You are viewing a preview of this job. Log in or register to view more details about this job.

IT Security Analyst

IT Security Analyst 

 

Duties Include:

Assist with developing information systems security packages following Federal Laws, regulations, policies using NIST Special Publications 800 series guidance for privacy and information security.

Assist with conducting vulnerability management activities, configure and conduct system and network scanning, configure and develop security dashboards, create system and network security reports.

Learn and assist in event management activities, analyze network activities, analyze perimeter host and device components, boundary protection devices, identify audit requirements and confirm compliance, generate and review audit logs to identify analogous behavior.

Support the creation of information system design architecture diagrams.

Update and disseminate workforce awareness training on information security standards, update and maintain security policies and stand operating procedures (SOPs) that include communication of system security requirements to technical service personnel.

Support system assessments and complete Use Case requirements, collect and maintain audit artifacts and coordinate 3PAO audits.

Experience with and/or Knowledge of:

UNIX and Windows operating systems

Industry security vulnerability scan tools; Network and Host based

Continuous diagnostic and mitigation (CDM) to access cyber security posture; document and track hardware and software assets, manage configuration items, track and manage user accounts, discover and review what users exist, map and track user accounts to privileges

Ability to support system security packages annual reviews and updates, generate audit artifacts, complete system Use Cases and document compliance, identify gaps, identify remediation plans and track to closure

Contribute to and maintain updated strategies to respond to and recover from a security breach (IR) including developing steps to minimize the impact and conducting a technical investigation

Update contingency planning (CP) and CP testing documents, conduct CP tests, document back up and failover plans included in the CP

Experience with the Microsoft Suite of tool