YOUR NEXT CHAPTER
Information Security Analyst
About the role
• Review vulnerability reports, investigate findings, recommend scalable remediation approaches, and track remediation progress through completion
• Coordinate with Support, NOC, Engineering, and other technical teams to implement security remediations while minimizing client impact and planning maintenance activities
• Develop or support scripts, automation, and repeatable processes to improve vulnerability remediation across multiple client environments
• Address vulnerabilities identified through internal and third-party vulnerability management platforms
• Complete Due Diligence Questionnaires and coordinate timely responses to security and risk-related information requests
• Review risk assessment and penetration testing findings, identify remediation actions, and participate in Business Impact Analyses and tabletop exercises
• Measure and improve alignment with Microsoft security benchmarks, including Microsoft Intune configurations
• Strengthen workstation, cloud, infrastructure, and security configurations
• Support system hardening across endpoints, cloud environments, identity, and other security technologies
• Support SOC 2 and security operations activities, including test restores, KnowBe4 phishing and training reviews, SIEM log reviews, and related security-control activities
• Assist with cybersecurity incident response, investigation, remediation, and follow-up
• Partner with the NOC and outsourced SOC resources to improve security remediation runbooks and response procedures
• Maintain security documentation, tickets, remediation records, and supporting evidence
• Contribute to continuous improvement initiatives across the Information Security function
• Strong understanding of cybersecurity principles, security controls, risk management, and industry security practices
• Experience with vulnerability management, vulnerability analysis, remediation, and tracking
• Familiarity with Microsoft Intune, Microsoft security benchmarks, and endpoint or cloud security configuration
• Experience with SIEM platforms, IDS/IPS solutions, vulnerability scanners, or similar security tools
• Experience with RMM, SOAR, or other automation and security-orchestration platforms
• Scripting or automation experience to develop scalable approaches to security remediation and operational tasks
• Experience creating and maintaining technical documentation, security procedures, and remediation runbooks
• Strong analytical, troubleshooting, and problem-solving skills
• Strong written and verbal communication skills
• Ability to collaborate across technical and non-technical teams
• Ability to work independently and collaboratively in a remote, fast-paced environment while managing multiple security priorities
• Desirable: Managed Service Provider experience
• Desirable: Experience supporting security or compliance activities in multi-client or highly regulated environments
• Desirable: Exposure to SOC 2, penetration testing, security assessments, due diligence, or related compliance initiatives
• Desirable: Relevant cybersecurity, Microsoft, or cloud certifications such as AZ-500, SC-900, SC-300, CompTIA Security+, or similar credentials
• Competitive salary
• Comprehensive benefits
• Great perks
• Professional and career development opportunities
• Remote work arrangement