The Information Security Analyst will be part of the Security Operations – People & Data team at Consilio. Team member responsible for monitoring, detecting, and responding to a range of cybersecurity threats and incidents. Experience with SIEM, log monitoring and analysis, email security, and endpoint security a must.
Responsibilities:
Run full incident response lifecycle on security incidents
Monitor for attacks, intrusions and unusual/unauthorized activity
Monitor and analyze reported phishing emails
Monitor & manage email spam filtering systems
Investigate alerts, apply mitigation measures, keep detailed notes and close out
Provide incident response & documentation for reporting
Research & evaluate emerging cybersecurity threats and methods to mitigate and manage
Understand & evaluate security threats and impact on organization
Identify potential improvements to processes & organizational security posture
Identify opportunities for automation and orchestration of manual tasks
Create/modify/maintain integrations within SOAR platform
Monitor & manage data loss prevention systems
Monitor & manage endpoint security systems
Keep current on security standards, certifications, and technology & industry developments
Qualifications
Knowledge/Skills
Advanced incident response skills
Analytical skills
SOAR experience, automation & scripting skills
Phishing email analysis and phishing campaign mitigation expertise