Jobs and Careers
CA
Cyber Security Analyst
Cascade Asset Management CompanyUnited Statesfull_timeVerifiedPosted 17 Jun 2024
About the role
Cascade Asset Management Company (“Cascade”) is proud to protect and grow capital in service of Bill Gates and the Bill & Melinda Gates Foundation Trust in support of their mission-related and philanthropic activities. Mr. Gates and the Foundation Trust are committed to creating a world where every person has the opportunity to live a healthy, productive life. Located in the Seattle area, Cascade applies its fundamental, long-horizon investment approach across asset classes and geographies, primarily through direct investing, as well as through a select group of funds and segregated accounts. Cascade offers the unique blend of being part of a team that manages a multi-billion-dollar portfolio while also working with professionals in a culture that values intellectual curiosity, collaboration, and respect.
Team DescriptionThe Technology team is responsible for providing high-quality technical support to our internal clients, including world-class Technology Service Desk, systems administration, project management, and development team. We are a small and adaptable team, and this role will have the opportunity to support a wide variety of key IT initiatives, programs, processes, and daily activities.
Position Description Reporting to the Director of Information Security, the Cyber Security Analyst plays a key role in maintaining the organization’s security posture. The Analyst, working closely with external managed services and key teammates, is responsible for maintaining security systems, interacting with vendors, and managing the cyber awareness training program. This role requires a broad set of technical skills and excellent interpersonal abilities. As a member of a small team facing diverse and competing requests, adaptability and versatility are crucial.
Team DescriptionThe Technology team is responsible for providing high-quality technical support to our internal clients, including world-class Technology Service Desk, systems administration, project management, and development team. We are a small and adaptable team, and this role will have the opportunity to support a wide variety of key IT initiatives, programs, processes, and daily activities.
Position Description Reporting to the Director of Information Security, the Cyber Security Analyst plays a key role in maintaining the organization’s security posture. The Analyst, working closely with external managed services and key teammates, is responsible for maintaining security systems, interacting with vendors, and managing the cyber awareness training program. This role requires a broad set of technical skills and excellent interpersonal abilities. As a member of a small team facing diverse and competing requests, adaptability and versatility are crucial.
Key Responsibilities
- Monitoring and Threat Detection
- Ensure security event monitoring tools and systems are functioning properly and being actively monitored by the appropriate parties.
- Promptly investigate security breaches and other cybersecurity incidents.
- Keep abreast of emerging threats, security vulnerabilities and remediation measures.
- Collaborate with other IT teams to identify, prioritize and remediate vulnerabilities.
- Documentation and Reporting
- Maintain vulnerability management systems; produce and distribute vulnerability reports to stakeholders.
- Document security incidents, breaches, and remediation efforts.
- Maintain accurate records of security-related activities.
- Provide regular management reporting for cyber program activities and performance metrics.
- Security Awareness
- Foster and promote end user security awareness across the organization.
- Actively manage the end user security awareness training program.
- Draft and disseminate end user documentation, training content, notifications and alerts.
- Security Tasks and Projects
- Act as the primary escalation point and coordinator for the external 24/7 SOC and other key security vendors.
- Serve as a liaison between Cascade and key security vendors.
- Coordinate and execute IT security projects.
- Provide coordination for 3rd party cyber risk management program, assist business owners with vendor risk assessments.
- Assist with secure onboarding for new software and services.
- Perform other related duties as assigned.
- Risk Assessment and Mitigation
- Analyze IT requirements for new applications and provide objective advice on security measures.
- Assist in risk assessments and risk management processes, including security audits.
Skills and Qualifications
- Bachelor’s degree in CS, Information Systems, Engineering, Business, or a related field.
- 5-6 years of experience in a corporate enterprise IT environment within the information security field.
- Excellent communication (oral, written, presentation) and interpersonal skills.
- Strong analytical and problem-solving abilities.
- Ability to work well in a team environment.
- Proficiency with Microsoft Windows 10/11, M365, Microsoft Active Directory, Microsoft Azure
- Knowledge of cyber risk frameworks, security controls and industry best practices.
- Experience with information security awareness training and monitoring of information security standards.
- Must show attention to detail and the ability to multi-task in a rapidly changing environment, and the ability to work independently.
- Maintains a high standard of ethics, professional judgement and personal conduct.
- Certifications (Preferred)
- CompTIA Security+, Certified Information Systems Security Professional (CISSP), or similar certifications.
- Other
- This position requires some weekend and evening assignments as well as availability
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s