Unknown Company

Security Analyst

boston, ma • Posted 3 days ago
Onsite Full Time General

Security AnalystSecurityBoston, MAAsset ManagementJO- OverviewReporting to the manager of the IT Networking & Security team, this position is part of the IT Infrastructure group. The IT Security Engineer has responsibility for the design and implementation of security technology and policies that protect the firm's data and systems from internal and external threats. Since the firm has a cloud-first strategy, a key skill will be the ability to understand and respond to the unique risks in a cloud environment that supports IaaS, PaaS, and various SaaS platforms.

A strong candidate will have extensive hands-on experience with Palo Alto Firewalls (including Panorama Management, Clustering, SSL Decryption and URL Filtering), Checkpoint Firewalls, Bit9/ Carbon Black Application Whitelisting, Microsoft Azure Security & Compliance Center, Microsoft Cloud App Security, Windows Defender and Defender ATP.Primary ResponsibilitiesHands-on approach when it comes to implementing and supporting the firm's security systemsDefine key threats to critical data and systems; create policies and engineer systems to reduce threats and riskResearch and develop future road maps, strategies, and technical visions to support security programAssist in performing product evaluations and recommend products/services for data securityResponsible for identifying and protecting against emerging threats associated with risks in the cloud and third-party vendor systemsManagement, troubleshooting, and monitoring of firewalls, intrusion detection systems, enterprise anti-virus systems, enterprise log management system, and data loss prevention systemCreate and compile enterprise-wide security reporting at set intervals to managementRespond to security incidents 24 x 7Monitor security audit and intrusion detection system logs for system and network anomalies, investigate and/or escalate security violations, and document and report eventsEnsure environment is stable and in compliance with corporate security policy and industry standardsWork closely with Risk Management, Legal, and Compliance teams to create cohesive security policiesWork with IT Risk Management and Security team on definition and implementation of security policiesCreate and maintain documentation for supported systems, including DR/BCP planningParticipate in scheduled off-hours configuration changes, service outage upgrades, and DR/BCP testingPerform and/or manage internal and external vulnerability scanning and remediationIdentify and support quality improvement initiativesRequirementsUndergraduate degree in technology discipline or equivalent experience5+ years of information systems security experience5+ years experience in the financial services industry preferredCISSP preferredPCNSE preferredSkillsProactive approach to learning and educating others about cloud threatsExcellent, proven troubleshooting skillsStrategic thinking and roadmap design for multi-year model.Ability to work with other teams within Infrastructure, such as Network, DevOps, and Architecture to create comprehensive and holistic security solutionsPalo Alto (PCNSE), Cloud Security (CCSP) and other related vendor certifications a plus.Experience with Microsoft Azure Security & Compliance Center, Microsoft Cloud App Security, Windows Defender and Defender ATP preferredExperience working with IP networking, networking protocols and understanding of security related technologies including encryption, IPsec, PKI, VPNs, firewalls, proxy services, DNS, electronic mail and access-lists.Experience with Palo Alto and Checkpoint firewall management and associated system managersExperience with TippingPoint IPS and associated system mangers, or other IDS/IPS productsExperience with Bit9/ Carbon Black Application Whitelisting productExperience analyzing Firewall and IPS logs, as well as Windows Event and Security logsExperience working with enterprise log management software SIEM (preferably LogRhythm)Experience with data loss prevention and eDiscovery technologies (preferably Symantec DLP)Experience working with internal IT Development or IT Architecture teams to develop secure coding practices and educate Developers a plusExperience working within the banking/finance/regulatory industryExperience working with relevant operating system security (Windows, Linux, etc.)Experience working with teams outside of IT to create effective security policiesStrong written and verbal communications and interpersonal skillsMust exhibit a team-oriented approachEngineering level knowledge of the following areas:Active Directory and Group Policy structure and management.Authentication solutions (ex. RADIUS, TACAS)Experience with Security and System Forensic tools and methodologies.Experience designing and implementing endpoint protection (i.e. Symantec Endpoint Protection, Bit9, Windows Defender)Understanding of IT Management processes such as ITIL.

Back to Job Search