Information Security Analyst (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Information Security Analyst (Cybersecurity): Protecting enterprise infrastructure, cloud environments, edge devices, and data through security monitoring, incident response, and vulnerability management with an accent on SIEM/EDR operations, identity security, and least-privilege governance. Focus on investigating complex security events, improving detection logic, coordinating remediation, and supporting cybersecurity architecture and compliance initiatives.
Location: Cincinnati, Ohio, United States; office-based, with occasional work from home available for eligible positions after training.
Company
A full-service clinical contract research organization providing clinical development services to biotechnology, pharmaceutical, and medical device companies across more than 40 countries.
What you will do
- Monitor, triage, investigate, contain, and remediate security incidents using SIEM, EDR, log analysis, and ticketing workflows.
- Deploy, configure, tune, and improve SIEM, endpoint protection, identity, and privileged access security tools.
- Conduct internal and external vulnerability scans, assess risk, and coordinate remediation with system owners.
- Review user access and permissions, validate approvals, document findings, and support least-privilege governance.
- Support security architecture, governance, compliance, audit, and other cross-functional initiatives.
- Respond to phishing reports and security inquiries, document findings, and participate in a limited on-call rotation of approximately 2–3 weeks per year.
Requirements
- Bachelor’s degree in Information Systems, Cybersecurity, or a related field.
- At least 2 years of IT or information security experience, including relevant internships or co-op experience.
- Working knowledge of enterprise cybersecurity practices, including least privilege and secure configurations.
- Hands-on experience with SIEM, EDR, identity or privileged access management, Azure and/or AWS, and Microsoft Active Directory.
- Strong communication, documentation, analytical problem-solving, prioritization, and multitasking skills.
- Basic scripting or automation experience with PowerShell or Python, or a strong willingness to learn.
Nice to have
- Exposure to AI security, network segmentation, DevSecOps, Azure governance, red teaming, penetration testing, vulnerability management systems, web security, or compliance audits.
- Security experience with Windows and Azure enterprise environments, including Active Directory and Azure AD/Entra.
Culture & Benefits
- Office-based environment with on-site mentors, structured career paths, and professional development programs.
- Comprehensive onboarding, ongoing training, and continuous learning opportunities.
- Health, wellness, retirement, and paid time off benefits.
- Collaborative culture with accessible leadership, cross-functional work, and opportunities to influence change.
- Corporate campus with on-site dining, free parking, fitness and wellness facilities, social events, and intramural sports.
Hiring process
- Application review by a hiring team member.
- Selected candidates are contacted for an interview.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →