Vacancy caducado!
Cybersecurity Analyst – Santa Ana
Sierra Cybernetics is seeking a Cybersecurity Analyst, experienced with cybersecurity infrastructure, methodologies, and tools, to work for us in support of our City of Santa Ana client. The Cybersecurity Analyst position is located within the City’s Information Technology Department and reports to the Information Security Officer. (The Cybersecurity Analyst does not perform supervisory duties.)
This position will start as a relatively lower mid level Analyst, initially requiring hands-on administration of the City’s cybersecurity posture (infrastructure and processes), leading to acquisition of cybersecurity applications and tools, then development and implementation of cybersecurity policies, standards, guidelines, and procedures, toward transition into a Cybersecurity Officer role.
This is NOT a senior level position, but is also NOT an intern or junior position – it is a growth opportunity for an ambitious and passionate cybersecurity analyst with enough experience to take on responsibility from day one, looking to grow into a strong cybersecurity career.
This is expected to be a long-term contract assignment, fully on-site in Santa Ana. Open only to US citizens or green card holders.
Essential Duties and Responsibilities
Phase 1
1. Monitor and utilize security toolsets to identify suspicious and malicious activities and inadequate security practices across the Port’s network (e.g., analyze network traffic, vulnerability scans, identification of computer viruses, unauthorized user activity) which may compromise the integrity and availability of systems.
2. Perform Event detection & response tuning on relevant reporting and alerting systems.
3. Perform Active Threat Hunting responding to security events and initiating remediation efforts
4. Assist with incident response planning, respond and investigate cybersecurity events/incidences.
5. Writes reports for management regarding incidences and false positives.
6. Review security information and event management logs and reports, provide findings and recommendations to IM leadership.
Phase 2
7. Assist with planning and implementing cybersecurity measures to protect networking, servers, applications, and computer systems.
8. Perform risk assessments and mitigation planning.
9. Facilitate internal and external penetration testing.
10. Assist with the development and implementation of information security policies, standards, guidelines, and procedures.
11. Review designs of proposed major applications and upgrades for compliance with security policy; perform routine security audits, report findings, recommend system enhancements
Education, Skills & Desirable Certification(s)
1. 2+ years of experience in working within enterprise cybersecurity systems
2. Bachelors of Science in Computer Science or related field
3. Hold at least one of the following certifications:
a. Global Information Assurance Certification Security Essentials (GSEC);
b. CompTIA Advanced Security Practitioner (CASP+) or Security+;
c. Cisco Security Certification CCNA, or CCNA Cyber Ops
d. Other related industry accepted certification
4. Understands common protocols such as: DHCP, LDAP, SNMP, SMTP, HTTP, SSL.
5. Demonstrates strong understanding of cybersecurity concepts, best practice and tools.
Desirable Skills
1. Knowledge and experience with Security Incident and Event Management (SIEM) Systems.
2. Knowledge and experience with Intrusion Detection Systems and other alerting platforms.
3. Familiarity with enterprise networking technology.
4. Experience with anomaly detection and behavioral analytics.
5. Prior experience working in conjunction with a Managed Detection and Response (MDR) vendor would be very helpful because our client anticipates using such a service within the next year or so. But if you don’t have that experience, that’s ok if you possess most of above-mentioned qualifications.
Vacancy caducado!