Sr. Security Analyst - I.T.
On-siteAnkeny, Iowa, United States
Job Summary
Conduct complex incident response investigations involving containment, eradication, recovery, and post-incident reporting while leading technical mentorship of junior analysts. Design and tune detection content across SIEM, EDR, and cloud security platforms, then perform threat hunting based on attacker tradecraft and environmental telemetry. Provide security architecture input for new systems and applications, drive vulnerability management prioritization, and serve as the senior point of contact for internal and external audit engagements. Oversee vendor risk assessments, develop security policies aligned with NIST CSF and CIS Controls, and translate technical risks into business language for stakeholders. Support tabletop exercises and disaster recovery testing while evaluating new security technologies.
Required Qualifications
- Bachelor's degree in computer science, cybersecurity, information systems, or related field, or equivalent relevant experience required
- Minimum of five years' experience in information security, with demonstrated progression of responsibility
- Hands-on experience with incident response across the full lifecycle (detection, containment, eradication, recovery)
- Deep working knowledge across multiple of the following: SIEM, EDR, firewalls, identity and access management and cloud security (Azure and/or AWS)
- Working knowledge of NIST CSF or CIS Controls, or SOC2, including practical experience applying controls in a production environment
- Demonstrated ability to identify, prioritize, and mitigate complex network and application vulnerabilities, along with the capacity to clearly explain risk and prevention strategies to technical and non-technical audiences
- Skilled in risk-based decision making, weighing security needs against operational and business impact
- Excellent verbal and written communication skills, with proven ability to influence without authority
- Ability to lead under pressure during active security incidents
- Strong problem-solving skills with a methodical, evidence-based approach to investigation
- Demonstrated coaching and mentorship ability
- Must be able to lift 10 pounds occasionally
Desired Qualifications
- CompTIA Security+
- CISSP
- CISM
- CISA
- GCIH
- GCIA
- GSEC
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.