What are the responsibilities and job description for the Cybersecurity Analyst position at M.A. Polce?
** Please Note: this position is NOT remote ** You must live in Upstate NY **
** You must be legally authorized to work in the United States **
Job Summary:
The Cyber Security Analyst is responsible for configuring and utilizing an array of different Security tools, specifically to provide Compliance Reporting, Alerting, and Incident Analysis. The Cyber Security Analyst is an architect / implementer of security solutions and works with other engineers and product focused personnel to provide the best possible solution for the client. Emphasis is placed on the ability to thoroughly understand clients and to make sound recommendations. The Cyber Security Analyst is responsible for writing technical reports and document findings as evidence for reporting and Incident Response as required. The Cyber Security Analyst should be able to work alone to complete work as well as in a team. The Cyber Security Analyst is expected to take a role in Compliance both internally and externally to assist with Risk Assessments and audits using MAPCI's GRC tool.
Essential Functions:
- Consults with clients to effectively understand technical requirements and translate to a solution
- Works in a team environment with account managers and product specialists to effectively develop solutions designs and statements of work
- Able to decipher Security Events and Event correlation using an array of Security Tools (including logs from FMC, Graylog, M365, MDR, EDR, etc.)
- Must follow current compliance procedures, assure clear and accurate documentation, and develop or implement more efficient tools and procedures to ensure compliance
- Good organizational skills to maintain documentation and evidence gathering for reporting and Incident analysis
- Configure and utilize Tenable Nessus for vulnerability scanning and reporting
- Solid understanding of TCP/IP protocol and associated ports and services
- Solid Understanding on Firewall Access Control Lists and configurations
- Work with Vendor support to resolve any issues that may arise
- Must be confident in asking questions and bringing attention to concerns that may arise
- Participation in on-call with other members of the team to support Incident Response for client
- Manage the Security Awareness Training programs for MAPCI and our Clients
- Other duties as assigned
Required Qualifications:
- Minimum 2 years of experience in Information Technology
- Knowledge of vulnerability scanning and reporting
- Must be able to obtain and maintain security clearances for clients
- Must be able to drive and travel overnight to support clients
- Must have strong documentation skills
- Must have excellent written and oral communication skills
- Possess fundamental security and technical knowledge
Preferred Qualifications:
- Strong analytic skills
- Knowledge and experience in the Security Frameworks: NIST, CSF, RMF, CIS
- Minimum of 2 years’ experience with vulnerability scanning and reporting
- Knowledge of TCP/IP protocol and associated ports and services
- Develop scripts on Linux platforms to support Cybersecurity Vulnerability Assessments (CVA) as well as aid security controls audits
- Ability to develop and utilize PowerShell scripts as part of projects and incident response
- Knowledge of Pentesting and reporting
- Comfortable presenting in front of an audience
Desired certification/ Licensing:
- Security
- Knowledge and experience in the Security Frameworks: CMMC, NIST 800-53, CSF, CISv8
Education:
- Bachelor of Science degree in Cybersecurity, Computer Science or other Information Technology discipline
Other Requirements:
- Successful background check
Salary : $58,000 - $90,000