POSITION SUMMARY
The IT Security Analyst will be responsible for the development, maintenance, and troubleshooting of endpoint detection and response (EDR) products, as well as overseeing network security policies and related firewall configurations. This role ensures the security of all production and non-production endpoints, maintaining their configuration to guard against external threats. The position requires a strong understanding of proactive security measures, endpoint security technologies, and threat monitoring. Strong analytical and decision-making skills are essential, along with the ability to manage endpoint security tools, participate in cross-functional technical sessions, and adhere to change and configuration management principles.
The IT Security Analyst works independently with guidance and reporting responsibilities to management as needed or required.
ESSENTIAL JOB FUNCTIONS
-
Experience operating platforms used for threat detection and incident response (e.g., Arctic Wolf).
-
Experience configuring, managing, and optimizing firewall security policies (e.g., Palo Alto).
-
Create, modify, test, and deploy rules specific to asset type (i.e. database servers, application servers, workstations, etc.).
-
Monitor and analyze network traffic to identify potential security threats and vulnerabilities.
-
Create content filters, rules, dashboards, and reports for quick reference.
-
Ability to identify security risks and weaknesses and provide immediate security mitigation.
-
Document knowledge base articles for information on the functionality, processes and procedures related to the supported tools.
-
Identify and implement automation of repetitive tasks.
-
A strong working knowledge of network protocols.
-
Develop and report enterprise level metrics for endpoint security controls.
-
A desire to learn, combined with a collaborative work style and strong personal work ethic.
-
Tuning and upgrading security tools following change management processes.
-
Serve as Tier 2 escalation within the Technology team. Responds to escalation of support desk requests from level one Technology support.
-
Stay updated on emerging trends, technologies, and best practices in endpoint security. Proactively identify opportunities for optimization and enhancement of our security infrastructure to meet evolving business needs.
-
Required to participate in First Source events as well as designated Community events.
-
Required to attend or participate in necessary compliance training, including but not limited to Bank Secrecy, OFAC, and Privacy.
-
Required to attend training sessions as appropriate.
-
Required to travel as needed.
-
Must be available for after-hours and on-call support.
-
Performs other duties and special projects as assigned.
UNIVERSAL BEHAVIORS
Knowledgeable and Experienced
-
I promise to take personal ownership for learning and using that knowledge to provide value to those that I serve by:
-
Looking for answers until I find them.
-
Seeking opportunities to learn from others.
-
Appreciating and respecting others views.
-
Acknowledging mistakes and learning from them.
-
Going out of my way to share my knowledge and experience.
Striving for Operational Consistencies
-
I promise to make it easy for you through consistency, efficiency, and accuracy by:
-
Doing it right the first time, being thorough and accurate.
-
Taking pride and ownership in my work
-
Making and keeping commitments.
-
Continuing to look for better ways to do things and challenging the status quo.
Rewarding Work Environment
-
I promise to show care, compassion, and respect toward everyone I interact with by:
-
Being approachable and accessible to others.
-
Creating a pleasant work environment for each other.
-
Always asking what more I can do.
-
Resolving differences promptly
-
Recognizing the contributions of others.
-
Embracing diversity in the workplace.
Committed to Member Service
-
I promise to deliver exceptional member service by:
-
Interacting with a natural and genuine friendliness.
-
Being courteous and respectful.
-
Creating a welcoming environment.
-
Exceeding your expectations.
-
Sharing the moment and finding common ground.
QUALIFICATIONS, SKILLS AND EXPERIENCE
-
BS or higher in a technical field or equivalent work experience required
-
At least 3 years in IT security or a related field, with expertise in endpoint security, firewall management, and network traffic analysis preferred.
-
Preferred certifications: CompTIA Net+, CompTIA Security +, Cybersecurity Analyst, CISSP
-
Preferred experience with Arctic Wolf or a comparable EDR
-
Familiarity with endpoint security concepts and tools.
-
Excellent communication and organizational skills
-
Demonstrates effective problem-solving skills and possesses strong attention to detail
-
Ability to take direction and operate independently and confidently
-
A professional appearance and ability to work flexible hours
-
Makes efficient use of work time and prioritizes workload efficiently