Aultman Health Foundation - Canton, OH

posted 5 months ago

Full-time
Canton, OH
Ambulatory Health Care Services

About the position

The Cybersecurity Analyst position at Aultman Health Foundation is a critical role responsible for providing first-level frontline technical support and ensuring the cybersecurity of the organization's server production and development domains. Cybersecurity is a top priority for Aultman, and the ideal candidate will possess a strong background in various cybersecurity systems, including Security Information and Event Management (SIEM), Endpoint Detection and Response (EDR), Managed Detection and Response (MDR), Security Orchestration Automation and Response (SOAR), and Incident Response. The role requires experience in IT Infrastructure, particularly in configuring, troubleshooting, maintaining, supporting, and upgrading servers, as well as deploying, implementing, and enhancing security protocols within a Windows environment. In this position, the Cybersecurity Analyst will work closely with Tier 1 and Tier 2 support personnel to troubleshoot desktop and server relationship issues. Proactive monitoring of servers for abnormal behavior is essential, as is the monitoring of EDR/MDR for alerts related to malicious activity. The analyst will participate in Incident Response efforts surrounding these alerts and assist in the quality assurance testing and integration of new server and desktop software as needed. Additionally, the role involves securing the Office 365/Azure environment, planning and deploying application updates or security hardening through SCCM/SCEM, and handling Active Directory, DNS, and IIS administration. The Cybersecurity Analyst will also be responsible for identifying and remediating vulnerabilities using common security tools, understanding threat actors and vectors, and analyzing indicators of compromise. The role requires the ability to troubleshoot security issues, experience with cloud/hybrid security, and familiarity with Public Key Infrastructure (PKI). The analyst will also assist in implementing threat mitigation strategies using SOAR systems to automate tasks and will be involved in various other projects and duties as assigned.

Responsibilities

  • Work with Tier 1 and Tier 2 support personnel in troubleshooting desktop/server relationship issues.
  • Proactively monitor servers for abnormal behavior.
  • Monitor EDR/MDR for alerts around malicious activity and participate in Incident Response around alerts.
  • Participate in QA testing and integration of new server and desktop software as needed.
  • Assist in securing Office 365/Azure environment.
  • Assist with SCCM/SCEM planning, setup, deployment of application updates or security hardening.
  • Handle Active Directory, DNS and IIS administration.
  • Identify, understand impact, and remediate vulnerabilities using common security tools.
  • Understand threat actors and vectors and how to mitigate common vectors.
  • Analyze indicators of compromise and know how to perform threat hunting in SIEM, EDR, and NDR systems.
  • Assist with implementation of mitigating threats using SOAR systems to automate tasks.
  • Ability to troubleshoot security issues.

Requirements

  • Associates or Bachelor's Degree in Computer Science, Computer Engineering, Cybersecurity or related field or equivalent experience.
  • 3-5 Years of experience in Cybersecurity.
  • Experience in vulnerability management, security assessment, security awareness, and identity access management systems.
  • Experienced in creating and maintaining documentation.
  • Strong communication and customer service skills.

Nice-to-haves

  • Certification in MCSA, CompTIA Server+, MCSA: SQL Server, CISSP, CISA preferred but not required.
  • Experience with Exchange server administration, SCCM administration, Citrix administration.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service