Quick Overview
Job Description
Job Description
The Cybersecurity & Information Security Analyst is responsible for the day-to-day cybersecurity operations that protect primeFORCE and primeARCHIVE systems, infrastructure, applications, and information. This position is the hands-on technical resource for security monitoring, incident response, vulnerability management, and access administration, and executes the operational tasks that support the company’s broader information security and compliance program.
Essential Duties and Responsibilities:
- Monitor, maintain, and support cybersecurity controls protecting primeFORCE corporate systems, primeARCHIVE infrastructure, endpoints, servers, applications, networks, and cloud services.
- Monitor security alerts, logs, endpoint activity, authentication events, network activity, and other security-relevant events and escalate potential security incidents as appropriate.
- Support the administration and ongoing management of endpoint security, EDR/NGAV, SIEM, vulnerability management, MFA, identity and access management, firewalls, and other security technologies.
- Investigate suspected security events and incidents; document findings, actions taken, evidence collected, and recommended remediation.
- Assist with incident response activities, including initial triage, investigation, containment, recovery, documentation, and post-incident corrective actions.
- Perform or coordinate periodic vulnerability assessments and assist with remediation tracking and validation.
- Identify security weaknesses and risks within systems, applications, and configurations and recommend appropriate corrective actions.
- Support secure configuration and hardening of Windows, Linux, network, application, authentication, and other infrastructure components.
- Monitor and review user accounts, privileged access, MFA, authentication controls, access provisioning, and least-privilege practices.
- Assist with periodic access reviews and certification of privileged and other security-sensitive accounts.
- Help maintain security policies, procedures, standards, technical controls, and supporting documentation as directed by the Information Security Manager.
- Gather and organize evidence requested by auditors, assessors, or the Information Security Manager in support of SOC 2, GDPR, and other compliance assessments.
- Assist with drafting responses to customer security questionnaires and technical security inquiries in coordination with management.
- Maintain accurate security documentation, system inventories, security diagrams, procedures, and incident records.
- Research emerging cybersecurity threats, vulnerabilities, technologies, and best practices and make recommendations to management.
- Work with engineering and technical services personnel to implement security improvements and remediate identified vulnerabilities.
- Assist with security requirements associated with new systems, applications, infrastructure changes, vendors, and customer implementations.
- Participate in security-related projects and initiatives and help ensure projects meet established security requirements before production implementation.
- Provide security guidance and support to internal personnel when security issues or questions arise.
- May participate in after-hours incident response or emergency security activities when required.
- Other duties as assigned.
CYBERSECURITY OPERATIONS & REQUIRED EXPERIENCE
• Hands-on experience monitoring and responding to cybersecurity alerts and security events.
• Experience with endpoint detection and response (EDR) or endpoint security platforms; CrowdStrike experience is strongly preferred.
• Experience with SIEM platforms, centralized logging, security event monitoring, or related technologies.
• Experience performing vulnerability assessments, reviewing vulnerability reports, prioritizing findings, and coordinating remediation.
• Working knowledge of network security concepts, including firewalls, VPNs, segmentation, IDS/IPS, TCP/IP, DNS, DHCP, and common network protocols.
• Working knowledge of Microsoft Windows Server, Windows endpoints, Active Directory/Entra ID, Microsoft 365, and identity and access management.
• Familiarity with Linux systems and basic Linux administration.
• Experience with MFA, privileged access, least-privilege access, account provisioning, and access reviews.
• Understanding of encryption, secure authentication, endpoint protection, patch management, logging, monitoring, and security hardening.
primeFORCE offers expert consulting and leading technologies to help organizations optimize workforce software and benefits.
Company Description
Similar jobs
- SA
Cyber Engineer with Security Clearance
NewSAIC
Crane, IN🇺🇸Hybrid13 hours agoTechnology - SA
Senior Principal Cyber Engineer with Security Clearance
NewSAIC
San Diego, CA🇺🇸$160.0k - $200k/yrOn-site13 hours agoPythonC++PowerShell+7Technology - SA
Information Systems Security Engineer (ISSE) Architect with Security Clearance
NewSAIC
Springfield, VA🇺🇸$80.0k - $120k/yrOn-site13 hours agoSQLSQL ServerEncryption+3Technology - SA
Offensive Security Engineer with Security Clearance
NewSAIC
Chantilly, VA🇺🇸$160.0k - $200k/yrOn-site13 hours agoTechnology - SA
Cybersecurity Analyst with Security Clearance
NewSAIC
Fayetteville, NC🇺🇸Hybrid13 hours agoSplunkPowerShellPythonTechnology - SA
Cybersecurity Specialist with Security Clearance
NewSAIC
Fort Belvoir, VA🇺🇸$120.0k - $160k/yrHybrid13 hours agoTechnology