What are the responsibilities and job description for the IT Security Analyst position at 84 Lumber Company?
The Security Analyst will be responsible for designing and implementing security solutions, intrusion prevention and detection, continuous diagnosis and mitigation (CDM), security training, malware defense, incident notification, and vulnerability testing and analysis. The administrator will work closely with other departments and functions to ensure that systems meet availability and security requirements.
Responsibilities
Responsibilities:
*Perform network security analysis and work with the 3rd party SOC teams conducting incident response, event analysis and threat intelligence
*Provide both strategic analysis and near real-time auditing, analyzing, investigating, reporting, remediation, coordinating and tracking of security-related activities
*Analyze data and prepare reports that document vulnerabilities from network based attacks and recommends actions to prevent, repair or mitigate these vulnerabilities
*Assist the company's ongoing eDiscovery and Legal Hold Processes by reviewing discovery requests to determine potential scope; working closely with the collections team to scope, collect, and transfer data; and drafting and iterating on search terms and other culling mechanisms and criteria
*Evaluate new tools and use existing tools to help discover and mitigate security vulnerabilities
*Coordinate with System and Network Administrators to ensure security vulnerabilities are tracked and mitigated in a timely manner
*Own user account administration, creation, modification, & deletion, and conduct user access control requests and reporting
*Review vulnerability scans and research new vulnerabilities and malicious software
*Configure, monitor, and/or support security software/systems that will help ensure compliance with regulatory, industry, and corporate policies and procedures.
*Assist with the identification, response, investigation, and remediation of potential breaches and issues surrounding data security
*Perform network, system and server security assessments
*Monitor, analyze, and communicate security alerts and information
*Develop, implement and maintain policies, procedures and associated plans for security administration and appropriate use.
*Receive and accurately log all support requests in a timely manner using 84 Lumber Incident Management tools
*Perform routine/scheduled audits of the systems, including all backups
*Perform post-resolution follow-up to ensure reported security incidents have been successfully resolved.
*Engage 3rd party support partners as required.
*Independent and structured continuous learning to maintain a level of technical competency and business awareness to provide superior customer support services as new technologies are implemented
*Maintain frequent communication with peers and IT teams to maintain awareness of issues or changing process/standards
*Project Management support for small scale technology deployments
*All other duties as assigned
Qualifications
Qualifications:
*Bachelor's Degree (Cybersecurity, Computer Science or related field) or equivalent experience
*At least one industry recognized security certification (minimum Comp TIA Security )
*3-5 years Information security administration/analysis/engineering experience in a corporate environment
*Demonstrated experience supporting third party security tools to manage and audit information systems
*3 years exposure to Payment Card Industry (PCI), and/or Information Technology General Controls
*Works with minimum supervision, proactively follows up on outstanding issues/tickets
*Ability to handle multiple tasks with changing priorities in a fast-paced and deadline-oriented environment; handling frequent interruptions positively
*Strong analytical, interpersonal, verbal/written communication and problem-solving skills
*Demonstrated collaborative skills and ability to work well within a team
*Self-motivated with critical attention to detail, deadlines and reporting
*Prior experience with retail store operations and technologies preferred
EOE of Minorities/Females/Vets/Disability