Security Analyst
Role summary
The Security Analyst is responsible for responding to and triaging security alerts across various security technologies. This role involves investigating activities and events, executing timely remediation or escalation, and supporting the continuous improvement of detection and response processes to enhance the overall security posture. The analyst will act as an Incident Response team member, utilize a range of security tools, conduct threat hunting, analyze email threats, monitor identity-related security activity, and document findings. Collaboration with technology teams, IT vendors, and business units is key to ensuring security initiatives are completed and vulnerabilities are remediated. Experience in regulated environments like HIPAA and SOC 2 is required, along with familiarity with security frameworks such as NIST and ISO.
POSITION SUMMARY
The Security Analyst responds and triages security alerts across various security technologies. The role investigates activities and events and executes timely remediation or escalation. The role also supports continuous improvement of detection and response processes to strengthen overall security posture.
ESSENTIAL FUNCTIONS
- Act as an Incident Response team member, available to respond to alerts and calls during and after business hours.
- Work with various security tools: Intrusion Prevention and Detection, Antivirus/Anti-malware protection, Endpoint Detection and Response, web filtering, vulnerability management scanners, forensic tools, cross detection and response tools, Mobile Device Management, and Data Loss Prevention management controls.
- Conduct proactive threat hunting across environment utilizing advanced query techniques, such as Apache, PowerShell, etc.
- Analyze, diagnose, and methodically identify malicious emails through both security tooling and demonstrated experience with known risks, attack vectors, and observed patterns of life
- Configure and optimize email security protocols to prevent email-based threats
- Monitor and triage identity-related security activity, such as risky sign-ins, impossible travel, and other anomalous activity, initiating containment steps if needed
- Work closely with established third-party networking and security oversight relationships to facilitate a consistently strong security posture
- Meticulously document findings, tasks, and forensic investigations performed on security events and incidents
- Identify and report security vulnerabilities, collaborating with technology teams to ensure successful remediation
- Investigate and resolve access blocks generated by web filtering technology, working with end users to validate policy alignment
- Partner with the technology department and other business units to ensure security initiatives are completed and security gaps are remediated
- Support user education on secure best practices
- Work effectively with IT vendors and managed services partners
- Other duties as assigned
EDUCATION
- B.S. or equivalent in Computer Science, Information Science & Technology, or related field or equivalent work experience required. Security certifications highly desired.
EXPERIENCE AND SKILLS
- Must possess at least three years experience in technical security related work required.
- Demonstrated history of security operations experience, including threat hunting, runbook development, alert validation and containment, anomaly detection, etc.
- Strong experience in Active Directory, Azure and Microsoft Entra ID
- Strong experience in vulnerability management
- Knowledge of network security controls, protocols, device and security policy design and Implementation
- Extensive knowledge around network monitoring and analysis.
- Experience working in a highly regulated environment
- Extensive knowledge surrounding identity risk and IOC analysis
- Experience in HIPAA and SOC 2 compliance environments
- Familiarity with NIST SP 800 series, ISO/IEC 27000 series, and similar frameworks.
POSITION COMPETENCIES:
- Job Knowledge
- Time Management
- Accountability
- Communication
- Initiative
- Customer Focus
PHYSICAL DEMANDS
This is a standard desk position requiring extended sitting and computer work.
WORK ENVIRONMENT
Remote
Here at Allied, we believe that great talent can thrive from anywhere. Our remote friendly culture offers flexibility and the comfort of working from home, while also ensuring you are set up for success. To support a smooth and efficient remote work experience, the internet connection must be obtained through a cable broadband or fiber optic internet service provider with speeds of at least 100Mbps download/25Mbps upload. Reliable internet service is essential for staying connected and productive.
The company has reviewed this job description to ensure that essential functions and basic duties have been included. It is not intended to be construed as an exhaustive list of all functions, responsibilities, skills, and abilities. Additional functions and requirements may be assigned by supervisors as deemed appropriate.
Compensation is not limited to base salary. Allied values our Total Rewards, and offers a competitive Benefit Package including, but not limited to, Medical, Dental, Vision, Life and Disability Insurance, Generous Paid Time Off, Tuition Reimbursement, EAP, and a Technology Stipend.
Allied reserves the right to amend, change, alter, and revise, pay ranges and benefits offerings at any time. All applicants acknowledge that by applying to the position you understand that the specific pay range is contingent upon meeting the qualification and requirements of the role, and for the successful completion of the interview selection and process. It is at the Company's discretion to determine what pay is provided to a candidate within the range associated with the role.
Similar roles
- Security AnalystDecryption Digest ® · United States · Remote
- Security AnalystMjolnir Security · Toronto, Ontario, Canada · Hybrid
Security AnalystExperis Canada · Canada · Remote
Security AnalystCanada's Wonderland · Ontario, Canada · Onsite
Security AnalystCanada's Wonderland · Ontario, Canada · Onsite