staff Augmentation, and IT Infrastructure Services. vTech Solution's unwavering dedication to results defines our brand. Our time-tested management processes, quality control methods, and state-of-the-art work environment ensure that our clients' most complex projects are delivered on time, on budget, and message. "vTech encourages and supports a healthy work-life balance for its employees. It offers a workplace where you can work with dignity and independence. vTech offers a competitive salary and comprehensive benefits package. We offer tuition and training expense reimbursement and a flexible work schedule."

Similar Jobs

In-Office or Remote
2 Locations
16053 Employees
69K-105K Annually
In-Office
9 Locations
35761 Employees

Northrop Grumman Logo Northrop Grumman

Industrial Security Analyst

Aerospace • Logistics • Security • Software • Cybersecurity
In-Office
Melbourne, FL, USA
85636 Employees
66K-98K Annually

Similar Companies Hiring

Standard Template Labs Thumbnail
Artificial Intelligence • Information Technology • Software
New York, NY
25 Employees
NODA AI Thumbnail
Artificial Intelligence • Information Technology • Software • Cybersecurity
Sydney, AU
54 Employees
Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account