Information Security Analyst - Web and Email Security
Motion Recruitment · Charlotte, NC · 1 wk ago
HybridContract
About the Role
Long-term contract opportunity for an Information Security Analyst with a well-known Financial Services Company. This hybrid position is available in Charlotte, NC or Irving, TX and offers a competitive benefit package. Contract Duration: 18+ Months.
Required Skills & Experience
- 3+ years of experience in Information Security, Cybersecurity Operations, Risk Management, or a related field
- Knowledge of web security, email security, SaaS security, or cloud security concepts
- Experience analyzing security events, logs, reports, and operational data
- Understanding of cybersecurity frameworks, security controls, and risk management practices
- Strong analytical, problem-solving, and investigative skills
- Experience creating reports, dashboards, and security metrics
- Excellent written and verbal communication skills
- Ability to manage multiple priorities in a fast-paced environment
Responsibilities
- Security Operations & Administration: Monitor and administer web and email security technologies, including secure web gateways, web proxies, content filtering platforms, email security controls, and cloud security monitoring tools. Analyze security events, alerts, and trends to identify emerging risks, policy violations, or operational concerns. Perform investigations related to web access, email security, SaaS application usage, and policy exceptions. Support incident response activities involving web, email, or cloud-based threats.
- Control Execution & Governance: Execute and validate key security controls in accordance with documented procedures and regulatory requirements. Perform periodic reviews of web proxy policies, email security rules, entitlement access, and content filtering configurations. Support evidence collection, documentation, and reporting activities for audits, risk assessments, and control testing. Maintain control documentation, standard operating procedures, and security knowledge articles.
- Risk Assessment & Analysis: Conduct security reviews of business requests involving internet access, email capabilities, third-party applications, and cloud technologies. Assess risks associated with requested exceptions and recommend appropriate mitigating controls. Identify gaps in security posture and develop recommendations to improve effectiveness and operational efficiency.
- Metrics, Reporting & Communications: Develop and maintain operational metrics, dashboards, and executive reporting. Analyze security performance indicators and communicate findings to stakeholders. Prepare concise summaries, documentation, and presentations for leadership, audit, and risk management audiences. Track remediation activities and provide status updates on security initiatives and control health.
- Collaboration & Continuous Improvement: Partner with engineering teams to support implementation of new security capabilities. Participate in user acceptance testing, change management reviews, and solution deployments. Recommend process improvements, automation opportunities, and operational efficiencies. Support strategic initiatives within Web & Email Security and broader Cybersecurity program.
Preferred Qualifications
- Experience with secure web gateways, web proxies, content filtering, CASB, Microsoft 365 security services, or cloud security technologies
- Knowledge of email security controls, phishing mitigation techniques, and data loss prevention concepts
- Experience supporting audits, compliance reviews, or regulatory examinations
- Professional certifications such as Security+, CISSP, CCSP, GSEC, or equivalent