Cyber Security Analyst (Remote)
Susan G. KomenAbout the role
WHO WE ARE
Susan G. Komen brings a 100% virtual working environment, and you can work anywhere within the U.S. We are a force united by a promise to end breast cancer forever. For over 40 years, we've led the way by funding groundbreaking research, community health initiatives and advocacy programs in local communities across the U.S. Susan G. Komen is the ONLY organization that addresses breast cancer on multiple fronts such as research, community health, outreach and public policy initiatives to have the biggest impact against this disease.
Komen strives to have a culture of passionate, growth-minded professionals who thrive in a team environment, and work collaboratively to inspire greatness in others! We take an ongoing approach to ensure open communication from all levels throughout the organization. It’s encouraged to give and receive feedback to ensure two-way accountability with a focus on continual improvement both personally and professionally!
What you will be doing in the role of a Cyber Security Analyst
The Cyber Security Analyst is a member of the IT Department. The Cyber Security Analyst protects systems, hardware, applications, services, and networks from threat actors globally. The analyst's primary role is to understand the organization’s IT infrastructure in detail, monitor and identify malicious activity, identify vulnerabilities, maintain compliance obligations, and evaluate threats.
What you will bring to the table
- General Operational tasks supporting Information Security Operations.
- Assist in the development and monitoring of policies, procedures, playbooks, and best practices.
- Maintaining compliance obligations associated with HIPAA, Payment Card Industry, and the Center for Internet Security.
- Identify potential vulnerabilities and advise on solutions to mitigate the associated risks.
- Development of KPIs and metrics related to application security risk.
- Collaborate with IT professionals to harden systems and applications.
- Participate in Disaster Recovery, Business Continuity, and Incident Response planning and operations.
- Remain current with emerging security threats, trends, and countermeasures.
- Administer Jira projects and automation tasks.
- All other duties as assigned.
- Monitor and analyze security events and alerts.
- Configure and tune detection and alert criteria of SIEM platforms and other tools.
- Investigate and triage potential threats identified through security alerts, anomalies, or reports.
- Conduct research to identify potential attack vectors and vulnerabilities.
- Evaluate proposed and existing processes, services, and technologies for risk.
- Utilize vulnerability management tools to identify vulnerabilities across endpoints, services, infrastructure, servers, and applications.
- Coordinate vendor management assessments.
- Monitor and analyze events and alerts of systems, services, and infrastructure.
- Perform vulnerability scanning and prioritize and assign remediation tasks.
- Implement and administer endpoint detection and response solutions.
- Evaluate proposed technologies to identify associated risks and controls.
- Participate in awareness initiatives through user training, workshops, and phishing campaigns.
- Create and maintain procedures, automation, and user guides.
- Coordinate email flow, filtering, detection, and advise on email security configurations.
- Conduct vulnerability scans and assist in remediation efforts using integrated tools within the M365 ecosystem.
- Partner with the IT team to remediate identified vulnerabilities effectively.
- Assist in leveraging security automation tools to streamline processes such as alert triage, resolution, and log analysis.
- Help identify and implement opportunities for automation.
- All other duties as assigned.
We know you will have and be able to
- Bachelor’s degree in Information Systems, Computer Science, or related field. Education may be substituted for select experience.
- A minimum of 5-7 years of experience is required to effectively perform the job’s responsibilities.
- Knowledge of cybersecurity principles, incident detection, analysis, and response methods.
- Skills working with Microsoft Windows, Active Directory, Defender, Intune, Purview, Sentinel, and Microsoft Office applications.
- Extensive knowledge and experience with Microsoft 365 administration, including Exchange Online, SharePoint Online, OneDrive for Business, Teams, and related services.
- Experience with configuring and utilizing SIEM platforms.
- Basic scripting or development experience.
- Ability to use communic
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s