Senior Security Operations Analyst, IT Security Operations

2 weeks ago


Remote, United States Ascensus Full time

At Ascensus, technology is more than just a solution. It powers the business that helps millions of people save for what matters—retirement, education, and healthcare.  Our technology experts tackle exciting challenges in collaborative teams, but work in an environment where individual and career development is always valued.  Technology associates leverage their talents and passion, building new and innovative platforms, creating programs founded in automation in agile frameworks, and driving existing and new markets—all of which supports the rapid growth of a dynamic industry leader.

Section 1: Position Summary

This position will be responsible for operational security responsibilities across Ascensus. The individual hired for this position requires a passion for data protection, strong problem solving and analytics, documentation, communication and organizational skills, collaborative abilities, self-motivation, innovation, efficiency and attention to detail. This position will be empowered to help guide our operational security program. This position reports to the Security Operations Lead. Work location is flexible, however, preference for our Dresher, PA, Brainerd, MN, Newton, MA or Fargo, ND offices.

Section 2: Job Functions, Essential Duties and Responsibilities

  • Responsible for protecting, securing, and proper handling of all confidential data held by Ascensus to ensure against unauthorized access, improper transmission, and/or unapproved disclosure of information that could result in harm to Ascensus or our clients.
  • Our I-Client service philosophy and our Core Values of People Matter, Quality First and Integrity Always® should be visible in your actions on a day to day basis showing your support of our organizational culture.
  • Assist with other tasks and projects as assigned

Essential Duties and Responsibilities:

  • Security Event Monitoring & Response
    • Monitor security events from sources including, but not limited to:
      • SEIM
      • IDS/IPS
      • Network and web application firewalls
      • Anti-Virus/Malware
      • Applicable server and application security logs
      • Data Loss Prevention (DLP)
    • Analyze events filtering  for false positives
    • Understanding of basic network services, vulnerabilities and attacks
    • Respond to and escalate events; participate in on-call rotation
    • Work with the security team to enhance processes & procedures
    • Contribute to and maintain documented processes around monitoring & response
    • Work closely with information security, IT, risk & governance and facilities teams.
    • Periodically report on metrics
    • Process phishing email escalations from Associates
    • Correlate events with other known social engineering attempts
  • Management of Security Solutions
    • Build, manage and maintain tools including, but not limited to:
      • SEIM
      • IDS/IPS
      • Web Application Firewall
      • Anti-Virus/Malware & Endpoint Protection
      • DLP
      • Web content filtering
      • Vulnerability scanning
      • File intergrity monitoring
      • Network Access Control (NAC)
    • Maintain documentation around tools (e.g., SOPs & configurations)
    • Champion the information security tool’s usage to maximize features
    • Review access requests around content filtering, removable media and local administrative exceptions
  • Work collaboratively with the various technology teams to accomplish security objectives
  • Additional security experience may be gained depending on associate’s level of interest and availability:
    • Assessing and selecting security vendors or solutions 
    • Identify emerging vulnerabilities and evaluate associated  risks
    • Assisting in incident response events
      • Security testing (vulnerability scans, aspects of ethical hacking/penetration testing)
      • Detailed configuration reviews
  • Assist with other tasks and projects as assigned

Supervision  

  • N/A

Section 3:  Experience, Skills, Knowledge Requirements

  • Experience managing security tools noted above; expert level knowledge in two or more
  • Experience with monitoring and response activities
  • Knowledge of information security risks, at least technical aspects including working knowledge around  remediation
  • Strong written and oral communication skills. The ability to communicate effectively (clear, concise and professionally) with all levels within Ascensus
  • Highly organized and able to process and manage inventories of controls and findings
  • Excellent analytical and problem resolution skills
  • Self-starter and able to demonstrate a high level of independence with little oversight and direction
  • Persistence and strength to champion initiatives
  • Expert level proficiency in MS Office software applications, specifically Word, Excel and Power Point
  • Able to manage department projects/initiatives; project management experience a plus
  • Mentor and cross-train other analysts; shares knowledge in order to advance team skillset
  • Positively represents the team to internal and external stakeholders
  • 3-5 years of experience
  • Strong SIEM and DLP experience
  • Knowledge of networking
  • Knowledge of secure application development practices
  • Bachelor’s degree or Associate’s degree plus equivalent work experience required
  • Security certifications welcomed
  • Fraud detection
  •  Forensics

We are proud to be an Equal Opportunity Employer

Be aware of employment fraud. All email communications from Ascensus or its hiring managers originate from @ascensus.com or @futureplan.com email addresses. We will never ask you for payment or require you to purchase any equipment. If you are suspicious or unsure about validity of a job posting, we strongly encourage you to apply directly through our website.



  • Remote, Oregon, United States Abnormal Security Full time

    About the RoleAbnormal Security is looking for an ambitious and growth-minded Senior Product Manager to drive innovation for our flagship Messaging Security Products (MSP) product lines.At Abnormal, we keep our customers—ranging from Global 2000 organizations to small businesses—safe from complex and cutting edge attacks that have the potential to cause...


  • Remote, Oregon, United States Blumira Full time

    About Blumira and Our CultureBy making detection and response rapid, simple, and affordable, we can help organizations of all sizes - especially small and medium-sized businesses - which have been neglected, priced-out, or, simply—failed—by existing solutions. In helping them, we help their customers, and, overall, make the Internet a safer place. We...

  • Security Operations

    6 days ago


    Remote, Oregon, United States Voltage Park Full time

    Voltage Park is building an AI Cloud Infrastructure business from the ground up. As part of this effort, we're looking for a Security Operations (SecOps) Analyst. In this role, you will play a pivotal role in ensuring the organization's assets, systems, data, and security posture is robust, that threats are identified and mitigated promptly, and that...


  • Remote, Oregon, United States GuidePoint Security Full time

    GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk. By taking a three-tiered, holistic approach for evaluating security posture and ecosystems, GuidePoint enables some of the nation's top organizations, such as Fortune 500 companies and U.S. government agencies,...


  • Remote, Oregon, United States GuidePoint Security Full time

    GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk. By taking a three-tiered, holistic approach for evaluating security posture and ecosystems, GuidePoint enables some of the nation's top organizations, such as Fortune 500 companies and U.S. government agencies,...


  • Remote, Oregon, United States Duo Security Full time

    Who We AreThe Cisco Security AI team delivers AI products and platform for all Cisco Secure products and portfolios so businesses around the world can defend against threats and safeguard the most vital aspects of their business with security resilience. We are passionate about making our customers secure by simplifying security with zero compromise using AI...


  • Remote, Oregon, United States Duo Security Full time

    We are Cisco Secure Common Services Engineering, a team of cybersecurity experts and innovative engineers who support the products and developers across Cisco Security. We put our people first, we take bold steps together, and we value transparency each step of the way.Who You'll work with:We provide the basic building blocks for the Cisco Security Cloud....


  • Remote, Oregon, United States Mondelēz International Full time

    Job DescriptionAre You Ready to Make It Happen at Mondelēz International?Join our Mission to Lead the Future of Snacking. Make It Uniquely Yours.You work with the information security team as a competent and experienced information security and compliance specialist.How you will contributeYou will assess information security risks in line with internal...


  • Remote, Oregon, United States Orca Security Full time

    Remote San Francisco Bay Area ABOUT USDive right in. Swim with our pod.At Orca, we believe that in the right environment and with the right team, talent has no boundaries. This team spirit, together with our drive to always aim high, have quickly earned us unicorn status and turned us into a global cloud security innovation leader. So if you're ready to join...


  • Remote, Oregon, United States Duo Security Full time

    We are Cisco Secure Common Services Platform Engineering, a team of cybersecurity experts and innovative engineers who support the products and developers across Cisco Security. We put our people first, we take bold steps together, and we value transparency each step of the way. We're adding more talented members to our growing team who will help us take...


  • Remote, Oregon, United States Vimeo Full time

    As a Principal Security Operations Engineer at Vimeo, you will engage in a variety of activities, either offensive, defensive, or some combination thereof, ultimately aimed at safeguarding our 300+ million users who entrust Vimeo with their content every day.You'll plan, carry out, and lead security initiatives to monitor and protect sensitive data and...


  • Remote, Oregon, United States Duo Security Full time

    Senior Software Engineer (Firewall Datapath) What You'll DoAs a Senior Software Engineer working for the Multicloud Defense team, you'll innovate, design, and develop security features and related infrastructure. The Multicloud Defense team delivers on the promise of cloud-first simplicity with robust cloud security. In this role, you will contribute to...


  • Remote, Oregon, United States Radiant Security Full time

    About usRadiant Security is an AI-powered SOC co-pilot that enables security operations centers (SOCs) to leverage the power of Gen AI to detect real attacks, reduce remediation times to minutes, and drastically boost analyst productivity. With Radiant, alerts are automatically triaged using AI so that SOCs can eliminate their security alert queues,...


  • Remote, Oregon, United States Interpres Security Full time

    At Interpres Security we are on a mission to arm our customers with evidence-based outcomes that inform organizational risk based on their security ecosystem. Interpres automates, optimizes and right-sizes organizational defensive strategy against cyber threats that matter most. Our evidence-based platform analyzes the constantly changing relationship...


  • Remote, Oregon, United States Huntress Full time

    Reports to: Senior Director of Threat OperationsLocation: Remote positions available in the US and Canada onlyCompensation Range: $175,000 to $200,000 base salary with bonus and equityWhat Sets Us Apart:Established in 2015 as a fully remote organization founded by ex-NSA cyber experts, Huntress operates with a clear mission: to make hackers work hard for...


  • Remote, Oregon, United States Amentum Full time

    Amentum is seeking a Senior Cybersecurity Operations Engineer to support our cyber environment. This is a remote-telework and hands-on role, responsible for ensuring Amentum assets are protected from cyber threats. This role provides technical expertise in multiple areas of cybersecurity to include cloud security, endpoint security, access management, secure...


  • Remote, Oregon, United States DAT Freight & Analytics Full time

    About DATDAT is an award-winning employer of choice and a next-generation SaaS technology company that has been at the leading edge of innovation in transportation supply chain logistics for 45 years. We continue to transform the industry year over year, by deploying a suite of software solutions to millions of customers every day - customers who depend on...


  • Remote, Oregon, United States Coalfire Full time

    About Coalfire Coalfire is on a mission to make the world a safer place by solving our clients' toughest cybersecurity challenges. We work at the cutting edge of technology to advise, assess, automate, and ultimately help companies navigate the ever-changing cybersecurity landscape. We are headquartered in Denver, Colorado with offices across the U.S. and...


  • Remote, Oregon, United States Curai Health Full time

    Curai Health is an AI-powered virtual clinic on a mission to improve access to care at scale. As the pioneer in deploying machine learning into clinical workflows, Curai Health enables its dedicated, specially trained clinicians to deliver primary care to more people at a fraction of the cost. Easy-to-use and convenient, Curai Health partners with insurers...


  • Remote, United States Amentum Full time

    Amentum is seeking a Senior Cybersecurity Operations Engineer to support our cyber environment. This is a remote-telework and hands-on role, responsible for ensuring Amentum assets are protected from cyber threats. This role provides technical expertise in multiple areas of cybersecurity to include cloud security, endpoint security, access management,...