Robert Half
Job Description
Job Description
This role supports the daily operations of an established Information Security Program, focusing on compliance, risk identification, vulnerability remediation, and strengthening security controls. The analyst will lead security-focused initiatives and collaborate across departments to enhance the organization’s overall security posture.
Key Responsibilities:
- Analyze security alerts from SIEM, EDR, and other tools to identify threats and escalate incidents.
- Investigate phishing attempts and coordinate remediation efforts.
- Conduct threat intelligence analysis and proactive threat hunting.
- Collaborate with IT, Fraud, and Risk teams to improve security practices.
- Support vulnerability management and remediation efforts.
- Contribute to the development and refinement of security policies and procedures.
- Evaluate security controls against internal standards and regulatory frameworks (e.g., GLBA, FFIEC, PCI-DSS, NIST CSF).
- Act as a subject matter expert for one or more security applications.
- Participate in third-party assessments and internal projects to ensure security requirements are met.
- Provide technical expertise to strengthen the Information Security Program.
Collaboration & Communication:
- Work with technical and non-technical stakeholders to explain security concepts and manage risks.
- Engage in incident response efforts with IT and business teams.
- Promote security awareness across departments.
- Coordinate with vendors and third parties for tool management and risk evaluations.
Decision-Making:
- Exercise analytical judgment and problem-solving in daily operations.
- Escalate complex or strategic decisions to management.
Required Experience & Skills:
- Bachelor’s degree in Information Security, Computer Science, or related field; or equivalent experience.
- Minimum 3 years in IT, InfoSec, Audit, Risk, or Compliance (related fields like law enforcement or finance may be considered).
- Proficiency in Microsoft Windows and Office applications.
- Experience in regulated environments; knowledge of financial industry frameworks preferred.
- Subject matter expertise in at least one InfoSec domain (e.g., SIEM, endpoint protection, risk analysis).
- Understanding of system hardening, patching, malware defense, networking fundamentals.
- Strong communication skills for audit and compliance interactions.
- Foundational security certifications preferred (e.g., Security+, CySA+, CISA, CISM).
Required Experience & Skills:
- Bachelor’s degree in Information Security, Computer Science, or related field; or equivalent experience.
- Minimum 3 years in IT, InfoSec, Audit, Risk, or Compliance (related fields like law enforcement or finance may be considered).
- Proficiency in Microsoft Windows and Office applications.
- Experience in regulated environments; knowledge of financial industry frameworks preferred.
- Subject matter expertise in at least one InfoSec domain (e.g., SIEM, endpoint protection, risk analysis).
- Understanding of system hardening, patching, malware defense, networking fundamentals.
- Strong communication skills for audit and compliance interactions.
- Foundational security certifications preferred (e.g., Security+, CySA+, CISA, CISM).