Summary
VC3 is a managed IT services company that serves municipalities and organizations across the United States and Canada. The Security Analyst I will manage security event monitoring and incident response, ensuring timely triage and utilizing tools to investigate potential threats.
Responsibilities
- Translate Cyber Security concepts into non-technical terms for clients to clearly understand specific applications to their business priorities
- Manage the security event monitoring and incident response ticket queues and triage as appropriate to meet the established service level agreements/objectives
- Clearly convey indicators of compromise, isolation, and remediation steps
- Analyze and interpret system, security, and application logs in order to diagnose faults, spot abnormal behavior, and rule out false positives
- Effectively utilize VC3 and client toolsets include, but not limited to, End Detection and Response tools to investigate alerts, anomalies and build accurate timelines related to possible compromise
- Follow established procedures to investigate, escalate, contain, or eradicate malicious activity
- Develop and deliver written and oral reports to clients, teammates, and management to aggregate and communicate security information and metrics
- Provide input and recommendations to improve internal processes and procedures
- Participate in threat hunting activities and other special projects as required
- Additional duties as required
Skills
- Two years' work experience in the Information Security or related fields
- Experience with SIEM platforms, firewall management, and endpoint detection and response platforms
- One year or more of experience with EDR solutions, ESGs, vulnerability management and content filtering
- One of the following certifications preferred: CompTIA Security+, CompTIA CySA+, CCNA, C|EH, SSCP, or equivalent
Qualifications
Must Haves
- Two years' work experience in the Information Security or related fields
- Experience with SIEM platforms, firewall management, and endpoint detection and response platforms
- One year or more of experience with EDR solutions, ESGs, vulnerability management and content filtering
Nice to Haves
- One of the following certifications preferred: CompTIA Security+, CompTIA CySA+, CCNA, C|EH, SSCP, or equivalent
Benefits
- Flexibility– remote-first; not remote-only (some roles include an onsite component, depending on team needs)
- Company-paid time off
- Mental health support
- Leave support
- Employee and Family Assistance Program
- Financial wellness through company-matched 401(k)/RRSP plans
- Structured development through our Leadership Academy
- Monthly learning sessions
- Mentorship programs
- Learning reimbursements
- Internal career fairs
- Job shadowing
- Personalized career-pathing to support internal mobility