Job Details

ID #45381476
State Georgia
City Decatur
Job type Contract
Salary USD Depends on Experience Depends on Experience
Source Delta Information Systems, Inc.
Showed 2022-09-02
Date 2022-09-01
Deadline 2022-10-31
Category Et cetera
Create resume

Information Security Analyst

Georgia, Decatur, 30030 Decatur USA

Vacancy expired!

LOCAL METRO AREA CANDIDATES Hybrid role. The onsite first week, then transition to agreed upon schedule The Information Security Analyst position establishes and supports the technical information security posture of the Client’s information systems. This includes proactive security measures to protect Client staff, customers, and systems. The Information Security Analyst also assists in reactive investigations and computer forensics as directed by the Chief Information Officer. The position also helps guide Information Security policy, procedure, and education at the Client. The Information Security Analyst works closely with other technical staff within the Client to improve the overall Information Security health of Systems. This role performs a wide range of professional duties to ensure all best practices related to information security and data privacy are followed at Client; conducts deep-dive assessments related to information security compliance, such as FERPA and HIPAA, across multiple systems and processes; advises and trains Client staff on standards, laws, policies, regulations, processes, and best practices as it applies to the management of electronic information and data privacy.

Roles and Responsibilities:
  • Monitor and mitigate end devices based on Windows Defender’s reporting
  • Monitor and mitigate end devices based on SecureWorks Taegis reporting
  • Oversee and train staff on update and patch management. These tasks would include Microsoft patches, 3rd party patches, zero-day updates for firewalls and security devices, scheduled firmware updates, and VMWare updates.
  • Ensure all Client devices are enrolled in SecureWorks Taegis
  • Ensure mandated Client SaaS applications logs are integrated with SecureWorks Taegis
  • Ensure Client Firewall logs are integrated into the SecureWorks Taegis
  • Monitor and mitigate O365 risky users and logins
  • Ensure O365 Identity Protection is configured properly to identify and mitigate user risk
  • Train Client staff on identification and mitigation of security incidents.
  • Continuously monitor and improve the district’s security posture while preventing, detecting, analyzing, and responding to cybersecurity incidents. Monitoring activities shall include:
  • Familiarize itself with the various devices, processes, and applications that need safeguarding within the district’s environment.
  • Provide continuous, proactive monitoring, such as performing scans of the IT environment 24/7 and reviewing the log of all network activity and communications to flag any abnormalities or suspicious activities and detect threats.
  • Utilize monitoring tools to receive alerts of potential threats and then determine the severity of said threats.
  • In the event of an incident, the vendor shall work to restore systems and recover any lost or compromised data.
  • In the event of an incident, the vendor shall be responsible for investigating the incident to ascertain what occurred, when it occurred, and how it occurred, to take steps and make recommendations to prevent similar problems from occurring in the future.
  • Required Skills:
    • Any combination of education and experience equivalent to a bachelor's degree in computer science, information technology, information security, or a related field.
    • Three (3) years of progressively more responsible experience in information technology and/or cybersecurity, some of which shall have been in a lead capacity in information security or a related field.
    • Three (3) years of Knowledge of theories, procedures, practices, materials, and methods related to cybersecurity compliance
    • Three (3) years of Knowledge of applicable local, state, and federal privacy laws and regulations
    • Three (3) years of Knowledge of HIPAA, FERPA, and PCI-DSS compliance frameworks.
    • Advanced degree(s) beyond the minimum degree requirement in a relevant field may be considered for some experience.
    • Three (3) years of Familiar with O365, Palo Alto, and Aruba products
    • Skill in analytics and reporting tools.
    • Three (3) years of Proficiency in data compilation, analysis, and reporting.
    • The position may require after-hours work

    Vacancy expired!

    Subscribe Report job