Security Analyst Level I
DBM Global Inc. · Phoenix, AZ · 3 days ago
Information TechnologyFull-time
Security Analysts are responsible for ensuring the protection of the company's digital assets from unauthorized access. This includes securing both online and on-premise infrastructures, analyzing metrics and data to filter out suspicious activity, and mitigating risks before breaches occur. If a breach occurs, security analysts lead efforts to counter the attack and generate reports for IT administrators and business managers to evaluate security policy efficacy. This role also assists with testing IT General Controls for Sarbanes Oxley (SOX) compliance.
Responsibilities
- Monitor all DBMG computer networks for security issues and assist the infrastructure team in fixing detected vulnerabilities to maintain high-security standards.
- Audit activities of security administrators on various software applications.
- Perform internal and external security audits to inform business decisions on technology implementation.
- Conduct operational risk assessments (OSA) for all organizational facilities.
- Monitor software to protect systems and information infrastructure, including firewalls, proxies, SIEM, antivirus, intrusion detection/prevention systems, and data encryption programs.
- Investigate security breaches and other cybersecurity incidents to identify root causes.
- Document security breaches and assess their impact.
- Verify third-party vendors’ security standards and collaborate to meet security requirements.
- Stay up-to-date on information technology trends, security standards, and news.
- Understand information security management.
Requirements
- 3–5 years of relevant work experience.
- BS in Computer Science or related field, or equivalent experience.
- Specialized knowledge in:
- Protecting digital files and information systems against unauthorized access, modification, or destruction.
- Maintaining data and monitoring security access.
- Conducting internal and external security and compliance audits.
- Monitoring network, intrusion detection, and prevention systems.
- Analyzing security breaches and other cybersecurity incidents to determine root causes.
- Documenting security breaches and assessing damage.
- Performing tests and uncovering network vulnerabilities with the security team.
- Reviewing and maintaining corporate security policies.
- Auditing security awareness training programs.
- Coordinating security plans with outside vendors.
- Current ISC2 Certified in Cybersecurity (or must obtain within 6 months).
Skills
- Proficiency in MS Windows 10/11, MS Word, MS Excel, MS PowerPoint, MS Teams, and MS Outlook.
- Expertise in:
- Cybersecurity
- Firewalls
- Network Security
- Information Assurance
- Security Information and Event Management (SIEM)
- Application Security
- Security Architecture
- Awareness of the latest trends in cybersecurity.
Work Environment
- Hours may vary to fulfill daily and weekly obligations, including evenings and weekends as needed.
- Primarily indoors in a climate-controlled office environment.
- Physical demands:
- Constantly required to walk, sit, and stand for 8–10 hours per day.
- Frequently required to use hands and fingers for keyboard and computer work.
- Occasionally required to lift and carry computer equipment.
- Reasonable accommodations may be made for qualified individuals with disabilities under the Americans with Disabilities Act.