About the job
We are actively seeking a talented IT Security Analyst with a strong educational and technical foundation in Cyber Security. In this role, you will collaborate closely with various technical teams to enhance and manage our existing IT Security framework and tools. We encourage innovative recommendations for additional security tools and process improvements that will fortify our security posture.
Key Responsibilities:
- Design and implement robust security measures to safeguard our systems, networks, and data from unauthorized access, vulnerabilities, and attacks.
- Conduct regular security assessments, vulnerability scans, and penetration tests to identify risks and develop effective remediation plans.
- Monitor and analyze security events, incidents, and logs to swiftly detect and respond to breaches, intrusions, and anomalous activities.
- Work collaboratively with development and infrastructure teams to design secure architecture, policies, and procedures.
- Stay informed on the latest security technologies, trends, and threats to continuously improve our security posture.
- Provide expert guidance and support to internal stakeholders on security best practices and procedures.
- Participate in incident response activities, including investigations, root cause analysis, and remediation efforts.
- Contribute to the creation and maintenance of security documentation, including policies, procedures, and guidelines.
- Manage and enforce Azure Conditional Access policies.
- Oversee and modify InTune Compliance policies to align with industry best practices.
- Implement hardening policies for workstations and servers.
- Manage, monitor, and deploy Sentinel One and Sophos endpoint protection applications for corporate devices and development teams, responding promptly to alerts.
- Address any security findings from Avanon.
- Monitor and manage Rapid7 IDR and vulnerability findings.
- Remediate Rapid7 vulnerability findings through patching and the removal of outdated applications.
- Collaborate with the Rapid7 team to resolve outstanding findings and alerts.
- Set up external monitoring for all devices via our Rapid7 tool.
- Assist in patch deployment through Automox, creating and implementing device and server patching policies.
- Manage, research, analyze, and respond to ThreatLocker application requests, establishing company-wide ThreatLocker policies for application approval or denial.
- Conduct Phishing Campaigns for user training initiatives.
- Design and implement end-user IT Security Training utilizing our KnowBe4 tool.
- Provide support for Perimeter81 VPN login access and troubleshooting.
- Collaborate with technical teams on the implementation of security tools.
- Assist the Helpdesk team during peak ticketing times.
