Cybersecurity Analyst (Remote role)
State of Maine - charlotte, NC
Apply NowJob Description
Cybersecurity Analyst (Remote Role)Client Location: Augusta-MaineJob DescriptionPROPOSED JOB TITLE: Security Operation Center Analyst IIIAs a Cybersecurity Analyst III, the candidate will be responsible for vulnerabilitymanagement, cyber threat identification, evaluation, prioritization, and remediationactivities under the direction of the Cyber Security Manager. The candidate willcontinuously review existing and proposed protections to State of Maine systems, networks,and software designs, and is responsible for analyzing, logging alerting data, identifying,and escalating potential security events. The Cyber Security Analyst will partner withbusiness users to support the integration of cybersecurity protections into businessoperations and will act as a key member of the Vulnerability Management team.PRIMARY RESPONSIBILITIES:• Deploy, manage, and maintain enterprise Cybersecurity toolsets• Review new systems such as networks and software designs for security risks,recommending mitigations or countermeasures, and resolving integration issues.• Have current and complete knowledge on the Vulnerability Management program toinclude having Application Scanning experience and an understanding ofenvironmental best practices.• Be emersed in industry best practices and standards such as: Vulnerability LifeCycle, OWASP Top 10, NIST, CISA, SANS, CVSS Scoring.• Develop, manage, and measure metrics to understand the trends, quality, andinsights from the vulnerability results to facilitate business decisions, automationdevelopment, and update of executive dashboards, reports, and templates.• Assist team members with ticket queue management by taking responsibility for anddelegating tickets to the team.• Provide a cybersecurity partnership with the business to ensure properimplementation of protections toward current and future projects.• Under direction and per procedures, perform required tasks and coordinate with ITand Vulnerability Management team and SOC team members.• Coordinate architecture and engineering activities with other IT teams as well asinternal organizations in an efficient and professional manner. Lead vulnerabilitymanagement efforts in the detection, triage, tooling expansion, data aggregation andreporting processes, tooling, and automation.Develop cross-functional team relationships to become trusted point of contact andliaison for inquiries, subject matter expert coordinating all issues, capability gaps,and enhancement requests in the product.• In this role, this position will assist the Security Operations Center in maturing anddeveloping a vulnerability program.• This individual will work with key stakeholders to establish vulnerability and patchmanagement practices to ensure the execution of these functions tighten the securityposture within the State of Maine.• Fill in other security functions as directed by the Security Operations CenterManager.• Uses a reactive approach to security that focuses on prevention, detection remediations of vulnerabilities.MINMUM QUALIFICATIONS:Years of Relevant Experience: 10 years of information security experience, with a focus onrisk analysis, vulnerability assessment, and security testing within an enterpriseenvironment. The ideal candidate will have knowledge of Windows or Linux systems andtheir associated scripting (PowerShell, python, bash) languages, experience with AWS orAzure cloud environments, and will have worked with vulnerability and manual testingfollowing OWASP Top 10 products such as Tenable Nessus, Rapid 7 InsightVM, HCL AppScan, MDVM, Qualys, Burp Suite, ZAP or similar. The ideal candidate will have experience inboth application scanning and device vulnerability management procedures.Preferred Education: 4-year college degree in computer science or a related field withadvanced study preferred; One or more relevant technical security certifications are aplus (GIAC, ISC2, CompTIA, EC Counsil, etc.)
Created: 2024-11-06