Information Security Analyst

atGifthealthRemoteUS flagOhioFull-timeSecurity AnalystJuniorMid-level$73k – $86k/year

Posted 1 day ago

This is a fully remote position, open to applicants in Ohio.

📋 Description

• Oversee and analyze security alerts from various sources including endpoint, identity, email, cloud, and other security technologies.

• Conduct initial triage and investigation of potential security incidents.

• Escalate security events based on their severity and incident response protocols.

• Assist in containment, remediation, recovery, and follow-up activities post-incident.

• Keep detailed records of security investigations, findings, and actions taken in response.

• Create and maintain procedures and playbooks for incident response in security.

• Engage in security drills and tabletop exercises.

• Analyze vulnerability scans and prioritize issues based on severity, exploitability, asset importance, and business risk.

• Collaborate with IT, Engineering, Infrastructure, and system owners on vulnerability remediation.

• Monitor vulnerabilities through their remediation, mitigation, or approved risk acceptance.

• Verify remediation efforts and identify ongoing vulnerability patterns.

• Manage and supervise endpoint detection and response, email security, identity security, and related platforms.

• Investigate suspicious activities related to endpoints, authentication, phishing, and email.

• Enhance and maintain security monitoring and detection capabilities.

• Review logs and security telemetry during investigative processes.

• Develop or optimize detection rules and alerts, identifying security visibility gaps.

• Partner with managed security providers and vendors when necessary.

• Document security activities through ticketing and workflow systems.

• Conduct security reviews of new software, tools, and vendor requests, recording findings in the vendor risk register.

• Maintain operational security metrics and dashboards.

• Document recurrent security processes and procedures.

• Assist in security audits, assessments, and compliance activities, providing technical evidence.

• Identify automation opportunities for repetitive security tasks.


⛳️ Requirements

• Bachelor’s degree in Computer Science, Cybersecurity, or a related field is preferred; practical experience will also be considered.

• 2 to 4 years of practical experience in operating and fine-tuning security tools in a live production setting.

• Knowledge of endpoint security, identity and access management, vulnerability management, phishing and email security, network security, incident response, and security logging and monitoring.

• Experience in investigating technical security issues across Windows, macOS, Linux, cloud platforms, or enterprise SaaS environments.

• Ability to interpret logs, alerts, vulnerabilities, and other technical security information.

• Excellent documentation and communication abilities.

• Preferred experience with EDR/MDR, vulnerability management, and email security platforms like SentinelOne, Tenable, or Proofpoint.

• Preferred experience with identity and SSO platforms such as Okta and AWS or other public cloud solutions.

• Preferred familiarity with security frameworks or regulatory standards such as NIST, CIS Controls, SOC 2, PCI DSS, or HIPAA.

• Preferred knowledge of scripting or automation using Python, PowerShell, APIs, or similar technologies.

• Preferred familiarity with GRC or IT service management platforms like Vanta and Freshservice.

• Security+, CySA+, GSEC, SSCP, or equivalent experience is preferred.

• Must be capable of working at a computer for extended durations.

• Must possess effective verbal and written communication skills.

• Must be able to handle and access sensitive security and system data in accordance with organizational data handling policies.

• Must be available to respond to security incidents outside of regular working hours when necessary.


🏝️ Benefits

• Full-time employment.

• Standard business hours.

• Opportunity to collaborate with Security, IT, Engineering, and other business teams.

• Equal employment opportunity within an inclusive work environment.

People also viewed

Positivo S+1 day ago

Information Security Analyst, Mid-Level

BR flagBrazil OnlyFull-timeSecurity Analyst
ApplyView job
ShorePoint Inc1 day ago

Security Compliance Analyst

US flagVirginia OnlyFull-timeSecurity Analyst
ApplyView job
General Dynamics Information Technology1 day ago

Security Compliance Analyst

US flagUnited States OnlyFull-timeSecurity Analyst$96.6k – $130.7k/year
ApplyView job
General Dynamics Information Technology2 days ago

Cyber Security Analyst – SME

US flagUnited States OnlyFull-timeSecurity Analyst$127.5k – $172.5k/year
ApplyView job
USG2 days ago

Identity and Access Security Analyst

US flagUnited States OnlyFull-timeSecurity Analyst$125k – $135k/year
ApplyView job
ClickCannabis2 days ago

Cybersecurity Analyst

BR flagBrazil OnlyFreelanceSecurity Analyst
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers