Security SpecialistMirazon is a scaling, people-centered IT company that believes strong security starts long before an incident occurs, and that calm, capable leadership matters most when it does. We're looking for a Security Specialist who thrives at the intersection of strategy and execution: someone who enjoys strengthening security postures proactively and who can step confidently into high-pressure situations to guide clients through complex cybersecurity events.Mission of the PositionThis role is designed for an experienced individual contributor with deep technical expertise, sound judgment, and executive presence. You value preparation, documentation, and disciplined processes, and you're equally comfortable designing preventative controls as you are leading incident response efforts in real time.
You bring clarity to chaos, translate technical risk into business impact, and act as a trusted advisor to clients when the stakes are highest.Key Criteria/Requirements5+ years in cybersecurity or infrastructure security roles3+ years leading security incidentsStrong experience with: Firewalls (FortiGate, Cisco, SonicWall, Palo Alto, etc.)Endpoint detection and response (EDR/XDR)Microsoft 365 security stackIdentity and access managementBackup and disaster recovery systemsExperience with ransomware containment and recoveryDeep understanding of networking and Active Directory environmentsStrong written and verbal communication skillsAbility to lead under pressurePreferred CertificationsCISSPCISMCEHGIAC (GCIA, GCIH, etc.)Security+Microsoft Security certificationsVendor firewall certificationsKey Accountabilities1. Pre-Incident Security Consulting (Strategic & Preventative)Conduct comprehensive security risk assessments and gap analysesLead cybersecurity maturity assessments aligned to NIST, CIS, or industry frameworksPerform vulnerability assessments and coordinate remediation planningDesign and review: Network security architectureFirewall and segmentation strategiesEndpoint security strategiesMFA and identity security implementationDevelop incident response plans and business continuity playbooksConduct tabletop exercises with client executive teamsProvide executive-level reporting with risk prioritization and budget guidanceAssist sales/engineering with scoping security engagements and SOW development2. Incident Response LeadershipServe as Incident Response Lead during cybersecurity eventsDirect containment, eradication, and recovery effortsCoordinate with: Internal engineering teamsClient leadershipInsurance carriersLegal counselForensics vendorsPerform initial triage and determine scope of compromiseOversee forensic evidence preservationGuide ransomware response and recovery strategyLead root-cause analysis and post-incident reportingDevelop corrective action plans3.
Client & Executive CommunicationAct as trusted advisor to C-suite and ownership groupsTranslate technical findings into business risk languagePresent findings and remediation plans in board-level settingsProvide calm, decisive leadership during crisis situationsMaintain strict confidentiality and professionalism4. Documentation & Process DevelopmentMaintain standardized security assessment templatesDevelop and refine internal IR proceduresCreate security standards and best practicesEnsure all engagements are properly documented in PSA systemsContribute to continuous improvement of security offeringsInsurance BenefitsEligibility begins the first day of full-time employment (date of hire).Life InsuranceShort-term DisabilityLong-term DisabilityCafeteria Plan – Premium, Medical, & Child Care ReimbursementHealth InsuranceDental PlanVision PlanOther Benefits401K MatchingReferral BonusesTuition ReimbursementPerformance IncentivesTime Off – benefits accrue on a pro-rated basis each pay period over a 12-month period with the following maximums:Vacation Time – 10 days per calendar yearSick Leave – 5 days per calendar yearPaid Company Holidays (7)Paid Floating Holidays (2)Volunteer 1Cell Phone & Internet Reimbursement
IT Security Specialist (Pre-Incident Consulting & Incident Response Lead) in louisville at Unknown Company
This position is listed as full time and onsite.