Summary
VC3 provides managed IT and technology services to municipalities and organizations across the United States and Canada. The IT Security Analyst I will monitor security events, triage incident response tickets, investigate potential threats using endpoint detection and response tools, and communicate security findings and remediation steps to clients and internal teams during the evening shift.
Responsibilities
- Translate Cyber Security concepts into non-technical terms for clients to clearly understand specific applications to their business priorities
- Manage the security event monitoring and incident response ticket queues and triage as appropriate to meet the established service level agreements/objectives
- Clearly convey indicators of compromise, isolation, and remediation steps
- Analyze and interpret system, security, and application logs in order to diagnose faults, spot abnormal behavior, and rule out false positives
- Effectively utilize VC3 and client toolsets include, but not limited to, End Detection and Response tools to investigate alerts, anomalies and build accurate timelines related to possible compromise
- Follow established procedures to investigate, escalate, contain, or eradicate malicious activity
- Develop and deliver written and oral reports to clients, teammates, and management to aggregate and communicate security information and metrics
- Provide input and recommendations to improve internal processes and procedures
- Participate in threat hunting activities and other special projects as required
- Additional duties as required
- Role is scheduled for 4pm - 1am EST
Skills
- **Candidates must be available 4pm - 1am EST for this role.**
- * Two years' work experience in the Information Security or related fields
- * Experience with SIEM platforms, firewall management, and endpoint detection and response platforms
- * One year or more of experience with EDR solutions, ESGs, vulnerability management and content filtering
- * One of the following certifications preferred: CompTIA Security+, CompTIA CySA+, CCNA, C|EH, SSCP, or equivalent
Qualifications
Must Haves
- **Candidates must be available 4pm - 1am EST for this role.**
- * Two years' work experience in the Information Security or related fields
- * Experience with SIEM platforms, firewall management, and endpoint detection and response platforms
- * One year or more of experience with EDR solutions, ESGs, vulnerability management and content filtering
Nice to Haves
- * One of the following certifications preferred: CompTIA Security+, CompTIA CySA+, CCNA, C|EH, SSCP, or equivalent
Benefits
- Remote-first work arrangement with flexibility to work remotely; some roles may include an onsite component depending on team needs.
- Company-paid time off.
- Mental health and leave support through the Employee and Family Assistance Program.
- Company-matched 401(k)/RRSP plans.
- Structured development through the Leadership Academy.
- Monthly learning sessions.
- Mentorship programs.
- Learning reimbursements.
- Internal career fairs.
- Job shadowing.
- Personalized career-pathing to support internal mobility.
- Autonomy and recognition.