Apply

Information Security Analyst II

Posted 1 day agoViewed

View full description

💎 Seniority level: Junior, 2-4 years

📍 Location: United States

💸 Salary: 68356.34 - 109370.37 USD per year

🔍 Industry: Information Security

🏢 Company: csgcareers

🗣️ Languages: English

⏳ Experience: 2-4 years

🪄 Skills: PythonSQLCybersecurityLDAPMicrosoft ExchangeAlgorithmsData StructuresREST APICommunication SkillsAnalytical SkillsLinuxWritten communicationComplianceMS OfficeJSONScripting

Requirements:
  • Experience with various functions within the entire incident response life cycle including security system engineering, alert monitoring, triage, incident analysis (host and network forensics, malware analysis, etc.) and incident management
  • Experience working with information security technologies, such as IDS/IPS, malware prevention, database activity monitoring, secure password repository, multi-factor authentication, SIEM, SPAM prevention, web content filtering, IdM/IAM, encryption and encryption key management, DLP, change detection, and vulnerability scanners
  • Knowledge of TCP/IP: must be able to demonstrate technical understanding of all layers of the TCP/IP stack, including familiarity with major application-layer protocols such as HTTP, HTTPS, FTP, SFTP, FTPS, SMTP, DNS, etc.; must be able to read and understand a packet trace; must be able to read and interpret network access control lists
  • A clear understanding of a variety of network and application attacks: examples include DoS/DDoS, buffer overflows, SQL injection, reconnaissance scanning, and evasive methods attackers use to avoid detection; must be able to demonstrate a minimum level of familiarity with well-known vulnerabilities and exploits
  • Working knowledge with IT security, compliance, and regulatory requirements, such as Payment Card Industry (PCI) Data Security Standard (DSS), Sarbanes-Oxley (SOX), Health Insurance Portability and Accountability Act (HIPAA), state and Federal privacy laws
Responsibilities:
  • Monitor, respond, and work to resolution alerts from security tools
  • Participate in the organization's incident response plan and perform incident reporting
  • Collaborate with team members and assist in developing and implementing SOC IR strategies, along with refining and testing incident response playbooks and procedures
  • Perform security engineering tasks as required to include alert tuning, system maintenance, determining and capturing key information feeds, etc.
  • Participate and fulfill requests from audit, compliance, and regulatory functions, including and not limited to Payment Card Industry (PCI) Data Security Standard (DSS), Sarbanes-Oxley (SOX), emerging state and Federal privacy laws, and general security auditing
Apply