Essential Duties and responsibilities include the following. Other duties may be assigned.
Participates in the planning and design of enterprise security architecture.
Participates in the creation of enterprise security documents (policies, standards, baselines, guidelines, and procedures).
Participates in the planning and design of a risk management plan, enterprise business continuity plan and disaster recovery plan.
Maintains up-to-date detailed knowledge of the IT security industry including awareness of new or revised security solutions, improved security processes, and the development of new attacks and threat vectors.
Assists in analyzing security events and incidents to identify potential threats or breaches.
Assists in the review and impact processes for all incoming cyber security information: bulletins, vendor notifications and communications from government sources. Determine if CNI is affected and then lead the resolution processes if necessary.
Works with security analysts to recommend additional security solutions or enhancements to existing security solutions to improve overall enterprise security.
Helps ensure that up-to-date baselines are maintained for the secure configuration and operations of all in-place devices e.g. security tools, workstations, servers, network devices, etc.
Assists with conducting vulnerability assessments and penetration testing on computer systems, networks, and applications.
Assists with evaluation and remediation of user-reported malicious email
Collaborates with security analysts to develop and implement security policies, procedures, and standards
Participates in incident response tasks, partnering with 3rd party SOC, cyber security insurance vendors, and internal resources.
Collaborates with cross-functional teams to ensure compliance with relevant regulatory requirements and industry standards.
Assists in conducting risk assessments to identify potential security weaknesses and recommend appropriate controls.
Assists in the deployment and management of security tools, intrusion detection systems, and antivirus software.
Participates in incident response activities, including investigating security incidents, documenting findings, and recommending remediation actions.
Stays up-to-date with the latest security trends, vulnerabilities, and industry best practices.
Assists in conducting security awareness training sessions for employees to promote a culture of cybersecurity awareness.
Monitors and maintains all operational configurations of all in-place security solutions as per the established baselines.
Reviews logs and reports of all in-place devices. Interprets the implications of that activity and devise plans for appropriate resolution.
Participates in the design and execution of vulnerability assessments, penetration tests, and security audits.
Provides on-call support for end users for all in-place security solutions; this can be 24x7 support.
Assists in creation and maintenance of a patching schedule; work with technical teams to develop patching priorities.
Assists the Information Security Compliance Manager with developing relevant security data reports.
Assists the Information Security Compliance Manager with managing the security training system and confirming completion of training by all employees.
Assists in the creation and maintenance of plan, policy, and procedure review schedule for the Enterprise.