Security Analyst
Posted 1ds ago
Employment Information
Report this job
Job expired or something wrong with this job?
Job Description
Security Analyst protecting systems, data, and client information at Power Digital, an AI-native growth firm. Monitoring threats, managing vulnerabilities, and maintaining SOC 2 compliance.
Responsibilities:
- Monitor security systems, logs, and alerts to detect, investigate, and respond to potential threats and incidents
- Run vulnerability scans and assessments and coordinate remediation with IT and engineering teams
- Maintain and improve compliance with security frameworks and certifications, including SOC 2
- Employ AI technologies to enhance and optimize business processes
- Utilize and leverage Power Digital's Nova ecosystem as it relates to the department
- Support security awareness training and phishing simulation programs across the company
- Review overnight security alerts and triage high-priority issues
- Close remediation tickets assigned for the week
- Coordinate with IT and engineering on in-progress incident response
- Prepare or update documentation for audits or compliance reviews
- Run and review phishing simulation and training results
- Maintain MTTD ≤15 minutes and MTTR ≤60 minutes for priority incidents
- Remediate ≥95% of critical and high-severity vulnerabilities within SLA each quarter
- Achieve phishing simulation click rate ≤5% and employee phishing report rate ≥50% per campaign
- Achieve ≥98% completion of required security awareness training each quarter
- Close ≥95% of audit and compliance findings within the agreed target timeframe each quarter
Requirements:
- 2+ years of experience in information security, IT security, or a related analyst role
- Working knowledge of security monitoring tools, SIEM platforms, and endpoint detection systems
- Familiarity with compliance frameworks such as SOC 2, GDPR, or CCPA
- Understanding of network fundamentals, cloud environments (AWS, GCP, or Azure), and common attack vectors
- Strong written communication skills to document incidents and explain risk to non-technical teams
- Ability to prioritize and stay calm under time pressure during active incidents


















