IT SECURITY ANALYST
An Atlanta law firm seeks an experienced IT Security Analyst to handle implementation, monitoring and administration of information security policies and controls. Ideal candidates will have 5+ years’ experience in information security (network and system security).
Duties include:
- Monitoring and managing the enterprise information security infrastructure
- Establishing security event identification, response, and escalation procedures
- Handling vulnerability management and remediation efforts
- Conducting project risk assessments
- Assisting in the design and implementation of information security policies, standards, and procedures
- Coordinating incident response plan and business continuity plan testing
- Handling IT security projects
- Selecting, installing, configuring, and managing various information security programs
- Conducting research to stay informed of latest security issues, technologies, and threats
- Remediating gaps based on internal and external audits
- Assisting with security awareness training programs
- Reporting on key information security metrics
- Perform other projects or miscellaneous duties as requested or assigned
Preferred skills:
- Knowledge of Windows and virtualization technologies
- Understanding of information systems security standards and practices (e.g., access control and system hardening, system audit and log file monitoring, security policies, and incident handling)
- Experience using and managing security tools including:
- Intrusion detection/prevention tools (e.g., Cisco FirePower)
- Endpoint security tools (e.g., CarbonBlack, Umbrella)
- Malware remediation tools (e.g., Malwarebytes, etc.)
- Log Aggregation/management tools (e.g., SolarWinds Kiwi server, Splunk)
Qualifications:
- Bachelor’s Degree in a related field
- 5+ years work experience in Information Security including network and system security
- Strong working knowledge of industry regulations, standards and frameworks (ISO27001, PCI, NIST, GDPR, CCPA, etc.)
- Minimum of 3 years’ experience with vulnerability scanning and remediation and security risk assessments
Only candidates with a stable resume and relevant experience need apply.