Ascensus

Principal Security Operations Analyst

Ascensus • $110K — $130K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5+ years in Information Security or Security Operations
  • Expertise with various security tools such as IAM, IPS, and SEIM
  • Knowledge of information security risks and remediation
  • Strong leadership and team management skills
  • Excellent written and verbal communication skills
  • High level of organization and analytical problem-solving abilities
  • Self-starter with the ability to work independently

Responsibilities

  • Oversee the team's effectiveness and operational success
  • Establish cross-training for availability of SecOps functions
  • Monitor and respond to security events using various tool sources
  • Analyze security events to filter false positives and escalate incidents
  • Collaborate with technology teams to achieve security objectives
  • Manage and maintain multiple security tools and document processes
  • Champion the use of information security tools to maximize functionality

Benefits

  • Comprehensive health benefits
  • Retirement savings plan
  • Generous paid time off
  • Professional development opportunities
  • Supportive organizational culture emphasizing integrity and quality
Full Job Description
Section 1: Position Summary

The Principal Security Ops Analyst will be responsible for operational security responsibilities across Ascensus.

Section 2: Job Functions, Essential Duties and Responsibilities

  • Accountability for team's effectiveness and success
  • Establish cross-training within team for availability of SecOps functions
  • Security Event Monitoring & Response
    • Monitor security events from all tool sources
    • Analyze events filtering for false positives
    • Understanding of basic network services, vulnerabilities and attacks
    • Incident response process and escalation of events
    • Work with the security team to enhance and build new processes & procedures
    • Contribute to and maintain documented processes around monitoring & response
    • Work closely with information security, IT, risk & governance, and facilities teams.
    • Report on security operations metrics quarterly
    • Process phishing email escalations from Associates
    • Correlate events with other known social engineering attempts
  • Management of Security Solutions
    • Build, manage and maintain tools including, but not limited to:
      • IAM
      • IPS
      • SEIM
      • Web Application Firewall
      • Anti-Virus, Malware and Endpoint Protection
      • CASB
      • UBA
      • DLP
      • Web Proxy/Web content filtering
      • Vulnerability management
      • File integrity monitoring
      • Network Access Control (NAC)
    • Maintain documentation around tools
    • Champion the information security tool's usage to maximize features
    • Review access requests around content filtering, removable media and exceptions
  • Work collaboratively with the various technology teams to accomplish security objectives
  • Additional security experience may be gained depending on associate's level of interest and availability:
    • Assessing and selecting security vendors or solutions
    • Identify emerging vulnerabilities and evaluate associated risks
    • Assisting in corporate incident response events
      • Security testing (vulnerability scans, aspects of ethical hacking/penetration testing)
      • Detailed configuration reviews
  • Responsible for protecting, securing, and proper handling of all confidential data held by Ascensus to ensure against unauthorized access, improper transmission, and/or unapproved disclosure of information that could result in harm to Ascensus or our clients.
  • Our I-Client service philosophy and our Core Values of People Matter, Quality First and Integrity Always® should be visible in your actions on a day to day basis showing your support of our organizational culture.
  • Assist with other tasks and projects as assigned


Section 3: Experience, Skills, Knowledge Requirements

  • Experience managing security tools noted above
  • Experience with monitoring, detecting, and responding activities
  • Knowledge of information security risks, at least technical aspects including working knowledge around remediation.
  • Ability to lead, inspire and motivate associates on the team
  • Ability to objectively review the team's work, implement enhancements and monitor quality
  • Strong written and oral communication skills. The ability to communicate effectively (clear, concise and professionally) with all levels within Ascensus.
  • Highly organized and able to process and manage inventories of controls and findings.
  • Excellent analytical and problem resolution skills.
  • Self-starter and able to work independently.
  • Persistence and strength to champion initiatives.

Minimum Requirements:

  • A minimum of 5 years' experience in Information Security or Security Operations
  • Knowledge of networking preferred.
  • Expert level proficiency in MS Office software applications, specifically Word, Excel and Power Point
  • Bachelor's degree plus equivalent work experience required.
  • CISSP certification preferred.

About Ascensus

Ascensus is a financial services company that provides retirement, health, and education savings plans to individuals and businesses. The company was founded in 1980 and is headquartered in Dresher, Pennsylvania. Ascensus has over 4,000 employees and serves more than 12 million customers nationwide. The company offers a wide range of retirement plan solutions, including 401(k), 403(b), and IRA plans. Ascensus is committed to helping its customers save for retirement and achieve their financial goals. The company has received several awards for its excellent customer service and innovative products.
Learn more about Ascensus
Size
4,000 employees
Industry
Founded
1980

Similar Jobs

More Jobs at Ascensus

More Information Technology Jobs

Find similar Principal Security Operations Analyst jobs: