Metro Assoc - Danbury, CT

posted 7 days ago

Full-time - Mid Level
Danbury, CT

About the position

The Information Security Analyst position is a critical role focused on safeguarding the company's information systems, including both on-site and cloud applications. This hands-on position requires a strong background in infrastructure and cybersecurity, where the analyst will implement and maintain security protocols, respond to technical security issues, and ensure compliance with security standards. The role involves collaboration with IT teams, conducting security audits, and managing vulnerability assessments to protect the organization from potential threats.

Responsibilities

  • Implement and oversee the Center for Internet Security (CIS) Controls to ensure robust security protocols.
  • Develop, manage, and audit security measures to prevent breaches and manage risks across information systems.
  • Perform regular security audits to ensure compliance with standards.
  • Apply AI technology in data protection strategies to strengthen data security.
  • Partner with IT teams to incorporate security practices in the development lifecycle.
  • Provide training and guidance on cybersecurity best practices to IT staff.
  • Keep up-to-date with cybersecurity trends and technology advancements.
  • Assist in updating and maintaining the System Security Plan (SSP).
  • Develop, configure, and maintain controls such as firewalls, data leakage protection systems, patching, encryption, vulnerability scanning, and remediation.
  • Identify and close security gaps identified through ongoing monitoring.
  • Manage vulnerability assessments, categorize risks, and apply remediation steps through to resolution.
  • Oversee patch management for servers and endpoints.
  • Maintain ongoing relationships with the Managed Security Services Provider.
  • Participate in cybersecurity projects to ensure timely delivery and compliance with the company's protection requirements.
  • Serve in an on-call rotation for emergency events related to outages or cyber events.

Requirements

  • Bachelor's degree in Information Technology, Compliance, Information Management, Infrastructure, Information Security, or related fields.
  • 5 to 7 years of experience in Cybersecurity, Information Systems, or similar roles.
  • Strong analytical skills developed through training in Cybersecurity or Information Systems.
  • Hands-on experience with Rapid7 and NextGen AV systems.
  • Skilled in running AI models for security applications.
  • Proficiency with frameworks such as CIS Framework and NIST for security implementations and audits.
  • Experienced with network administration, including firewalls, VPN, SIEM, DLP, antivirus, IDS/IPS, and network security.
  • Knowledge of security best practices, including encryption, vulnerability scans, intrusion prevention, eDiscovery, and content filtering.
  • Proven ability in vulnerability management, proposing and implementing solutions.
  • Experience in cloud security (AWS, GCP, or Azure).
  • Previous experience with SIEM, identity access management (IAM), configuration management, and vulnerability scanning.
  • Prior exposure to HIPAA and FDA-regulated environments is preferred.

Nice-to-haves

  • Experience in a regulated manufacturing environment, with preference for candidates familiar with HIPAA and FDA compliance.

Benefits

  • 401(k)
  • Dental insurance
  • Health insurance
  • Relocation assistance
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service