IT Security Analyst – Level 1
Posted 1hrs ago
Employment Information
Report this job
Job expired or something wrong with this job?
Job Description
Information Security Analyst protecting Spellman’s high-voltage electronics systems from cyber threats. Monitoring events, responding to incidents, and managing vulnerabilities across hybrid environments.
Responsibilities:
- Monitor and analyze security events from SIEM, endpoint, network, email, and cloud security platforms
- Triage security alerts and escalate or respond according to incident response procedures
- Support incident response, including investigation, containment, eradication, recovery, documentation, and evidence handling
- Perform vulnerability scanning and assist with risk-based prioritization and remediation tracking
- Maintain and improve security documentation, runbooks, SOPs, and knowledge base articles
- Implement, configure, and validate security controls across endpoints, identity systems, networks, and cloud services
- Collaborate with infrastructure, application, business, and cross-functional teams to remediate findings and strengthen security posture
- Improve detection capabilities by tuning alerts and reducing false positives
- Support audit and compliance activities by maintaining evidence and control documentation and participating in assessments
- Research emerging threats, vulnerabilities, and attack techniques
- Generate reports on incidents, vulnerabilities, and security metrics for technical and non-technical stakeholders
- Provide occasional on-site or remote support for security implementations and assessments across multiple locations
Requirements:
- Bachelor’s degree in Cybersecurity, Information Technology, or a related field
- Minimum 1 year of experience in a security-related role
- CompTIA Security+, CompTIA CySA+, (ISC)² SSCP, or equivalent certification
- Foundational understanding of security operations, threat detection, incident response, and vulnerability management
- Familiarity with SIEM, EDR, vulnerability scanners, firewalls, email security platforms, and identity/security controls
- Basic knowledge of Windows, Linux, networking fundamentals, and Active Directory or identity management systems
- Understanding of Zero Trust, least privilege access, and defense-in-depth
- Awareness of phishing, malware, credential attacks, and MITRE ATT&CK concepts
- Ability to identify and assess security risks and vulnerabilities
- Strong analytical and problem-solving skills with attention to detail
- Willingness to learn and stay current with evolving cybersecurity threats and technologies
- Ability to work independently and collaboratively
- Ability to communicate effectively with technical and non-technical stakeholders
- Ability to work in a fast-paced, dynamic environment
- Ability to collaborate with cross-functional teams
- Exposure to Microsoft 365, Azure, AWS, and associated security controls is a plus
- Understanding of NIST CSF, NIST SP 800-53, CIS Critical Security Controls, or ISO 27001 preferred
Benefits:
- Full benefits package
- Remote work arrangement

















