Information Security Analyst – Hands-On Operations, Compliance, and Cloud
Remote
Posted 1 month ago
ScribeAmerica is seeking an Information Security Analyst to prevent cybersecurity incidents through monitoring, detection, analysis, and response across a multi-platform environment. This role is highly technical, involving hands-on security integration, vulnerability management, and support for critical compliance and disaster recovery activities.
- Location: Remote (Full-time).
- Salary Range: $60,000 – $70,000 (Annual Salary).
- Experience: Minimum 2-4 years experience in Cybersecurity technology or a related technology field.
- Education/Certification (Preferred): AA or AS degree in a related field. SSCP or CompTIA Security+ certified professionals preferred.
- Focus: Security monitoring (SIEM/SOAR), vulnerability scanning and patching, compliance (ISO 27001/HiTrust), Public Cloud security (AWS/GCP), and Incident Response.
Duties and Responsibilities: Operations, Compliance, and Cloud
The analyst manages both daily operational security and critical compliance/architecture projects.
- Monitoring & Analysis: Daily review of Security Alerts, Security Dashboards, and SEIM/SOAR systems. Utilizes troubleshooting tools to review and respond to cyber threats.
- Vulnerability & Testing: Participates in hands-on scanning and patching of Windows/Linux/MacOs systems using vulnerability scanning and patch management tools. Performs monthly, quarterly, yearly Security Pen-testing, Security Scans, and Red Team/Blue Team engagements.
- Compliance & Authorization: Performs in all activities of Certification and Accreditation (C&A) / Assessment and Authorization (A&A). Supports the implementation of ISO 27001 CSF and HiTrust CSF.
- Cloud Security: Assists in the Security architecture, design, configuration, and implementation of AWS/GCP public cloud, including connectivity, network, and containerization.
- Incident Response: Acts as a member of the Company Cyber Incident Response team and assists during all BCP/DR (Business Continuity / Disaster Recovery) activities.
- Automation: Develops scripts/programs to automate system compliance lockdown processes.
Required Education and Experience
- IT Infrastructure: Full-stack knowledge of IT infrastructure, from applications & databases to hypervisors and networking.
- System Administration: Experience in Linux/Windows/MacOS System Administration and Network/System Administration.
- Security Tools: Knowledge/Experience with vulnerability scanners and penetration testing tools.
- Cloud: Public Cloud Infrastructure Expertise (GCP, AWS or Azure).
- Other Skills: Solid understanding of computer networking, basic understanding of software development/build processes, OSINT and Social Engineering skills, and excellent technical writing skills.
Job Features
| Job Category | IT & Cybersecurity |