Information Security Analyst
XDIN · Greensboro, NC · 1 wk ago
Information TechnologyContract
XDIN, a subsidiary of ALTEN Group, includes 500 employees dedicated to automotive engineering development. ALTEN is a leader in Engineering & Information Technology systems, operating in over 21 countries (Europe, North America, Asia, Africa, and the Middle East) with more than 28,000 employees, of which 88% are engineers. At XDIN, we seek world-class talent to lead our global teams through commitment and dedication to our OEM and Tier I clients, emphasizing quality support from concept through production while fostering a great workplace.
Responsibilities
- Performs network and application technical vulnerability assessments using vulnerability assessment tools.
- Performs penetration testing activities to detect vulnerabilities and attack chains.
- Utilizes penetration testing skills to conduct analyses to gather deeper situational awareness and provide greater security insight of the environment.
- Leads Security Awareness efforts, including facilitating presentations on topics of relevance, evaluating and implementing awareness training.
- Assists in network security efforts including Data Loss Prevention, Intrusion Prevention, and SIEM analysis.
- Tests security measures including OS patches, system hardening, and application configuration.
- Monitors, reviews, and troubleshoots alerts.
- Reviews, interprets, and adapts customer, regulatory, and corporate security and compliance requirements into technical design options.
- Applies knowledge of technical and analytical skills to ensure the confidentiality, integrity, and availability of all information systems assets and ensure compliance with company policies, procedures, contractual, and regulatory requirements.
- Produces security policies, standards, and guidelines.
- Performs security research.
- Produces security risk advisories based on newly identified threats and risk assessment.
- Assists in performing IT audit, third-party evaluations, and risk assessment activities.
- Demonstrates excellent verbal, written, and presentation skills; effectively communicates technical and business issues and solutions to multiple organizational levels internally and externally.
- Applies knowledge of security frameworks and governance such as NIST, ISO27000 series, HIPAA, GDPR, and PCI DSS.
Requirements
- Bachelor’s degree in Information Technology, Computer Science, or a related discipline.
- Approximately 3 years’ work experience in Information Security in an enterprise network (internships and co-ops can be included).
- A recognized information security certification or accreditation such as Security+, CISSP, or CEH is a plus.
- Fundamental understanding of penetration testing techniques and technologies.
- Fundamental understanding of application development security concepts such as OWASP Top 10 Vulnerabilities.
- Fundamental understanding of Active Directory administration and Windows authentication.
- Fundamental understanding of security technologies such as SIEM, IDS/IPS, web filters, two-factor authentication, and web application firewalls.
- Fundamental understanding of malware detection, analysis, exploitation, containment, and eradication techniques.
- Experience with systems analysis, including gathering requirements from stakeholders, constructing RFP/RFQs, devising and planning proof-of-concepts, defining use and test cases, driving critical security infrastructure projects, and creating cogent status reports for senior management.
- Solid analytical and problem-solving skills; ability to think strategically and turn ideas into actions.
- Familiarity with Project Management concepts.
- Familiarity with scripting languages such as Python.
- Ability to work with little supervision and consistently deliver results.
Benefits
- Competitive wages (BOE).
- Major health, dental, and vision insurance benefits, including a vision savings plan.
- 401k and basic life insurance.
- Supplemental benefits such as short-term disability, accident, cancer, and life insurance.
- Paid company holidays and earned time off.
Location
This opportunity is based in Greensboro, NC.