Cyber Security Analyst II managing cybersecurity for complex telecommunications systems. Responsible for vulnerability assessment, system design, and collaboration with various technical teams.
Responsibilities
Review vulnerability assessment results and penetration test reports; assist in prioritizing findings based on risk.
Support the development, validation, and maintenance of deployment scripts used for applying patches, configuration updates, and mitigation steps.
Execute repeatable test procedures to confirm that mitigations, patches, and system changes are functioning as expected.
Participate in system architecture discussions by contributing security focused observations and implementation considerations.
Analyze system specifications to identify potential security gaps, misconfigurations, or integration issues.
Assist in defining system requirements, integration steps, and qualification tests with a focus on security.
Evaluate and integrate third party components (hardware, software, or cloud tools) under the guidance of senior engineers.
Follow secure configuration baselines and support the development of system hardening templates or guidelines.
Ensure system designs and configuration approaches adhere to recognized industry standards and frameworks, including secure by design principles and best practices for hardening and risk reduction.
Conduct system integration tasks and run functional and security related test cases.
Help create and update technical documents, deployment procedures, and operational playbooks.
Work with Engineering, Cybersecurity, and Operations teams to implement solutions, resolve issues, and respond to emerging vulnerabilities or incidents.
Assist in troubleshooting customer impacting problems by analyzing logs, configurations, and behavior across systems and networks.
Stay informed on new vulnerabilities, CVEs, patches, and vendor advisories to support proactive mitigation activities.
Requirements
Ability to understand and assess vulnerabilities, system risks, and remediation steps.
Experience working with Windows 10/11 and Windows Server 2016+ in an operational or engineering context.
Basic to intermediate experience with Active Directory concepts and management.
Experience writing or modifying automation scripts (PowerShell, Python, Bash) to support deployment or testing tasks.
Familiarity with containerization and virtualization platforms (Docker, Kubernetes, VMware, KVM).
Experience with database systems such as MySQL/MariaDB or PostgreSQL.
Hands on experience administering or supporting Linux systems (RHEL, Debian or equivalents).
Ability to configure and troubleshoot basic networking devices (switches, routers, firewalls).
Threat Intelligence Analyst investigating telecom security threats and customer deployment data for Enea, a global telecom and cybersecurity software company. Supporting client security reviews and threat intelligence operations.
Information Security Analyst governing End - User Computing risks, controls, and remediation for TD, a major North American bank. Advising stakeholders and supporting governance reporting, audits, and regulatory requirements.
IT Security Analyst II coordinating cybersecurity monitoring, MSP oversight, audits, and incident follow - up. Supporting Veristat’s global life - sciences services and regulated technology environments.
Security Analyst protecting GitLab’s DevSecOps platform through vulnerability triage and CVE operations. Coordinating researchers, customers, and internal teams on secure software response.
SIEM/SOAR cybersecurity analyst monitoring threats, building alerts, and measuring controls. Supporting Wepoint’s digital transformation work for businesses and public sector organizations.
SIEM/SOAR information security analyst supporting Wepoint’s digital transformation services. Developing cybersecurity monitoring cases, alerts, dashboards, and security - control documentation.
Security Analyst II protecting Intact’s insurance operations through incident response and SIEM monitoring. Supporting security platforms, incident resolution, dashboards, and IT security initiatives.