Information Security Specialist

Canyon Aeroconnect•Prescott, AZ
•Onsite

About The Position

The Information Security Specialist (Information Systems Security Officer) helps build and operate the internal security program and technology operations. This hands-on role works across security operations, identity and access management, endpoint and network defense, vendor risk, compliance, and end-user enablement. The position works closely with IT, engineering, and business teams to keep the company secure without slowing it down and is intended for an individual who wants to grow into a senior internal security role over time.

Requirements

  • At least one year of experience in information security, IT operations, or a closely related field
  • Solid fundamentals in networking, operating systems, and authentication protocols.
  • Familiarity with compliance frameworks, especially CMMC and applicable European requirements such as Cyber Essentials.
  • Ability to script in Python, PowerShell, or Bash for automation and ad hoc tasks.
  • Strong written and verbal communication skills, including the ability to explain security concepts to non-technical audiences.
  • Experience supporting and managing highly regulated and secured network systems.
  • Self-directed and comfortable providing Tier 2 helpdesk support as well as working across teams in a fast-moving environment.
  • Willingness to be part of the on-call rotation and respond to cyber incidents during evening or weekends.
  • Ability to obtain industry certifications such as CCNA, CompTIA Security+, or Network+ within the next 12 months.

Nice To Haves

  • Three or more years of experience in information security, AI, or a closely related field, with hands-on exposure to multiple security domains.
  • Working knowledge of SIEM, EDR, vulnerability scanners, identity providers such as Okta or Entra ID, and cloud platforms such as AWS, Azure, or GCP.
  • Experience supporting or leading audits.
  • Exposure to cloud security posture management.
  • Familiarity with offensive security concepts and tooling highly regulated and secured network systems.
  • Industry certification such as CISSP, CISM, CCIE, CCNP Security, CISA, CRISC, or similar.

Responsibilities

  • Support day-to-day security operations, including SIEM and EDR alert triage, log review, and incident-response investigations.
  • Help administer identity and access management systems, including SSO, MFA, directory services, onboarding, transfers, offboarding, periodic access reviews, and cleanup of stale accounts and entitlements.
  • Maintain and improve endpoint security, including EDR health, patch management, configuration baselines, and disk encryption.
  • Assist with firewall rule reviews, VPN administration, network segmentation, and monitoring for misconfigurations.
  • Support vulnerability scanning, prioritization, remediation coordination, and metric tracking.
  • Support compliance activities such as CMMC and NIST by collecting evidence, maintaining policies, completing customer security questionnaires, and preparing for applicable audits.
  • Support vendor risk management by reviewing third-party security documentation and tracking risk acceptances.
  • Develop and deliver security awareness content, including phishing simulations, onboarding training, and internal guidance.
  • Serve as a point of contact for security questions, suspicious emails, lost devices, and access requests.
  • Document security processes, runbooks, and System Security Plan (SSP) so the program can scale as the company grows.
  • Participate in the on-call rotation.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service