Atlas Technica
Information Security Analyst
Summary
Atlas Technica is an IT management and cybersecurity firm serving hedge funds and investment firms. We are seeking a skilled Information Security Analyst to join our rapidly growing organization and work closely with the Chief Information Security Officer to maintain and improve security posture for Atlas and its clients. This highly technical role offers excellent career development opportunities with a position that will evolve, providing opportunities for growth and adaptation.
What you'll do
Vulnerability Management:
- Review vulnerability reports and research scalable solutions for remediation
- Collaborate with Support/NOC to ensure minimal client impact and facilitate maintenance windows
- Work with CS/Engineering to script and automate remediations
- Track progress in ticketing system with master and sub tickets for multi-client initiatives
- Address vulnerabilities for third-party vulnerability management across clients
Risk Management and Due Diligence:
- Provide timely responses to Due Diligence Questionnaires (DDQs)
- Review and analyze findings from risk assessments and penetration tests
- Recommend remediation strategies for identified vulnerabilities
- Participate in Business Impact Analyses and tabletop exercises
Industry Benchmark Alignment:
- Measure alignment with Microsoft benchmarks in Intune
- Address vulnerabilities in workstation builds and cloud infrastructure
- Harden systems across workstations, cloud infrastructure, and security configurations
SOC 2 and Additional Security Tasks:
- Perform test restores and review KnowBe4 phishing tests
- Review SIEM logs and assist in addressing cybersecurity incidents
- Work with NOC and outsourced SOC on remediation runbooks
Requirements
Required Skills and Experience:
- Strong understanding of cybersecurity principles and practices
- Experience with vulnerability management and remediation
- Familiarity with Microsoft Intune and security benchmarks
- Excellent analytical and problem-solving skills
- Ability to work collaboratively with cross-functional teams
- Strong written and verbal communication skills
- Strong ability to work independently
- Experience with security tools (SIEM, IDS/IPS, vulnerability scanners)
- Experience with RMM/SOAR and other automation platforms
- Experience scripting and writing runbooks
Desirable Qualities:
- Experience working in an MSP environment (preferred, but not required)
- Relevant certifications (AZ-500, SC-900, SC-300, CompTIA Security+, etc.)
Conditions
Schedule and Location:
Remote position for Ukraine (UA) candidates only
Benefits and Perks:
Competitive salary, comprehensive benefits, and great perks. Professional yet friendly environment with promotion of professional and career development opportunities.