IT Security Analyst – Level 1

Posted 1hrs ago

Employment Information

Education
Salary
Experience
Job Type

Report this job

Job expired or something wrong with this job?

Job Description

Information Security Analyst protecting Spellman’s high-voltage electronics systems from cyber threats. Monitoring events, responding to incidents, and managing vulnerabilities across hybrid environments.

Responsibilities:

  • Monitor and analyze security events from SIEM, endpoint, network, email, and cloud security platforms
  • Triage security alerts and escalate or respond according to incident response procedures
  • Support incident response, including investigation, containment, eradication, recovery, documentation, and evidence handling
  • Perform vulnerability scanning and assist with risk-based prioritization and remediation tracking
  • Maintain and improve security documentation, runbooks, SOPs, and knowledge base articles
  • Implement, configure, and validate security controls across endpoints, identity systems, networks, and cloud services
  • Collaborate with infrastructure, application, business, and cross-functional teams to remediate findings and strengthen security posture
  • Improve detection capabilities by tuning alerts and reducing false positives
  • Support audit and compliance activities by maintaining evidence and control documentation and participating in assessments
  • Research emerging threats, vulnerabilities, and attack techniques
  • Generate reports on incidents, vulnerabilities, and security metrics for technical and non-technical stakeholders
  • Provide occasional on-site or remote support for security implementations and assessments across multiple locations

Requirements:

  • Bachelor’s degree in Cybersecurity, Information Technology, or a related field
  • Minimum 1 year of experience in a security-related role
  • CompTIA Security+, CompTIA CySA+, (ISC)² SSCP, or equivalent certification
  • Foundational understanding of security operations, threat detection, incident response, and vulnerability management
  • Familiarity with SIEM, EDR, vulnerability scanners, firewalls, email security platforms, and identity/security controls
  • Basic knowledge of Windows, Linux, networking fundamentals, and Active Directory or identity management systems
  • Understanding of Zero Trust, least privilege access, and defense-in-depth
  • Awareness of phishing, malware, credential attacks, and MITRE ATT&CK concepts
  • Ability to identify and assess security risks and vulnerabilities
  • Strong analytical and problem-solving skills with attention to detail
  • Willingness to learn and stay current with evolving cybersecurity threats and technologies
  • Ability to work independently and collaboratively
  • Ability to communicate effectively with technical and non-technical stakeholders
  • Ability to work in a fast-paced, dynamic environment
  • Ability to collaborate with cross-functional teams
  • Exposure to Microsoft 365, Azure, AWS, and associated security controls is a plus
  • Understanding of NIST CSF, NIST SP 800-53, CIS Critical Security Controls, or ISO 27001 preferred

Benefits:

  • Full benefits package
  • Remote work arrangement