|
JACKSON ELECTRIC MEMBERSHIP CORPORATION POSITION DESCRIPTION SECURITY ANALYST I POSITION OBJECTIVES: To bolster the Cooperative's security posture by providing the planning, implementation, and monitoring of security measures across the organization; safeguard the organization's IT and OT infrastructure, detect and mitigate cyber threats, and ensure the company systems comply with security standards; and communicate in a teamoriented environment in accordance with the vision, mission, and values of the Cooperative. MINIMUM JOB SPECIFICATIONS: All requirements are subject to possible modification to reasonably accommodate individuals with disabilities. EDUCATION: Requires bachelor's degree in computer science, information technology, or related field. Prefers professional certifications directly related to the technologies in use at Jackson EMC. Prefers CompTIA Security+, CISSP, or similar security certification. EXPERIENCE: Requires five (5) years' professional experience with information security or cybersecurity tools. Must be familiar with a wide range of security technologies including, but not limited to: SIEM, IDS/IPS, malware analysis and protection, content filtering, logical access controls, identity and access management, data loss prevention, content filtering technologies, application firewalls, vulnerability scanners and security incident response. An advanced degree may be considered in lieu of experience. KNOWLEDGE: Requires solid working knowledge of server and endpoint security and specific knowledge should include Unix/Linux and Microsoft operating systems. Requires knowledge of scripting languages and techniques to automate repetitive or scheduled tasks. Require ability to pursue a continuous program of self-development both inside and outside of work hours in furthering his/her knowledge to develop in the job and accept increasing responsibilities. SKILLS: Require effective leadership skills, excellent communication skills, both written and verbal, and the ability to work in a team environment. Requires the ability to effectively configure, deploy, and maintain security solutions. Requires the ability to monitor, report, and address security vulnerabilities. Prefer fluency in Unix/Linux. WORKING RELATIONSHIPS AND CONDITIONS: Reports to: Director, IT Infrastructure and Security Directs: none Internal: Actively participates within the Cooperative team environment to develop supportive relationships essential to the success of the functions of this position, achieving the results expected and encouraging throughout the organization the concepts of teamwork and Cooperative spirit. External: Develops and maintains supportive relationships with members/consumers, the general public, and other external contacts to assure positive results. This position is primarily sedentary work; requires visual acuity in machine operation with inspection; requires ability to hear, talk, repetitive motions; and is not substantially exposed to adverse environmental conditions. The following are the essential duties of this position and do not include marginal functions that are incidental to the performance of fundamental job duties. The scope and duties of a given position may change or be temporarily altered based on the needs of Jackson Electric Membership Corporation. This document does not create an employment contract, implied or otherwise, other than an "at will" employment document. ESSENTIAL FUNCTIONS: 1. Design and implement cyber security monitoring programs, including necessary technologies and processes to reduce risk to the organization. 2. Monitor and analyze security alerts and incidents across the cooperative's systems. 3. Conduct vulnerability assessments and testing to identify potential risks and weaknesses. 4. Develop and implement mitigation strategies for threat reduction based on monitoring of systems throughout the organization. 5. Collaborate with Information Technology and Operations Technology team members to implement necessary security controls. 6. Assist training coordinator with developing and delivering security awareness training to employees. 7. Participate as part of Incident Response Team providing analysis and expertise in the resolution of all incidents. 8. Stay current with the latest cybersecurity trends, emerging threats, and best practices to continually enhance our security posture. 9. Provide assistance to Systems Administrators with essential operating system functions. 10. Maintain and promote a high level of awareness regarding cyber threats from both internal and external sources. Promote and comply with cybersecurity policies and best practices. 11. Be familiar with and follow the best safety practices set forth in the Cooperative's Safety Manual. 12. Attend and participate in annual meeting as required or directed. 13. Perform such other duties as may be required or directed
|