Information Security Analyst
Core
Monitor, investigate, and respond to security alerts across cloud, endpoint, identity, network, and data domains while managing incident response and AI security governance.
Role type
Mid-level hands-on Information Security Analyst
Builds
Secure cloud and hybrid infrastructure, incident response capabilities, and AI risk management frameworks
Domain
Cybersecurity, Cloud Security, Identity & Access Management, Data Protection
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Incident response, vulnerability management, patch management, log analysis, identity access control administration, data loss prevention, security awareness training, scripting/automation, firewall/IDS monitoring, backup/recovery security
Preferred skills
Regulated environment experience, NIST/MITRE ATT&CK/SOC 2/HITRUST frameworks, hybrid cloud infrastructure, SIEM/EDR/CSPM/WAF tools, PowerShell/query languages, industry certifications
Technologies
AI Agents, Cloud, Firmware, Mobile, Network, PowerShell, Security, Web
Responsibilities
Monitor MDR, endpoint, identity, email, network, cloud, and security analytics platforms for suspicious activity; triage and investigate alerts; analyze logs to separate incidents from false positives; maintain incident response plans and documentation; assess and strengthen security across public cloud subscriptions and hybrid connectivity; administer identity and access controls including MFA, conditional access, and privileged access; support Zero Trust and secure access services; operate data security posture management to identify sensitive data and insecure sharing; administer DLP controls across email, endpoints, and cloud services; support data discovery, classification, and encryption workflows; administer security awareness training and phishing simulations; coordinate vulnerability and exposure management and prioritize remediation; monitor firewalls and IDS; collaborate on OS/application patching and validate remediation; support backup, recovery, and disaster recovery security; maintain security policies and inventories; contribute to automation using scripting and workflow integrations; evaluate emerging security requirements for AI Agents; partner with stakeholders to establish AI governance and risk management practices for generative AI and AI agents; contribute to AI Risk Management Framework program.
Seniority
Mid-level, hands-on IC
