CFC CIRT Specialist

AventivUnited StatesOn-siteFull-timeJunior, 1–2 yearsListed 4 hours ago

Apply now

About this role

Welcome to Aventiv! Please watch this brief video to find out if this is the place you want to be!

Aventiv Technologies – Where your future awaits - YouTube

**Associate Referral Reward Eligible**

Job Purpose: As part of a team of analysts who support the incident response functions for the Cyber Fusion Center (CFC), who will be responsible for reviewing logs compiled from various cybersecurity tools to quickly identify anomalous behavior within the customer facility environment. You will identify, research, and respond to alerts from monitoring systems to remediate threats, document and review standard procedures and assist with incident response activities as needed.

Essential Duties:

- Must stay up to date on the latest security trends, vulnerabilities, privacy legislation, and news items and communicate new findings with other team members.

- Documents policies, procedures and standards based upon guidance from Cybersecurity Management.

- Recommends changes in security policies and practices in accordance with changes in law or financial sector security practices.

- Ensures that data is protected from unauthorized modification, destruction, and disclosure.

- System auditing and monitoring of critical security systems: IPS/IDS, Event Logs, Firewall logs, Web Logs, and EDR.

- Perform risk assessments and test security controls and systems, including working with process owners to define remediation plans.

- Respond to computer security incidents by collecting, analyzing, and preserving digital evidence.

- Answer user questions related to security technology and advise on the security impact of technical changes.

- Ensure that security policies are applied and maintained for network devices, remote access devices, firewalls, servers, and workstations.

- Research mechanisms and tools for control compliance.

- Continuous monitoring and research of real-time alerts.

- Track and report of policy violations.

- Collaborate with other departments within Aventiv to ensure the timely delivery of audit materials on a weekly, monthly, quarterly, and annual basis.

- Manage repository for control documentation and update documents as needed.

- Perform internal control testing to validate design and operating effectiveness and document results in the repository on a timely basis.

- Participate in post-mortem reviews and ensure lessons learned are integrated into the regulatory compliance process.

- Perform data aggregation and analysis of log data from different sources.

- Assist with security related projects, as necessary.

- Perform other related duties as assigned.

Knowledge, Skills, and Abilities:

- Ability to manage changing workloads while maintaining a sense of priorities and delivering quality service within required timeframes.

- Ability to learn new technologies and applications and apply that knowledge to daily workflows.

- Attention to detail, organized and able to work and research independently.

- Demonstrated adaptability, analytical and problem-solving ability.

- Ability to work with urgent deadlines.

- Advanced Microsoft Office skills – Excel, Outlook, Word.

Minimum Qualifications:

- High school diploma or GED

- 3+ years in an Information Security role.

- Information Security certification required. Security certifications may include, but not be limited to CISA, CISM, GSEC, Security+, and CEH

- Experience in the majority of the following areas:

Firewalls, IDS/IPS, VPN, and other network security components from an evaluation, deployment assessment, and audit perspective.

- Working knowledge of network infrastructure and security monitoring tools – SIEM and SOAR.

- Experience with Cybersecurity principals and activities

Preferred Qualifications:

- Experience with Linux, Windows, Active Directory security configuration and design, monitoring/alerting, intrusion detection, encryption, vulnerability management, database security, and wireless network security.

- System administration experience.

- Experience with various standards (PCI/DSS, SOX, FedRAMP HIPAA, CJIS etc.)

- Experience with Information Technology departments in mid to large organizations.

- Experience with threat assessment, vulnerability analysis, risk assessment, information gathering, correlating, and reporting.

- Ability to identify and recommend mitigations for vulnerabilities and exploits.

- Physical Requirements:

- While performing the duties of this job, the employee is regularly required to: stand, sit, talk, hear, and use hands and fingers to operate a computer, telephone, and a variety of office equipment.

- Occasionally, this position may need to reach, stoop, or kneel.

Salary and Benefits:

At Aventiv, our salary and benefits are designed to fit you as a whole person. We offer a salary range based on experience and qualifications to ensure your unique contributions are met with our most competitive offer.

- $78,009.50 - $97,823.00 per year

- Eligible for $255 to purchase company equipment (keyboard, monitor, headset, etc.

- Health Insurance

- 401(k)

- Disability

- Life Insurance

- Paid Time Off

- Voluntary Benefits

Aventiv Privacy Policy:

www.aventiv.com/privacy

Equal Employment Policy:

Aventiv is proud to be an equal opportunity employer. All decisions regarding recruiting, hiring, promotion, assignment, training, termination and other terms and conditions of employment will be made without regard to race, color, national origin, biological sex, sexual orientation, gender identity, gender expression, gender presentation, religion, age, pregnancy, disability, work-related injury, veteran status, genetic information, marital status, or any other factor that the law protects from employment discrimination. We do not discriminate based on genetic information in accordance with the Genetic Information Nondiscrimination Act.