Cybersecurity Analyst I

Position Summary: 

The Cybersecurity Analyst I position is an entry level position that will provide Cybersecurity services to customers and internal teams. The primary focus of this position is on delivering timely and repeatable cybersecurity reviews of customer systems using an established set of tools. This position will provide opportunity for growth and advancement to a candidate who brings a combination of education, experience, enthusiasm, and a desire to learn new things and who is able to master these primary responsibilities and learn to take on new and more challenging assignments.

Essential Duties & Responsibilities:

All areas of responsibility listed below are essential to the satisfactory performance of this position, with reasonable accommodation, if necessary. Any non-essential functions are assumed to be included in "other related duties as assigned":

Customer Security Reviews - 75%

  • Conduct monthly and quarterly security reviews for customers and create related reports.
  • Configure and manage scheduled monthly external vulnerability scans for customers.
  • Configure and manage monthly and quarterly automated security training and email phishing simulations.
  • Configure and manage other customer-facing tools, such as password managers.
  • Review daily, weekly, and monthly status of Vulnerability Management services for clients and alert customers and other team members of issues.
  • Coordinate the onboarding of new security services customers and the deployment of any necessary hardware and software tools with internal and external customers
  • Provide additional information and reports from our tools to internal teams and customers when requested.
  • Create detailed time entries and documentation to support the activities performed.
  • Work efficiently; prioritize tasks and schedule time accordingly so that deadlines are met.

Team Support - 10%

  • Assist other team members with the delivery of Information Security assessments using standardized methodologies and tools approved by the Cybersecurity and IT Consulting team, such as S2Org.
  • Assist other team members with security vulnerability assessments using standardized tools, such as Tenable Nessus, and RapidFire Tools.
  • Assist the Virtual Chief Information Security Officer (vCISO) team with assessments, scheduling, policy creation, and reporting related to delivering vCISO services to clients.
  • Assist other team members with the delivery of managed security policies.
Team Administration - 10%
  • Assist with invoicing.
  • Assist with service ticket review.
  • Assist with scheduling and coordination of team engagements.

Product and Services Development - 5%

  • Learn to deliver new product and services offerings that are being rapidly developed by the team.

 

Qualifications/Requirements:                                                          

  • Minimum of two days in office 
  • Good written and oral communication skills.
  • Ability to focus on priorities while working in a fluid environment.
  • Ability to write and interpret information security policies.
  • Ability to work independently on tasks assigned weekly.
  • Ability to learn new technologies and assessment methodologies.
  • Competency with common office productivity applications, including Microsoft Outlook, Teams, Word, and Excel
  • Self-motivated and driven to perform.
  • Valid driver's license and acceptable motor vehicle record.

 

Education/Experience:

  • Completion of a Cybersecurity training program from an accredited institution or Associate's or Bachelor's degree in IT or related technical field (i.e. Cybersecurity, Computer Science, IT Management), or equivalent training and experience
  • Understanding of core IT and Cybersecurity concepts
    • ? Fundamental networking concepts, including IP networking, switching, routing, firewall, VPN, and related subjects
    • NIST, ISO, CIS, and similar Cybersecurity Frameworks
    • Best practices for cybersecurity policies and procedures
    • Information security assessment and evaluation methodologies
    • Cloud service architecture and administration
    • On-premise IT architecture and administration
  • Network+ and Security+ certification is preferred.  Other technical and/or Cybersecurity certification(s) may be considered, such as:
    • MS-500, Microsoft 365 Security Administration 
    • Microsoft Azure Security Engineer Associate
    • CISSP, SSCP, CCSP, CC, or other ISC2 certification (Associate membership is acceptable for this position)
    • CISM
    • CISA
    • CEH
    • GSEC
    • Intermediate or advanced technical certification from a mainstream cybersecurity services, software, or hardware vendor.
    • Other related certifications and/or equivalent work experience may be considered.

Supervisory Responsibilities:

This position has no supervisory responsibilities.

 

Work Conditions:

The work environment characteristics described here are representative of those an employee encounters while performing the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.

  • High energy position dealing with different clients on a daily basis.
  • Ability to work effectively in the office, remotely, and on client sites as needed.
  • Requires some travel to and from client sites.

For information on the physical demands of this job, see Human Resources.

 

Loffler Core Values

What Defines our Culture.

 

  • Positive Attitude: Be Part of the Solution. Motivate Others. Put Extra Effort in All You Do. Everything You Do Matters. Be a Team Player. Don't Fear Failure.
  • Integrity: Live the Mission. Be Honest. Deliver on Commitments. Do What is Right. Be Someone Others Can Trust and Count On. Honor Commitment.
  • Innovation: Be a Visionary. Welcome New Ideas. Work Smarter. Challenge the Status Quo. Welcome Challenge. Be Committed to Operational Excellence.
  • Customer First Focus: Exceed Expectations. Delight Our Clients. Bring Value Every Day. Always Do a Good Job.
  • Professionalism: Commit to Excellence. Learn & Improve. Looks and Words Matters. Every Interaction is an Opportunity to Exceed Expectations. Treat Others with Kindness and Respect. Best in Industry; Field Expert.
  • Drive for Results: Performance-Orientated. Hard-Working. Refuse to Lose. Accountable. Set Goals to Manage Yourself to Success.