Full-Time

IT Security Analyst

Canadian Bank Note

Canadian Bank Note

No salary listed

Danville, VA, USA

In Person

Travel required: approximately 3-6 weeks per year.

Category
IT & Security (2)
,
Required Skills
Bash
Python
SOC 2
Linux/Unix
Requirements
  • Bachelor's degree in Computer Science (or similar) or an equivalent combination of relevant education and additional relevant work experience
  • 4+ years in Systems Administration or similar role
  • Legal status: Must be legally eligible to work in USA
  • Language: Must be fluent in English (reading, writing, speaking)
  • Travel: Ability to travel approximately 3-6 weeks per year
Responsibilities
  • Deploy, configure, and harden Linux systems and applications with a security-first approach, ensuring on-premises installations follow best practices
  • Build, maintain, and secure pipelines using automation and scripting languages to streamline configuration management and enforce security baselines
  • Collaborate with infrastructure and operations teams to integrate security into deployments, upgrades, and system migrations
  • Design, implement and maintain automated processes within the SIEM environment to enhance threat detection, incident response and log management
  • Collaborate with cross-functional teams to integrate security controls and enhance the overall effectiveness of the SIEM solution
  • Develop and maintain automated responses to common security incidents
  • Collaborate with Risk and Compliance personnel to gather evidence for Compliance requirements (SOC II, ISO 27001, PCI, NIST 800-53, etc.)
  • Develop and implement processes for daily/weekly/monthly evidence collection, ensuring accuracy, completeness and timeliness in response to audit requests
  • Collaborate with stakeholders to address compliance gaps and implement corrective actions
  • Monitor SIEM alerts and investigate security incidents to determine the root cause and appropriate remediation actions
  • Design, implement and maintain automated security processes to enhance efficiency and reduce response times
  • Prioritize and remediate identified vulnerabilities in collaboration with system owners and IT teams
  • Create and maintain documentation related to security policies, procedures and configurations
  • Communicate security risks and findings to technical and non-technical audiences effectively
  • Build relationships with stakeholders across groups to understand needs and requirements and the associated notification process
Desired Qualifications
  • SANS, ISACA or GIAC certification is preferred
  • 1+ year in an IT security related position is preferred
  • Experience with log management and/or SIEM systems is preferred
  • Exposure to regulatory and security frameworks (NIST 800-53, SOC II, ISO 27001, PCI-DSS) is a plus
  • Hands-on experience with Linux administration
  • Experience with configuration management and automation tools (Puppet, Ansible, Terraform)
  • Familiarity with CIS Benchmarks and DISA STIGs (benchmarks) and NVD

Company Size

N/A

Company Stage

N/A

Total Funding

N/A

Headquarters

N/A

Founded

N/A