What are the responsibilities and job description for the Information Security Analyst position at The One 23 Group?
Description
At The One 23 Group, our mission is to set the benchmark for excellence in government services. We empower our clients in the Department of War, Intelligence Community, and Federal Civilian sectors to excel with our advanced capabilities. Our dedication lies in fostering a people-first culture, underpinned by steadfast ethical principles. Embracing innovative technologies and process improvements, we are steadfast in our journey toward a future that is both bright and transformative.
Our expertise spans Enterprise IT, Mission IT and Cyber. With our global footprint, we place a strong emphasis on nurturing our people and culture, which forms the core of our successful strategies in leadership and financial management. We pride ourselves on our extensive experience and effective approach, ensuring that we lead with both innovation and integrity.
The Position
The Information Security Analyst will join AMA’s Information Security Office (ISO) Security Operations team, reporting to the Security Operations Director. This role is responsible for implementing and maintaining technical security controls to safeguard the confidentiality, integrity, and availability of AMA’s information assets.
Responsibilities
The analyst will perform duties within the ISO’s Security Operations Center (SOC), including:
At The One 23 Group, our mission is to set the benchmark for excellence in government services. We empower our clients in the Department of War, Intelligence Community, and Federal Civilian sectors to excel with our advanced capabilities. Our dedication lies in fostering a people-first culture, underpinned by steadfast ethical principles. Embracing innovative technologies and process improvements, we are steadfast in our journey toward a future that is both bright and transformative.
Our expertise spans Enterprise IT, Mission IT and Cyber. With our global footprint, we place a strong emphasis on nurturing our people and culture, which forms the core of our successful strategies in leadership and financial management. We pride ourselves on our extensive experience and effective approach, ensuring that we lead with both innovation and integrity.
The Position
The Information Security Analyst will join AMA’s Information Security Office (ISO) Security Operations team, reporting to the Security Operations Director. This role is responsible for implementing and maintaining technical security controls to safeguard the confidentiality, integrity, and availability of AMA’s information assets.
Responsibilities
The analyst will perform duties within the ISO’s Security Operations Center (SOC), including:
- Analyze anomalies from Extended Detection and Response (XDR) and Security Information and Event Management (SIEM) systems to assess severity and impact.
- Implement, maintain, and document security safeguards.
- Review infrastructure changes to ensure adequate protection.
- Conduct network and penetration tests, and application vulnerability scans.
- Promote information security awareness across the organization.
- Monitor internal control systems to maintain appropriate access levels.
- Support projects throughout AMA’s systems development life cycle.
- Perform other duties as assigned.
- On-site in Montgomery, AL, no remote work will be considered.
- US Citizen or Green Card Holder, to convert to Merit. This role will not provide sponsorship.
- Preferred in-person interview. Virtual interviews will be considered.
- Minimum 4 years of Information Security experience.
- Strong analytical skills for effective security analysis and incident response.
- Ability to identify endpoint anomalies and malware exploitation techniques.
- Understanding of social engineering tactics.
- Advanced interpersonal and communication skills.
- Excellent time management and prioritization abilities.
- Ability to take prompt action on security events and collaborate with team members or subject matter experts.
- Required experience with the tools below:
- ProofPoint Targeted Attack Protection, Cloud Threat Response, Protection Server, ZenGuide
- CrowdStrike Falcon EDR
- Microsoft Defender XDR
- Microsoft Sentinel
- SonarQube
- Tenable
- OpenText WebInspect
- Syslog-NG
- CompTia Security
- ISC2 Certified in Cyber security
- Certified Ethical Hacker
- Microsoft SC-200