AHEAD builds platforms for digital business. By weaving together advances in cloud infrastructure, automation and analytics, and software delivery, we help enterprises deliver on the promise of digital transformation.
At AHEAD, we prioritize creating a culture of belonging, where all perspectives and voices are represented, valued, respected, and heard. We create spaces to empower everyone to speak up, make change, and drive the culture at AHEAD.
We are an equal opportunity employer, and do not discriminate based on an individual's race, national origin, color, gender, gender identity, gender expression, sexual orientation, religion, age, disability, marital status, or any other protected characteristic under applicable law, whether actual or perceived.
We embrace all candidates that will contribute to the diversification and enrichment of ideas and perspectives at AHEAD.
The Security Analystis expected to monitor security feeds streaming from client servers, network devices, and end user workstations, operate and maintain network security equipmentat client locations. The Analystis expected to be familiar with a wide range of security tools and understand basic security fundamentals. TheAnalystwill perform information security event analysis and must possess knowledge of operating systems, TCP/IP networking, network attacks, attack signatures, defense countermeasures, vulnerability management, and log analysis.
Roles & Responsibilities
- Own and pro-actively manage security incidents
- Know and understand trends in security incident metrics and maintain their healthy security operations
- Ensure prompt and complete resolution of technical challenges and business issues, drive other team and team members as required
- Maintain documentation of security technology environment(s) and system configurations
- Understanding of ITIL Practices and Processes
- Assess incident severity and escalate to the next level as needed
- Keep abreast of changes with incident status during issue resolution
- Set clear expectations and provide timely follow-up as appropriate
- Utilize internal guidelines for effective call processing and escalation and client service
- Interact with network intrusion detection devices and other security systems via proprietary and commercial consoles, both local and remote
- Collaborate and establish strong relationships with internal CDI business units to drive endto-end success
- Act as security escalation for other CDI Support teams (Service Desk, SOC/NOC, CloudOps, etc.) to ensure timely resolution of incidents
- Communicate clearly and precisely in written and verbal form, and maintain accurate and timely records in our service delivery systems
- Work closely with the assigned security teams and groups to ensure satisfaction in your day-to-day operations
- Provide outstanding, professional levels of service and support when working incidents and problems as assigned
- Assess security technology and business requirements and provide consultative advice and recommendations for optimization, growth and improved results
- Follow operational procedures as assigned (e.g., Change Management)
- Participate in after hours On Call rotation
Requirements
- 3-5years of experience in Information Security, Incident Response, etc. (or related field)
- Incident handling/response experience
- Working knowledge of common operating systems (Windows, Linux, etc.) and basic endpoint security principles
- Understanding ofanda strong desire to learn common security technologies (IDS, Firewall, SIEM, etc.)
- The ability to think creatively to find elegant solutions to complex problems
- Excellent verbal and written communication skills
- The desire to work both independently and collaboratively with a larger team
- A willingness to be challenged along with a strong appetite for learning
- Hands-on experience with common security technologies (IDS, Firewall, SIEM, etc.)
- Previous Managed Service Provider experience preferred
- IT consulting experience a plus
- Firm understanding of regular expressions
- Understanding of database structure and queries
- Understanding of basic network services, vulnerabilities and attacks
- Good knowledge of HIDS/NIDS platforms, as well as exploits and vulnerabilities
- Certifications in the following areas a plus: CISSP, CEH, CISA, Cisco Networking, VMware, Microsoft Windows Server, AWS, Azure, EMC and enterprise level firewalls
Why AHEAD
Through our daily work and internal groups like Moving Women AHEAD and RISE AHEAD, we value and benefit from diversity of people, ideas, experience, and everything in between.
We fuel growth by stacking our office with top-notch technologies in a multi-million-dollar lab, by encouraging cross department training and development, sponsoring certifications and credentials for continued learning.
We understand that you have a life outside of work. That's why we offer paid time off, paid company holidays, and a great benefits program including maternity/paternity leave and much more!