Logo of Huzzle

Find 51,000+ jobs, internships & events from 6,000+ top companies on Huzzle using AI

InfoSec Analyst

image

BPM LLP

2mo ago

  • Job
    Full-time
    Junior Level
  • Data
    IT & Cybersecurity
  • Quick Apply

AI generated summary

  • You need a degree or diploma in Computer Science, relevant certifications, SOC experience, knowledge of security tools, strong networking skills, and good communication abilities.
  • You will assist in security architecture design, maintain policies, monitor security solutions, analyze logs, conduct assessments, and provide user support for security tools.

Requirements

  • College diploma or university degree in Computer Science and/or two years equivalent work experience.
  • One or more of the following certifications:
  • CompTIA Security+
  • GIAC Information Security Fundamentals
  • Microsoft Certified Systems Administrator: Security
  • Associate of (ISC)2
  • Extensive experience working in a SOC environment responding to incidents and breaches.
  • Experience with firewalls, intrusion detection systems, anti-virus software, data encryption, and other industry-standard techniques and practices.
  • Experience in E-Discovery, including content searches and relevant procedures and practices.
  • Experience with current systems software, protocols, and standards.
  • Working technical knowledge of network, PC, and platform operating systems.
  • Strong understanding of IP, TCP/IP, and other network administration protocols.
  • Strong understanding of applicable practices and laws relating to data privacy and protection.
  • Familiarity with switches, routers, and Firewalls.
  • Proven analytical and problem-solving abilities.
  • Ability to effectively prioritize and execute tasks in a high-pressure environment.
  • Good written, oral, and interpersonal communication skills.
  • Ability to conduct research into IT security issues and products as required.
  • Ability to present ideas in business-friendly and user-friendly language.
  • Highly self-motivated and directed.
  • Keen attention to detail.
  • Team-oriented and skilled in working within a collaborative environment.

Responsibilities

  • Participate in the planning and design of enterprise security architecture under the direction of the IT Security Manager, where appropriate.
  • Participate in creating and maintaining enterprise security documents (policies, standards, baselines, guidelines, and procedures) under the direction of the IT Security Manager, where appropriate.
  • Maintain up-to-date detailed knowledge of the IT security industry, including awareness of new or revised security solutions, improved security processes, and the development of new attacks and threat vectors.
  • Recommend additional security solutions or enhancements to existing security solutions to improve overall enterprise security.
  • Perform the deployment, integration, and initial configuration of all new security solutions and any enhancements to existing security solutions following standard best operating procedures generically and the enterprise’s security documents specifically.
  • Maintain up-to-date baselines for the secure configuration and operations of all in-place devices, whether under direct control (i.e., security tools) or not (e.g., workstations, servers, network devices).
  • Maintain operational configurations of all in-place security solutions per the established baselines.
  • Monitor all in-place security solutions for efficient and appropriate operations.
  • Review logs and reports of all in-place devices, whether they are under direct control (i.e., security tools (Microsoft Sentinel, Defender, etc.)) or not (e.g., workstations, servers, network devices). Interpret the implications of that activity and devise plans for appropriate resolution.
  • Participate in investigations into problematic activity.
  • Participate in E-Discovery projects.
  • Participate in the design and execution of vulnerability assessments, penetration tests, and security audits.
  • Participate in application and vendor reviews which involve assessing risks, compliance with security requirements, verifying adherence to regulatory standards and organizational security policies.
  • Provide on-call support for end users for all in-place security solutions.

FAQs

What is the primary role of the InfoSec Analyst at BPM?

The primary role of the InfoSec Analyst is to manage day-to-day operations of in-place security solutions and to identify, investigate, and resolve security breaches detected by those systems.

What qualifications are required for the InfoSec Analyst position?

Candidates must have a college diploma or university degree in Computer Science or equivalent work experience, along with one or more relevant certifications such as CompTIA Security+, GIAC Information Security Fundamentals, or (ISC)2 Associate.

What kind of experience is preferred for this role?

Extensive experience working in a SOC environment, a background in handling incidents and breaches, and familiarity with firewalls, intrusion detection systems, and data encryption are preferred.

What certifications are acceptable for this position?

Acceptable certifications include CompTIA Security+, GIAC Information Security Fundamentals, Microsoft Certified Systems Administrator: Security, and Associate of (ISC)2.

Is the InfoSec Analyst role focused only on reactive security measures?

No, the role also involves proactive measures such as planning and designing enterprise security architecture and participating in vulnerability assessments and security audits.

Will the InfoSec Analyst be involved in the development of security policies?

Yes, the InfoSec Analyst will participate in creating and maintaining enterprise security documents, including policies, standards, baselines, guidelines, and procedures.

What personal attributes are valued for this position?

The ideal candidate should possess strong analytical and problem-solving abilities, effective prioritization, good communication skills, and the ability to work collaboratively in a team-oriented environment.

How does BPM emphasize work-life balance for its employees?

BPM fosters a flexible culture that allows professionals to maintain a balanced lifestyle between work responsibilities and personal commitments, reflecting the firm’s people-centered culture.

Will the InfoSec Analyst need to provide support for end users?

Yes, the InfoSec Analyst will provide on-call support for end users regarding all in-place security solutions.

What types of security solutions should the InfoSec Analyst be familiar with?

The InfoSec Analyst should have a working knowledge of firewalls, intrusion detection systems, anti-virus software, data encryption, and other industry-standard security techniques and practices.

Because People Matter is more than our brand promise. It's what motivates us to go the extra mile.

Accounting
Industry
1001-5000
Employees
1986
Founded Year

Mission & Purpose

BPM LLP is one of the 35 largest public accounting and advisory firms in the United States. Recently recognized as one of IPA’s 100 Fastest-Growing Firms, BPM works with clients in the agribusiness, consumer business, financial and professional services, life science, nonprofit, wine and craft beverage, real estate, and technology industries. As a certified B Corp, BPM’s diverse perspectives, expansive industry knowledge, and progressive solutions come together to create exceptional experiences for individuals and businesses around the world. To learn more, visit our website: https://www.bpm.com/