Cyber Security Specialist
Location: Remote
Job Type: Contract to Hire
The Cyber Security Specialist provides operational support for information security tool alerts, triaging and maintenance.
Responsibilities: • Provide operational support for information security tool alerts, triaging, and maintenance. • Assess security controls and evaluate the security posture of organizational internal controls. • Monitor events and triage alerts across various security platforms. • Identify and resolve false positive findings reported by information security tools and develop playbooks for remediation of incidents between internal and external security teams. • Create the yearly security awareness program for all employees and track progress to meet compliance deadlines. • Evaluate third-party relationships for compliance with organizational security standards, assist with requests for security questionnaires, and provide analysis to stakeholders as required for vendor approval. • Assist in the design, development and implementation of security policies, guidelines, standards, and procedures to ensure company establishes and maintains compliance to identified security frameworks and best practices. • Perform audits of all systems per set schedule for adherence to internal organizational and security controls. • Work within the platform as required to maintain data as part of security, compliance and risk management. • Demonstrates and supports a culture of diversity, equity, and inclusion.
Skills: • Excellent organizational and time management skills with the ability to handle multiple projects • Strong written and oral presentation skills including answering questions from managers, clients, customers, and the general public • Ability to write reports, business correspondence, and procedure manuals • Ability to read, analyze, and interpret business periodicals, professional journals, technical procedures, and governmental regulations.
Education and Experience: • Bachelor’s degree • CISSP or other industry recognized cyber-security certification preferred. • Foundational knowledge of security and privacy-related industry standards and frameworks (e.g., ISO 27001/2, NIST 800-53, NIST CSF, PCI, HIPAA) • 1-3 years professional experience in Cyber Security. • Understanding of DevSecOps. • Understanding of network architecture. • Experience working with any of the following: – Microsoft Azure and its security components. – XDR tools and platforms, such as Secureworks’ Taegis platform. – Vulnerability management platforms, such as Tenable. – Password management tools, such as Specops, Delinea Privileged Access Management – Any Governance, Risk Management and Compliance platform.