Summary
Kind Lending is a mortgage lending organization focused on providing an effective and customer-oriented mortgage experience. The Cybersecurity Analyst identifies, analyzes, and responds to security threats while supporting compliance, risk management, vulnerability management, and security controls across on-premises and cloud environments. The role monitors security events, investigates incidents, coordinates response activities, and collaborates with IT, Infrastructure, DevOps, and business teams to improve security practices.
Responsibilities
- Monitor security alerts and events from Microsoft Security suite (Sentinel, Defender, Intune) and other security tools
- Investigate and triage security incidents, including malware, phishing, unauthorized access, and data exposure
- Perform root cause analysis and document findings, impact, and remediation steps
- Coordinate incident response activities with IT, Infrastructure, and third-party vendors
- Assist in containment, eradication, and recovery efforts
- Analyze logs, network traffic, and endpoint telemetry to identify suspicious activity
- Conduct vulnerability assessments and review scan results
- Track remediation of vulnerabilities and validate corrective actions
- Stay current on emerging threats, vulnerabilities, and attack techniques
- Support compliance with regulatory and industry frameworks such as ISO 27001, NIST, SOC 2, and applicable financial regulations
- Assist with vendor risk assessments and security questionnaires
- Participate in audits, risk assessments, and control testing activities
- Maintain security documentation, policies, standards, and procedures
- Support security awareness initiatives, including phishing simulations and training programs
- Act as a security advisor to internal teams on best practices and risk mitigation
- Collaborate with DevOps and Infrastructure teams to integrate security into systems and workflows
Skills
- Bachelor's degree in Information Security, Computer Science, or related field, or equivalent professional experience
- 2 to 5 years of experience in cybersecurity operations, SOC, and IT security
- Hands-on experience with SIEM and endpoint security tools
- Working knowledge of networking concepts, operating systems, and cloud environments
- Strong analytical, troubleshooting, and documentation skills
- Ability to manage multiple tasks and respond effectively in high-pressure situations
- Participation in an on-call or incident response rotation required
- Experience in financial services, mortgage, or other regulated industries
- Familiarity with Microsoft Defender, Microsoft Sentinel, Azure, or AWS security services
- Security certifications such as Security+, CySA+, GCIH, or equivalent
- Experience with scripting or automation using PowerShell or Python
- Understanding of cloud-first infrastructure with zero trust and defense-in-depth security models
Qualifications
Must Haves
- Bachelor's degree in Information Security, Computer Science, or related field, or equivalent professional experience
- 2 to 5 years of experience in cybersecurity operations, SOC, and IT security
- Hands-on experience with SIEM and endpoint security tools
- Working knowledge of networking concepts, operating systems, and cloud environments
- Strong analytical, troubleshooting, and documentation skills
- Ability to manage multiple tasks and respond effectively in high-pressure situations
- Participation in an on-call or incident response rotation required
Nice to Haves
- Experience in financial services, mortgage, or other regulated industries
- Familiarity with Microsoft Defender, Microsoft Sentinel, Azure, or AWS security services
- Security certifications such as Security+, CySA+, GCIH, or equivalent
- Experience with scripting or automation using PowerShell or Python
- Understanding of cloud-first infrastructure with zero trust and defense-in-depth security models
Benefits
- Position based out of Irvine, CA or remotely for the right candidate