Information Security Administration II/HYBRID
MSC - Davidson, NC
Apply NowJob Description
BUILD A BETTER CAREER WITH MSC Serving customers and our community starts with the best people doing their best work. That is precisely what we have created at MSC Industrial Supply Co. We are a leading North American distributor of metalworking and maintenance, repair, and operations (MRO), products and services. We offer more than 2 million products and have over 80 years of experience across dozens of industries. We aim to execute our Built to Make You Better brand promise for all our stakeholders, including our associates. Requisition ID :17154Employment Type :Full TimeJob Category :Digital / ITWork Location :Davidson, NC (CSC)Applicants must be authorized to work in the U.S. At this time, we are unable to sponsor or take over sponsorship of an employment Visa for this position.BRIEF POSITION SUMMARY: The Information Security Admin II position is responsible for detecting and assessing security events and incidents across the MSC environment. The Security Admin II works among a team of skilled technicians to address complex or difficult problems as needed within a 24x7 environment. The Admin II is also responsible for implementing new processes and procedures as identified by the Security Leadership Team to ensure the continuous improvement to monitoring, detection and mitigation capabilities.DUTIES and RESPONSIBILITIES:Manage and administer corporate firewalls Monitors security incident and event management (SIEM) and logging environments for security events and alerts to potential (or active) threats, intrusions, and/or compromisesAssists with triage of service requests from customers and internal teamsEscalates cyber security events according to MSC Incident Response PlanAssists with containment of threats and remediation of environment during or after an incidentDocuments event analysis and writes comprehensive reports of incident investigationsCollaborate with technical teams to identify, resolve, and mitigate eventsParticipate in security projects, collaborating with IT peers to implement security tools and processesAdminister systems which provide security services within the MSC network and Windows environment: Antivirus, IDS/IPS, deception technology, SIEM, Patching, vulnerability scanning, etc.Ability to parse large volumes of data and identify malicious activity within proxy, firewall, and network data. Monitor the company's networks to keep an eye out for any security breaches and investigate it if one does occur.Research the latest in information technology security trends to keep up to date with the subject and use the latest technology to protect information.Identify new way to combine disparate cyber security data to create new detections and alerts.Understand and appropriately use development skills to automate process when appropriate.Participate in technical and non-technical projects requiring information security oversight and to ensure policies, procedures and standards are followed.Provide responses and action plans to external security assessmentsRecommend security improvements and coordinate with systems owners to implementDevelop reports and metrics for management and remediation teamsPartner with Risk and Internal Audit Compliance teamsConsult with different teams on strategic initiatives as well as highly technical projects that have regulatory concernsEvaluate project initiation documentsEnsure representation in change management meetingsKnowledge and use of security tools, Vulnerability scanning, File Integrity Monitoring, Firewalls, SSL Certificate management, etc.Understanding of current threats and exploits to include experience with threat remediationIdentifies new security threats by conducting penetration testing, log analysis and vulnerability assessments; evaluates, recommends, and performs procedures used to mitigate risks.Participates in the development of software and network security procedures and guidelines on information security.Assess the impact caused by theft, destruction, alteration, or denial of access to critical information and services.Fosters the MSC Culture in the department and throughout the company to ensure fulfillment of MSC's vision and unity of purpose.Participation in special projects and performs additional duties as required.EDUCATION and EXPERIENCE:Bachelor's Degree in related field and/or 2-4 years of experience in Information and Network Security, 6 years overall IT experienceWeb-application firewall (WAF) and corporate firewall management experience Strong technical, analytical, interpersonal, communication and writing skills.Basic understanding of fundamental security and network concepts (Operating systems, intrusion/detection, TCP/IP, ports, etc.)Willing to work in a team-oriented 24/7 SOC environment; flexibility to work on a rotating scheduleExperience with malware analysisMust have experience writing technical documentationStrong understanding of front-end, middleware, backend of applications.Expert knowledge of using Microsoft Office.CISSP, CISM, CISA, Security+ or other major Information Security certification is preferredSKILLS:Ability to build strong Partner relationships with peer technology groups and supported Line of Business Strong interpersonal skills.Ability to manage multiple tasks in parallel.Thorough understanding of large-scale environmentsSituational AnalysisHigh sense of ethicsProcess-oriented individual with strong attention to detail, and strong organizational skills.Excellent, detail-oriented writing skills.Ability to maintain the highest level of confidentialityExcellent interpersonal, written, and oral communication skillsGood knowledge of system hardening and secure configurationA desire for continuous improvement.OTHER REQUIREMENTS:A valid driver's license and the ability to travel up to 5% of the time are required.This position may require access to International Traffic in Arms Regulations Information ("ITAR") and/or Controlled Unclassified Information ("CUI").Compensation starting at $73430 - $115390 depending on experience.The salary range represented is based on similar roles in comparable industries, and the cost of labor in respective cities. Actual compensation is based on the candidate's relevant experience, education requirements and peer pay equity. The Company reserves the right to modify the range as market conditions change. #LI-Hybrid WHY MSC?People. Collaboration. Insight. That's how you build something that works. Built on a foundation of trust, MSC works side by side with our customers to help them drive business results. With more than one million product offerings and 80+ years of experience across industries, MSC strives to help our customers achieve greater productivity, profitability, and growth through inventory management and other innovative supply chain solutions. We care about our associates and have programs in place to help our 6,500+ team members achieve their potential. OUR COMMITMENT TO YOUOur associates are our top priority and investing in their well-being is one way we execute our Built to Make You Better brand promise. Alongside competitive pay, we have a comprehensive benefits program to support you and your family's health, well-being and financial future. We offer dynamic healthcare plans, generous 401K and stock purchasing programs, tuition reimbursement opportunities, and paid time away for holidays, vacations, and illness. Visit our page for a better look at our extensive benefits: Your Future Benefits. You will also have the opportunity to join our Associate Inclusion Circles: Women, Pride, Black, Generational, Veterans, HOLA, and Able. These circles are open to all associates and are designed to promote awareness, collaboration, and respect. EQUAL EMPLOYMENT OPPORTUNITY STATEMENT At MSC, we are committed to providing an environment of mutual respect where equal employment opportunities are available to all qualified applicants and our associates without regard to race, color, religion, age, sex, national origin, disability, protected veteran status, sexual orientation or any category protected by applicable law. Accommodation requests can be made at any stage of the recruitment process; applicants are asked to make their needs/requirements known. PandoLogic. , Location: Davidson, NC - 28035
Created: 2025-04-27