System Analyst - Cybersecurity
Job Duties
- Threat Management: Monitor and analyze logs and alerts from a variety of technologies to identify and manage threats.
- Incident Response: Lead and participate in incident response efforts, coordinating with other teams as necessary.
- Policy & Compliance: Assist in developing, maintaining, and enforcing IT security policies, procedures, and standards.
- Vulnerability Management: Coordinate and conduct vulnerability assessments, ensuring that system vulnerabilities are identified and remediated in a timely manner.
- Security Awareness and Phishing Simulation: Lead and coordinate cybersecurity awareness training for employees, including managing and executing phishing simulation programs to assess and improve the organization's resilience against email-based threats.
- Collaboration: Work closely with various departments to integrate security measures and considerations into their projects and daily operations.
- Endpoint Protection: Ensure that all endpoints within the organization, including servers, desktops, laptops, and mobile devices, are adequately secured against threats
- Reporting: Generate regular reports on security status and risks, and report to upper management.
- Security Tool Management: Oversee the selection, deployment, and maintenance of security software and hardware tools, ensuring they remain effective and updated.
- Vendor Management: Evaluate the security postures of third-party vendors, ensuring that their cybersecurity practices meet our organization's standards.
Requirements
- Bachelor’s degree in Computer Science, IT, or a related field.
- Relevant professional certifications such as CISSP, CISA, CEH, or equivalent.
- 2-5 years of professional experience in cybersecurity.
- Strong knowledge of cybersecurity frameworks, standards, and best practices.
- Experience with cloud platforms like AWS, Azure.
- Familiarity with ISO 27001, NIST, and other cybersecurity standards.
- Proficiency in managing SOC (Security Operations Center)
- Experience with security solutions such as EDR (Endpoint Detection and Response), NDR (Network Detection and Response), and WAF (Web Application Firewall).
- Hands-on experience with various security devices, cybersecurity tools and their effective deployment and management.
- Proven ability to manage security vendors and ensure projects are executed smoothly and within the agreed timeline.
- Ability to work independently and as part of a team.
- Excellent analytical and problem-solving skills.
- Strong communication skills, both verbal and written.