IT Security Analyst

at Advanced Technology Solutions, Inc.
Location Cincinnati, OH
Date Posted April 7, 2021
Category Default
Job Type Contractor

Description

We are seeking an IT Security Analyst that will be responsible for ensuring that the Metro's digital assets are protected from unauthorized access including securing both online and on-premise infrastructures, weeding through metrics and data to filter out suspicious activity, and finding and mitigating risks before breaches occur. If a breach does occur, this position will be on the front line, leading efforts to counter the attack.

JOB DUTIES

  • Provide proactive operational responsibility for Information Security incident prevention, detection, response, and remediation
  • Responsible for the Authority's IT vulnerability management, including the use of scanning systems, reporting of vulnerabilities, and coordinating with IT Operations to remediate vulnerabilities in a timely manner
  • Responsible for the Information Security support ticket queue, ensuring timely communication and resolution of support tickets and related project work
  • Develop quality measures to assess the overall success of Information Security programs, and provide a report(s) to leadership. This includes developing and producing monthly scorecard reports on the environment's security posture
  • (Patch status, AV monitor review, OS upgrades, Audit remediation's, Vulnerability scans, etc.)
  • Conduct and manage security audits with both internal and external stakeholders and providers
  • Through proactive monitoring, identify potential gaps in IT Security controls, develop corrective action plans, and oversee and participate in remediation activities as needed. This includes continuously reviewing the environment's security architecture and providing feedback on the current state of security systems, and the feasibility and cost justification of alternative security systems
  • Monitor security access including evaluating passwords, badges, log-ins, and more as they work to keep a site or system safe
  • Support the activities of other departments as needed to ensure operating compliance with applicable government and agency regulations
  • The position will participate in regulatory compliance activities, as required
  • Provide recommendations, advice, and training to leadership and end-users on cybersecurity matters
  • Create, update, and maintain Information Security related documents, including applicable policies, standards, and procedures
  • Champion awareness and influence IT security through policies, and provide solutions for risk and compliance issues
  • On-call for IT Security related incidents
  • Identify the cause of security breaches within an organization's information systems and help to ensure it doesn't happen again
  • Plan for and coordinate the application of security-related software patches
  • Provide a positive work environment that does not discriminate based on race, color, religion, gender, sexual orientation, national origin, age, disability, genetic information, marital status, amnesty, or status as a covered veteran
  • Participate in the development of strategies to meet or exceed organizational and department performance goals and objectives, and monitor results
  • Ability to work in compliance with Metro's safety and security policies
  • Other duties as assigned

QUALIFICATIONS

  • Experience with Antivirus, Firewall's rules, and other technical skills preferred
  • Experience with regulatory requirements related to HIPAA, PCI, and others preferred
  • Experience with cloud-based environments preferred
  • Experienced in using Microsoft tools (Office, Project, Visio, etc)
  • Communications - Excellent verbal, writing, and non-verbal skills. Persuasive, consensus builder
  • Customer Focus - Excellent problem-solving skills and a desire to exceed customer expectations.
  • Professional Integrity - Exhibits and values commitment, leadership, accountability, diversity, honesty, fiscal responsibility, and the ability to maximize resources
  • Proficiency - Able to multi-task, plan and measure results, create and analyze data, excellent computer skills, accuracy and attention to detail, project management skills
  • Bachelor's Degree in Information Systems or related field, OR six (6) years of related experience
  • Certification(s) are a plus CISSP, GIAC
  • Three years related experience with a related Bachelor's degree, six years experience in a similar role
  • Strong analytical and problem-solving skills
  • Can communicate clearly and effectively with business end-users
  • Excellent written and verbal communication skills
  • Working knowledge of word processing, spreadsheets, the internet, and email
  • Office atmosphere
Drop files here browse files ...