About the Role: As an Associate IT Security Analyst, you will be taking the first step into the world of cybersecurity. In this entry-level role, you will play an important part in keeping our organization safe by supporting the implementation and maintenance of essential information security measures. Your work will protect our systems from potential threats, contributing to a secure technology environment.
Responsibilities: Assist in monitoring network and systems for security breaches or intrusions. Support in conducting preliminary security assessments and audits. Participate in the implementation of IS and cyber security standards and procedures.. Provide support in the evaluation of information security tools and products. Contribute to the success of application modernization projects by supporting multiple customers with environment support and monitoring of the cloud environments (e.g. AWS, GCP) and their systems
Provide support regarding cloud security and the implementation of infrastructure to support the modernization of systems
Responsible for developing and recommending best course of action based on solid security principles
Responsible for assisting in the development of vulnerability and threat related communications for potential dissemination to warn WK employees of an emerging situation
Operational Readiness Review (ORR) - Review ORR Open Office Hours chats and Jira tickets for GIS checks following up with the appropriate owner to take direction or escalate
Cross Training & Peer Review -
Partner with each team lead as mentors
Continual KT sessions with peers
Learn Container Security, working to become SME
Learn KPI and Reporting, working to become SME
Learn CSPM program, working with CSPM lead
Learn SIEM program, working with SIEM lead
Automation Development -
Support automation developers taking direction, document processes
Work with automation developers to improve UX and capabilities of GIS programs
Support opportunities to displace or streamline workflows
Participate in Team Scrums -
Create tasks as user stories
Keep your tasks up to date
Documentation and reporting support for Jira
Technical Writing & Documentation for Team Review
Help draft Standard Operating Procedures Internal and External for each workstream team maintains
work with Control Owners and CSAE team to draft content
Help draft documentation for integrations with tooling from Orca & Sentinel
Help draft ORR documentation updates for ORR Portal
Help draft Audit documentation for tooling and programs
Automate KPI Reporting
Help support and create KPI reporting to feed PowerBI
Update KPI decks with Power BI charts"
Tool Support & Maintenance
Investigate CSPM Toolings capabilities and understand our use
Provide Support and Administration for user access
Support requests for audit evidence (Tool Configurations ONLY)
Create and Deliver on Ad-Hoc reporting requests from end users
Document and support tool Integrations with tooling working with team leads
Support Subject Matter Experts; taking direction from Team Leads
Minimum Standard Baseline (MSB)
Help maintain MSB master sheet and documentation with SCM task force (includes supporting annual reviews)
Help keep measures in tool up to date
Shift-Left MSB
Help maintain build level policy master sheet and documentation with SCM task force (includes supporting annual reviews)
Help keep policies in sync from all sources
SIEM Support & Maintenance
Investigate SIEM Tools capabilities and understand our use
Support requests for audit evidence (Tool Configurations ONLY)
Create and Deliver on Ad-Hoc reporting requests from users (querying tables, providing traffic checks)
Document and support data connectors used in SIEM working with team leads
Support Subject Matter Experts; taking direction from Team Leads
Skills: Bachelor s degree or equivalent experience in Information Systems Management, Information Technology, Computer Science, Business, Management, Engineering, or another related discipline
Relevant Cloud Certifications from Azure and/or AWS OR Bachelors degree in Computer Science, Information Technology, Cybersecurity, or a related field
Basic understanding of cybersecurity principles and practices
Familiarity with cloud platforms (Azure, AWS preferred)
Knowledge of security tools and technologies (SIEM, CSPM)
Basic scripting and automation skills (Python or PowerShell preferred)
Strong problem-solving and analytical abilities
Ability to analyze and interpret security data and logs Problem-Solving: Applying general problem-solving techniques in security contexts. Documentation: Competence in creating and maintaining security documentation. Communication: Basic communication skills for interacting with team members. Training Support: Assisting in security training delivery under guidance. Level criteria T1 (for internal use only): Requires basic knowledge of theories, principles and concepts within a technical discipline; has exposure to current technologies through coursework or internship Applies general knowledge of business and industry gained through education or experience Performs routine technical assignments and uses existing procedures to apply to technical concepts to solve standard problems Receives instruction, guidance and direction from more senior team member Impacts own work and has limited impact on work team Communicates straightforward information