Information Security Analyst

Municipal Securities Rulemaking Board Washington , DC 20319

Posted 1 month ago

The MSRB is looking for a driven, eager, and curious Information Security Analyst with at least three to five years of security or technology experience. We welcome candidates with strong cloud, web application, system or network administration, or other technology backgrounds looking to make a switch to a dedicated security role.We expect our team members to demonstrate technical proficiency as well as strong communication and collaboration abilities. The Security Analyst will contribute directly to hands-on, operational information security processes. Candidates should demonstrate foundational knowledge and understanding of Information Security or technology principles, frameworks, and concepts and a desire to learn and grow.The Information Security Analyst is responsible for securing the MSRB by supporting existing controls and processes across multiple dimensions and domains, including MSRB Web Applications, Cloud environments, networks, SaaS platforms, and enterprise systems. The analyst will support operational security processes by triaging our security alerts, phishing reports, vulnerabilities, and end-user requests. The analyst will also perform routine maintenance and troubleshooting of security tools and platforms. We expect the Analyst to work effectively with internal stakeholders, including the information security team, MSRB leadership, developers, system, database, and network administrators.The Analyst will assist with implementing new tools and controls, enhancing existing controls, and monitoring the evolving threat environment to make informed recommendations and changes. The Analyst may also contribute to incident response efforts, education, training, policy, and governance initiatives. *Essential Duties and Responsibilities: * Operational Support:*
  • Directly triage and respond to security alerts, phishing reports, and end-user requests on a regular basis. * Identify and resolve issues in MSRB controls, systems, and applications. * Support maintenance and troubleshooting activities for the Information Security program, including maintenance related to visibility, logging, SIEM, and anti-malware controls * Support vulnerability management processes, such as scanning, assessments, penetration testing, and remediation efforts.2.Continuous Improvement and Attack Surface Reduction:*
  • Identify and implement improvements in vulnerability management, anti-malware and SIEM platforms. * Assist with implementation of new security tools and controls to enhance the organization's security posture. * Proactively monitor and understand the evolving threat environment and cybersecurity developments.3.Enterprise Security:*
  • Apply expertise in enterprise security, including networking and security measures for systems in physical offices, end-user laptops, conference room computers, etc. * Identify configuration issues and improvement opportunities. * Lead and assist defense-in-depth efforts. * Review and improve security-related SaaS configurations. * Assist with Identity and Access Management efforts, including access reviews and implementation of least privilege. * Communication, Education, and Security Awareness:*
  • Assist with incident response efforts. * Assist with selection and management of security awareness courses, simulated phishing campaigns, and other routine education exercises. * Communicate security policies and best practices to end-users, fostering a security-conscious culture. * Assist staff with monitoring for and ensuring compliance with security policies, procedures, standards, and guidelines. * Educate staff on associated risks and benefits of technologies. * Expertise in enterprise security or technology functions, including: * Cloud engineering, application development, systems and network administration, detection and detection engineering, incident response, Identity and Access Management (IAM), networking, and endpoint security. * Critical Thinking Can break problems down into manageable, ordered components and effectively communicate issues and plans to others. Can incorporate new knowledge quickly. Demonstrates the ability to use different problem-solving strategies and select the one that best meets the requirements of the situation. Gathers data to support recommendations and seeks approval before taking action to minimize risk and maximize impact. * Good Judgment Takes self-governed, consistent action to prioritize and weigh cost and value in order to determine the action most appropriately aligned with organizational goals. Keeps the big picture in mind while focusing on specific issues. Weighs risks and tradeoffs reasonably. Reliably escalates when necessary. * Proactivity Eager to tackle day-to-day tasks and help teammates solve problems. Works with more experienced teammates to assist with solving complex problems and complete tasks within time constraints. Takes a deep sense of ownership in their work, no matter how small the task. * Collaborative Takes initiative to actively participate in team interactions. Draws on the strengths of fellow team members. Actively seeks opinions and ideas from people of varied background and experiences to improve decisions. Can effectively distill and communicate complex technical concepts to non-technical staff. Communicates effectively.We are proud to be a collaborative organization that values diversity, equity and inclusion. We offer comprehensive benefits that support our employees' overall mental and physical health and wellness. We aim to empower our employees with the resources they need to achieve a successful work-life integration.A resume must be attached for full consideration. All applicants must demonstrate their ability to work in the U.S. without current or future employer sponsorship. No exceptions will be made.
  • icon no score

    See how you match
    to the job

    Find your dream job anywhere
    with the LiveCareer app.
    Mobile App Icon
    Download the
    LiveCareer app and find
    your dream job anywhere
    App Store Icon Google Play Icon
    lc_ad

    Boost your job search productivity with our
    free Chrome Extension!

    lc_apply_tool GET EXTENSION

    Similar Jobs

    Want to see jobs matched to your resume? Upload One Now! Remove
    Journeyman Information Security Analyst
    New!

    9Th Way Insignia

    Posted Today

    VIEW JOBS 6/11/2024 12:00:00 AM 2024-09-09T00:00 Company Introduction  9th Way Insignia is a service-disabled, veteran-owned small business bringing transformative technology to our government customers so th 9Th Way Insignia Remote Remote

    Information Security Analyst

    Municipal Securities Rulemaking Board