Monitors incident-specific procedures to perform a basic triage of potential security incidents to determine the nature and priority and eliminating obvious false positives, process health alerts, and process requests for information. Develop procedures to perform light, time-boxed analyses of potential security incidents, attempting to gather required information and eliminate false positives. Based on escalation procedures, determine potential security incidents and escalates, and implement countermeasures in response to others, perform light tuning (e.g., whitelisting) and recommend additional tuning. Maintain awareness of the Insurance Technology architecture, known weaknesses, the architecture of the security solutions used for monitoring, imminent and pervasive threats as identified by threat intelligence, and recent security incidents. Provides status and metric reporting and adhering to internal operational security and policies; Document all actions taken in the ticketing system. Performs security project work as assigned. Continually improve the service by identifying and correcting issues or gaps in knowledge capital (analysis procedures, playbooks, network models), identifying and recommending new or updated tools, content, countermeasures, scripts, plug-ins, and other “glue”. Perform peer reviews and consultations with other Cyber Security Analysts regarding potential security incidents. Serve as a Subject Matter Expert in at least one security-related area (e.g., specific malware solution, python programming). Seek self-improvement and enhanced value by documenting a self-education roadmap and pursuing advancement to a Cyber Security Analyst II.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Entry Level