Quick Overview
Job Description
Role: IT - SCDMV - Security Analyst - Entry
Location: Blythewood, SC (Onsite)
Duration: 12+ months
Job Description:
Interview Process: 1 - 2 Round of Onsite Interviews
Work Location: Fully Onsite - NO flexibility for hybrid or remote work
Scope of the project:
Daily Duties / Responsibilities:
The DMV Security Team is looking for candidates to fill an entry level security position. The DMV will train the selected candidate to perform the tasks listed below.
At a minimum We are looking for basic server or network administration skills that we can build upon.
Threat Intelligence Research:
- Monitor and analyze threat intelligence feeds to identify emerging threats relevant to the organization.
- Document findings, such as new attack methods or vulnerabilities, and share with the team.
- Use open-source intelligence (OSINT) tools to gather data on potential risks and adversaries.
Threat Hunting and Detection Rule Creation:
- Conduct proactive searches for suspicious behavior in network and endpoint activity using provided tools and playbooks.
- Utilize threat feeds, investigate suspicious activity, and stay current on cyber threats.
- Collaborate with senior analysts to refine and test detection rules (e.g., SIEM queries or Defender for Endpoint rules).
- Document hunting methodologies and findings to support continuous improvement.
Log Analysis:
- Review and interpret logs from firewalls, endpoints, and servers to identify indicators of compromise (IOCs).
- Escalate findings, such as anomalous IP addresses or unauthorized access attempts, to senior analysts.
- Maintain a log of recurring patterns or anomalies for long-term tracking and analysis.
Incident Response:
- Assist in initial triage of security incidents by following response frameworks (e.g., NIST, MITRE Telecommunication &CK).
- Identify and escalate potential security threats.
- Gather and analyze relevant evidence, such as logs or alert data, to determine the scope and severity of incidents.
- Document findings during incidents and contribute to containment and remediation efforts.
Documentation, Reporting, and Communication
- Create clear, detailed reports, including incident reports, after-action reviews, and process documentation.
- Deliver reports on the security posture and propose mitigation strategies.
- Draft training materials or guides to help improve organizational awareness and readiness.
- Regularly update and organize documentation to ensure accuracy and accessibility for team use.
Vulnerability Management:
- Analyze reports, prioritize patching, and understand NIST best practices.
Security Awareness Training:
- Develop and deliver training and assess employee awareness through simulations.
Security Automation and Scripting:
- Leverage SCCM, GPO, and PowerShell for patch deployment.
- Automate tasks beyond SCCM, GPO, and PowerShell to increase efficiency.
Endpoint and Network Security:
- Configure policies, analyze alerts, and manage endpoint protection.
- Understand network protocols and firewalls to strengthen the overall security posture.
Digital Forensics and Cloud Security:
- Investigate security incidents and collect evidence for deeper analysis.
- Develop knowledge of cloud-specific security solutions as cloud adoption grows.
Required Skills (rank in order of Importance):
- Understanding of security concepts and processes
- Understanding of basic computer and network concepts
Preferred Skills:
- 1+ Year of Experience in an IT Security Focused Role
- Experience with SIEM and Endpoint Security Tools
- Experience with PowerShell, Group Policy, and Endpoint Management
- Knowledge of Vulnerability Management and Cloud Security
- Bachelor s degree in information technology, Computer Science, Cybersecurity, or a related field
- 1+ Years of Experience in Server or Network Administration
Additional Skills:
- Problem-Solving: Analyze data, identify anomalies, and recommend solutions.
- Attention to Detail: Ensure accurate analysis and configuration for effective security measures.
- Ability to communicate and work effectively with a mid-size team
Required Education and experience:
- A High School Diploma is required at minimum
Certifications: Not required, however we prioritize applicants who have:
- GIAC Security Essentials (GSEC)
- Security+ (CompTIA)
- Network+ (CompTIA GIAC Incident Handler (GCIH)
Similar jobs
- JM
AI Tech Risk & Controls Lead
NewJ.P. Morgan
Palo Alto, California🇺🇸On-site9 minutes agoRisk ManagementFinance - AT
Security Engineer
NewAivanta Tech Inc
Seattle, WA🇺🇸Hybrid17 hours agoMicroservicesBashLLM+2Technology - SO
Senior Vulnerability Management Analyst
NewSystem One
Birmingham, Alabama🇺🇸Hybrid31 minutes agoAWSComplianceMicrosoft Excel+2Technology - AO
Cybersecurity Lead
NewAmerican Operations Corporation
Montgomery, Alabama🇺🇸Hybrid35 minutes agoAgileZero TrustTechnology - VE
Security Software Engineer, IAM
NewAuto ApplyVercel
Remote - United States🇺🇸$208k - $312k/yrRemote10 hours agoGCPNode.jsAWS+9Technology - TN
Senior Engineer, Cybersecurity
NewAuto ApplyThe New York Times
New York🇺🇸Hybrid1 hour agoGCPPackerAWS+7Technology - ST
Security Analyst
NewAuto ApplyStripe
US Remote🇺🇸Remote3 hours agoGCPSQLAWS+5Technology - VC
IT Security Specialist Threat & Intrusion Detection
NewVST Consulting, Inc
Addison, TX🇺🇸$80/hrOn-site17 hours agoSplunkActive DirectoryApacheTechnology - SY
Penetration Engineer only w2
NewSymphony Corporation
Dallas, TX🇺🇸Hybrid17 hours agoEngineering - MC
Security Engineer (Product & Business Enablement)
NewAuto ApplyMariner Careers
United States🇺🇸Remote8 hours agoEncryptionLESSOnboarding+1Technology - LA
Staff Security Architect
NewAuto ApplyLambda
Bellevue Office🇺🇸Hybrid1 hour agoEncryptionMachine LearningSOC 2+7Technology - GT
Asset Protection Specialist (Part Time), Carson City (Clearview)
NewAuto ApplyGreen Thumb
Carson City🇺🇸Hybrid3 hours agoBackground ChecksComplianceHIPAA+4