Role purpose:
The IT Security Analyst plays a critical role in safeguarding an organization’s IT systems, networks, and data from cyber threats. This role involves implementing security measures, monitoring vulnerabilities, and responding to incidents to ensure the organization’s digital assets are protected.
Key responsibilities:
- Deploy, configure, and manage security tools such as firewalls, antivirus software, and intrusion detection systems (IDS/IPS).
- Implement security protocols and policies to protect data and systems.
- Monitor networks and systems for potential security breaches or anomalies.
- Utilize SIEM tools to analyze logs and alerts, investigating suspicious activities.
- Act as the first responder for cybersecurity incidents, including detection, containment, and eradication.
- Conduct post-incident reviews to identify root causes and implement preventive measures.
- Perform vulnerability assessments and penetration testing to identify security gaps.
- Work with IT teams to prioritize and remediate vulnerabilities.
- Ensure the organization complies with relevant security standards and regulations (e.g., GDPR, PCI-DSS, ISO 27001).
- Maintain detailed documentation of security policies, incidents, and procedures.
- Conduct regular training sessions to educate employees about cybersecurity best practices.
- Promote awareness of phishing, social engineering, and secure data handling.
- Collaborate with IT teams to design and implement secure infrastructure solutions.
- Liaise with external vendors and auditors to assess and improve security measures.
Qualifications:
- Bachelor’s degree in computer science, Cybersecurity, Information Technology, or a related field.
- 2 - 4 years in IT security or a related role.
- Professional certificate in CompTIA Security+, Certified Ethical Hacker (CEH), Certified Information Systems Security Professional (CISSP) or Certified Cybersecurity (CC) and GIAC Security Essentials (GSEC).