Security Analyst
Concord, MA
Full Time Entry-level / Junior Clearance required USD 65K - 122K * est.
ERG
ERG helps clients protect the environment, improve worker health and safety, ensure the safety of food and drugs, and plan sustainable facilities.ERG is seeking a motivated Security Analyst to join our Managed Information Systems (MIS) team and contribute to maintaining a secure operating environment and growing our security capabilities. In this role, you will support building cybersecurity resilience in our network and information infrastructure and ensure the protection of critical systems.
Job Description:
- Lead the design and execution of vulnerability assessments and security audits
- Participate in the creation of security policies, guidelines, standards, and procedures
- Participate in the planning and design of systems security architecture
- Stay up to date on IT security industry standards, security solutions, and development of TTPs and IOCs
- Review logs and security reports to identify potential risks and remediation actions
- Monitor security solutions to ensure effective and secure operations
- Evaluate security events to determine impact & escalate appropriately
- Recommend security solutions or enhancements to improve security posture
- Help ensure that information security assets, policies, and processes are reliable, and protect the confidentiality, integrity and availability of data
- Perform risk analysis on threats, security alerts, and other suspicious system or network activity
- Identify and analyze existing processes and procedures to meet new IT Security goals and objectives
Qualifications and Skills:
- Must be US Citizen
- Must be eligible for a US DOD Security Clearance
- Bachelor’s degree in computer science, Information Security, or a related field is a plus
- 2-4 years working in IT security operations
- CompTIA Security+ or ISC2 CC certifications or similar certification
- Understanding of basic security concepts including least privilege, defense in depth, and zero trust
- Experience with endpoint protection, monitoring, vulnerability scanning tools
- Familiarity with NIST frameworks (800-171, 800-53) and CMMC is a plus
- Experience performing security audits with and without specialized SIEM tools (e.g., Microsoft Sentinel)
- Ability to interpret technical vulnerability findings and work to develop and implement remediation plans
- Must demonstrate excellent communication and organizational, interpersonal, and multi-tasking skills with the ability to effectively communicate orally and in writing with management, other technical specialists, and users
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Audits Clearance CMMC CompTIA Computer Science DoD Monitoring NIST NIST 800-53 NIST Frameworks Risk analysis Security Clearance Sentinel SIEM TTPs Zero Trust
Perks/benefits: 401(k) matching Competitive pay Flex hours Flex vacation Health care Insurance Team events
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.