cni

Junior Security Analyst

cni

Norman · Posted Sep 14

Data Onsite
Apply now

Location: Norman, OK

The Junior Information Technology (IT) Security Analyst will be responsible for assisting with two core functions for the enterprise. The first is the day-to-day operations of the in-place security solutions while the second is the identification, investigation and resolution of security breaches detected by those systems. Secondary tasks may include involvement in the implementation of new security solutions, participation in the creation and or maintenance of policies, standards, baselines, guidelines and procedures as well as assisting with conducting vulnerability audits and assessments. The Junior IT Security Analyst is expected to be fully aware of the enterprise’s security goals as established by its stated policies, procedures, and guidelines and to actively work towards upholding those goals.

Chickasaw Nation Industries, Inc. serves as a holding company with multiple subsidiaries engaged in several lines of business (Business Services, Health, Infrastructure and Engineering, Mission Optimization, Technology and Transportation) for the federal government and commercial enterprises. A portion of our profits is used to support Chickasaw citizens. We are proud to support the economic development and long-term viability of the Chickasaw Nation and its people. CNI offers premium benefits eligible on the first day of hire to full time employees; (Medical - Dental – Vision), Company Life Insurance, Short-Term and Long-Term Disability Insurance, 401(K) Immediate Vesting, Professional Development Assistance, Legal Aid Assistance Program, Family Planning / Fertility Assistance, Personal Time Off, and Observance of Federal Holidays.

As a federal contractor, CNI is a drug-free workplace and adheres to the Federal Controlled Substance Act.

ESSENTIAL REQUIREMENTS

One or more of the following certifications:

CompTIA Security+

CompTIA Network+

GIAC Information Security Fundamentals

Microsoft Certified Systems Administrator: Security

Associate of (ISC)2

PREFERRED REQUIREMENTS

CCST Cybersecurity or Networking

CompTIA CySA

ESSENTIAL DUTIES AND RESPONSIBILITIES Must be able to pass a background check.

Must be a U.S. born or naturalized citizen due to government or federal requirement

Essential Duties and responsibilities include the following.  Other duties may be assigned.

Strategy and Planning

Participates in the planning and design of enterprise security architecture.

Participates in the creation of enterprise security documents (policies, standards, baselines, guidelines, and procedures).

Participates in the planning and design of a risk management plan, enterprise business continuity plan and disaster recovery plan.

Analyze and Develop

Maintains up-to-date detailed knowledge of the IT security industry including awareness of new or revised security solutions, improved security processes, and the development of new attacks and threat vectors.

Assists in analyzing security events and incidents to identify potential threats or breaches.

Assists in the review and impact processes for all incoming cyber security information: bulletins, vendor notifications and communications from government sources. Determine if CNI is affected and then lead the resolution processes if necessary.

Works with security analysts to recommend additional security solutions or enhancements to existing security solutions to improve overall enterprise security.

Operational Management

Helps ensure that up-to-date baselines are maintained for the secure configuration and operations of all in-place devices e.g. security tools, workstations, servers, network devices, etc.

Assists with conducting vulnerability assessments and penetration testing on computer systems, networks, and applications.

Assists with evaluation and remediation of user-reported malicious email

Collaborates with security analysts to develop and implement security policies, procedures, and standards

Participates in incident response tasks, partnering with 3rd party SOC, cyber security insurance vendors, and internal resources.

Collaborates with cross-functional teams to ensure compliance with relevant regulatory requirements and industry standards.

Assists in conducting risk assessments to identify potential security weaknesses and recommend appropriate controls.

Assists in the deployment and management of security tools, intrusion detection systems, and antivirus software.

Participates in incident response activities, including investigating security incidents, documenting findings, and recommending remediation actions.

Stays up-to-date with the latest security trends, vulnerabilities, and industry best practices.

Assists in conducting security awareness training sessions for employees to promote a culture of cybersecurity awareness.

Monitors and maintains all operational configurations of all in-place security solutions as per the established baselines.

Reviews logs and reports of all in-place devices. Interprets the implications of that activity and devise plans for appropriate resolution.

Participates in the design and execution of vulnerability assessments, penetration tests, and security audits.

Provides on-call support for end users for all in-place security solutions; this can be 24x7 support.

Assists in creation and maintenance of a patching schedule; work with technical teams to develop patching priorities.

Assists the Information Security Compliance Manager with developing relevant security data reports.

Assists the Information Security Compliance Manager with managing the security training system and confirming completion of training by all employees.

Assists in the creation and maintenance of plan, policy, and procedure review schedule for the Enterprise.

EDUCATION AND EXPERIENCE

Bachelor's degree in Computer Science and zero to three (0-3) years relevant experience, or equivalent combination of education/experience.

PHYSICAL DEMANDS

The physical demands described here are repre

What they are looking for

Comptia security+ Comptia network+ Giac information security fundamentals Microsoft certified systems administrator: security Associate of (isc)2

Details

Work type
Onsite
Visa sponsorship
Not offered

Get new Data internships by email

Free daily digest, matched to what you pick. Unsubscribe anytime.