Security Analyst – Information Technology
Accountabilities: The Security Analyst will support cybersecurity operations by monitoring threats, improving security controls, and contributing to the ongoing protection of systems and data. Key responsibilities include:
Responding to cybersecurity threats, alerts, and incidents throughout detection, investigation, escalation, and remediation processes.
Participating in vulnerability management activities, including security scanning, analysis, prioritization, and remediation support.
Reviewing threat intelligence sources and publicly disclosed vulnerabilities to evaluate relevance, potential impact, and required actions.
Supporting security assessments, audits, and remediation initiatives across systems and applications.
Assisting with the development, maintenance, and improvement of security policies, procedures, standards, and operating processes.
Supporting phishing simulations, security awareness initiatives, and cybersecurity training activities.
Validating and tuning security controls across identity, endpoint, and cloud environments.
Supporting the implementation and improvement of security tools, technologies, and operational capabilities.
Collaborating with internal technical and business teams to assess risks and recommend mitigation strategies.
Documenting findings, investigations, and recommendations clearly for both technical and non-technical stakeholders.
Requirements:
The ideal candidate is a cybersecurity professional with experience supporting enterprise security operations and a strong understanding of modern security practices. Required qualifications and skills include:
Diploma or degree in a related technical discipline from a recognized institution.
3–5+ years of experience working in IT security and governance within a medium-to-large organization.
Practical experience with threat detection, vulnerability management, security monitoring, and incident response activities.
Knowledge of cybersecurity frameworks and best practices, including NIST frameworks.
Understanding of cloud security concepts and Microsoft 365 environments.
Experience using security and network monitoring tools to analyze activity and identify threats.
Familiarity with security operations across multiple platforms, including endpoints, networks, cloud environments, and identity systems.
Industry certifications such as Security+, SC-200, CISSP, CISM, or OSCP are considered an asset.
Strong analytical, problem-solving, and investigative skills with the ability to assess risks and determine appropriate actions.
Excellent written and verbal communication skills, with the ability to explain technical concepts to diverse audiences.
Ability to manage changing priorities, follow structured processes, and exercise sound professional judgment.
Benefits:
Fully remote work opportunity.
Competitive compensation package based on experience and qualifications.
Opportunity to work on meaningful cybersecurity initiatives that protect important services and information.
Collaborative environment with experienced security professionals and cross-functional teams.
Opportunities for professional growth and development within a cybersecurity-focused role.
Inclusive workplace culture that values diverse perspectives and employee contributions.
Opportunity to contribute to continuous improvement initiatives and innovative security solutions.
How Jobgether works: We use an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly against the role's core requirements. Our system identifies the top-fitting candidates, and this shortlist is then shared directly with the hiring company. The final decision and next steps (interviews, assessments) are managed by their internal team. We appreciate your interest and wish you the best! Why Apply Through Jobgether?
Data Privacy Notice: By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time.
#LI-CL1