Security Analyst II Job at JoshCo Group LLC in Las Vegas
JoshCo Group LLC, Las Vegas, NV, United States
Job Type
Full-time
Description
Who we are:
Veteran Benefits Guide (VBG) was founded by a former United States Marine with the goal of ensuring that Veterans receive accurate disability benefits in a timely manner. Since it was founded, VBG has guided more than 35,000 Veterans through the complicated Veteran Affairs (VA) disability claims process. As a company founded by a Veteran and staffed by many Veterans and families of Veterans, VBG is committed to advocating for policies that protect the rights and interests of former service members.
Summary:
The Security Analyst II is a key member of the Information Technology (IT) department, responsible for protecting the organization's digital assets, networks, and systems against cyber threats and breaches. This role involves a higher level of responsibility in monitoring, analyzing, and responding to security incidents, implementing advanced security measures, and ensuring compliance with security policies and procedures.
What we offer:
We invest in our people, supporting their growth through mentorship and professional development. We strive to offer a work-life balance, creating a culture that is people-focused and fun. Here are some of the benefits you can expect as part of our team:
•Work From Home: Flexibility to work from home based on business needs and policies.
•Work/life balance: We offer a Monday - Friday 8 a.m. to 5 p.m. schedule.
•Benefits: Choice of Medical, Vision, and Dental plans with company premium contributions, accrual of 40 hours of PTO & 40 hours of sick time annually, 8 paid holidays plus a floating holiday, 401k with company match after 90 days. Metric-driven bonus and many other benefits.
•Growth and Development: In-house training and on-the-job development prepare our employees for promotional advancement, leadership opportunities, and lateral transfer skill development.
Requirements
Essential Functions:
•Continuously monitor networks and systems for security threats and vulnerabilities, identifying risks proactively.
•Lead response to security incidents, conducting in-depth investigations and implementing robust mitigation measures.
•Maintain comprehensive incident logs and generate detailed reports for management.
•Conduct regular security assessments, penetration testing, and vulnerability scanning to identify and address weaknesses.
•Collaborate with IT teams to remediate vulnerabilities and advise on best practices for enhanced security.
•Assist in the development and implementation of advanced security policies, procedures, and standards.
•Ensure compliance with relevant regulations, standards, and industry best practices (e.g., GDPR, HIPAA, ISO 27001).
•Stay updated on emerging threats by monitoring threat intelligence sources and evaluating their impact on security posture.
•Configure and maintain security tools, including firewalls, intrusion detection systems, and antivirus solutions.
•Promote security awareness through training programs, educational materials, and security drills.
•Document and communicate findings and recommendations to stakeholders and management.
•Manage and secure user access, permissions, and Identity and Access Management (IAM) systems.
•Participate in internal and external security audits, addressing findings with actionable insights.
•Administer and maintain PowerShell scripts as part of security automation and system management.
Qualifications or Competencies:
•Experience: 2-4 years in a security-related role, showcasing a deep understanding of cybersecurity principles, best practices, and industry standards.
•Skills: Strong analytical skills, attention to detail, and experience with security incident response and vulnerability assessment.
•Technical Proficiency: Familiarity with security tools and technologies, with PowerShell as a desired skill for security automation.
•Certifications: Professional certifications (e.g., CompTIA Security+, CISSP, CISM) are a plus.
Education:
•Degree: Bachelor's degree in Cybersecurity, Engineering, Computer Science, Information Systems, or equivalent experience preferred.
Where we are located:
This position is based in our Las Vegas office on E. Warm Springs Road.
Position Type:
This is a full-time Exempt position. Days and hours of work are Monday through Friday, 8:00 a.m. to 5 p.m. Schedules must be approved by supervisors.
Core Business Hours:
Monday- Friday 8am - 5pm - additional hours may be required on an infrequent basis.
Hybrid Setup: 1 day in-office required, 4 days remote. More days in the office may be required based on need.
On-Call: This position will participate in the IT on-call rotation.
Supervisor Responsibilities: This position will not have any direct reports.
Work Environment:
This job operates in a professional office-based environment. This role routinely uses standard office equipment such as computers, phones, photocopiers, filing cabinets and fax machines.
Physical Demands:
The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. While performing the duties of this job, the employee is regularly required to talk and listen. The employee frequently is required to sit, stand, walk, finger, handle, feel, and reach in all directions, including overhead.
Travel:
Travel to out-of-state offsite training or meetings may be required.
EEO:
Veteran Benefits Guide (VBG) provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, national origin, ancestry, physical disability, mental disability, medical condition, marital status, sex (including pregnancy, childbirth, breastfeeding or related medical conditions), gender (including gender identity and gender expression) genetic characteristic, sexual orientation, registered domestic partner status, age, military or veteran status, hairstyle or hair texture, reproductive health decision making, or any other characteristic protected by federal, state, or local laws.