Jobs and Careers
MA
Senior Specialist - IT Security
Marsh McLennanUnited StatesRemotefull_timeVerifiedPosted 16 Aug 2024
💰 $187,300/yr($93,700/yr – $187,300/yr)
About the role
Company:
MMC CorporateDescription:
Marsh McLennan is seeking candidates for the following position based out of our Phoenix AZ or a local office in an onsite capacity.
Senior Analyst – Global Cyber Defense – Government Detection and Response Team
What can you expect?
- We are looking for someone to join and grow in our remote-first Government Detection and Response Team (GovDART) in a technical Senior Analyst role on the Monday – Friday business hours shift.
- As a Senior Analyst, you will be responsible for analyzing security event data, assessing the potential impact of events, and creating recommendations to defend against emerging threats.
- You will be involved in the remediation of security incidents.
- You will follow security events through the triage and Incident Response (IR) lifecycle and document all processes in a centralized knowledgebase.
- In this role, you will participate in ongoing security incidents and continuous SOC/IR/Vulnerability Management initiatives, such as new content development and enrichment.
- You will also be responsible for Vulnerability Management (VM) of devices within the identified Gov boundary.
- Additionally, you will collaborate across multiple global corporate boundary teams on various efforts to continue to strengthen the security posture of Marsh & McLennan Companies.
- Operating as a subject matter expert on various security topics across multiple domains including SOC Operations, Cyber Incident Response and Vulnerability Management.
What is in it for you?
- Be able to work remotely, with a global team with a company with a strong brand and strong results to match.
- Be part of an organization with a culture of internal mobility, collaboration, valued partnership from the business and drive for innovation in data & analytics, including the latest AI technology
- Grow your career with direct exposure to Senior Technologists, Business Leaders, and Employee Resource Groups which provide access relevant volunteer and mentoring opportunities and interactions with counterparts in industry groups and client organizations.
- Competitive pay (salary and bonus potential), Full benefits package – starting day one (medical, dental, vision, STD/LTD, life insurance, RSP (Retirement Savings Plan or TFSA (tax free savings account.)
- Entitled to vacation, floating holidays, time off to give back to your community, sick days, and national holidays (with early dismissal)
We will count on you to:
- Analyze network traffic, endpoint security events, and other various log sources to identify threats, assess potential impact, and recommend mitigations
- Perform Incident Response when cyber incidents are declared.
- Perform, analyze, and prepare vulnerability management reports & acting as the Team Lead of the GovDART team.
- Support other security functions and teams to ensure the holistic implementation of security controls, technologies, practices, and programs
- Contribute to the development and improvement of response processes, documentation, tool configurations, and detection logic and creating technical reports to support client requirements
- Assist in additional SOC, IR and VM initiatives, including playbook development and documentation, new rule creation, and tool evaluations for all MMC Detection and Response Teams (DART)
- Maintaining an operational knowledge of global threat trends, known threat actors, common tactics, techniques, and procedures (TTPs), and emerging security technologies
- Collaborating on Security Operation Center team training opportunities and other cross training opportunities within the Federal support teams and the corporate support teams.
- Supporting 24x7 Federal cloud and on-premises operations by participating in an on-call rotation and assisting in ongoing incidents during non-standard hours
What you need to have?
- Undergraduate degree in Computer Science (CS), Computer Information Systems (CIS), other related degrees, or equivalent experience
- 2+ years of information security experience and/or 2-4 years of experience in security analysis in a non-security focused role
- Demonstrated experience with security technologies and alerts, such as intrusion prevention and detection systems, web proxies, SIEM, SOAR, EDR, firewalls, web application scanner, vulnerability scanners, forensics tools, open-source tools, or other security technologies
- Knowledge in one or more of the following domains: Network Operations and Architecture, Operating Systems, Identity and Access Management, Programming, Cloud Computing, Databases, or Cryptograp
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s