Job - Security Analyst | Onsite Location - Montgomery, AL Duration - Long term and high possibility of Conversion in Full timePosition Description
- osition Description Intermediate professional level role. Develops, evaluates and manages systems security across the enterprise. Areas of concentration include account management, password auditing, network based and Web application based vulnerability scanning, virus management and intrusion detection. Requires technical expertise in systems administration and security tools, combined with the knowledge of security practices and procedures. Assists in the development and implementation of security policies and procedures. Adept at developing security policies, procedures, and documentation in alignment with organizational risk and compliance standards. Proven ability to collaborate with cross-functional teams on secure SDLC projects and infrastructure changes. Prepares status reports on security matters to develop security risk analysis scenarios and response procedures. Enforces security policies and procedures by administering and monitoring security profiles, reviews security violation reports and investigates possible security exceptions, updates, and maintains and documents security controls. Deep understanding of endpoint security, malware behavior, attack vectors, and social engineering techniques. Provides direct support to the business and IT staff for systems security related issues. Educates users on systems security standards and procedures. Works on multiple projects as a team member and lead systems-related security components. Skills Required • Strong expertise in analyzing security events using SIEM and XDR platforms, identifying anomalies and prioritizing incident response • Skilled in implementing and maintaining security safeguards that ensure system integrity, data confidentiality, and service availability. • Deep understanding of endpoint security, malware behavior, attack vectors, and social engineering techniques • Assist in forensics during incident investigations, collecting logs, correlating events, and documenting response actions. • Strong interpersonal, analytical, and time management skills • Conduct regular security assessments and audits of network infrastructure, identifying and remediating security vulnerabilities • Participate in application vulnerability assessments and patch management coordination across critical systems • Conduct endpoint analysis and threat hunting using tools, identifying behavioral anomalies and initiate containment steps • In-depth knowledge of networking protocols and services including DNS, DHCP, SSL/TLS, with hands-on experience in firewall rule audits and VPN management. • Strong communication skills with the ability to present technical security concepts in business-friendly language to executives and non-technical stakeholders. Skills Preferred Experience Required 5+ years of combined IT and security work experience with a broad exposure to infrastructure/network and multi-platform environments. Requires knowledge of security issues, techniques and implications across all existing computer platforms Experience Preferred Education Required Bachelor's Degree in Computer Science, Information Systems, or other related field. Or equivalent work experience. Education Preferred dditional Information All candidates must be eligible for transition to merit system staff. All candidates must speak fluent/conversational English. The work is 100% on site at the Alabama Department of Workforce. This position is budgeted for a full year but will be renewed every fiscal new year, per our policy. All candidates should be prepared to discuss prior work in great detail.