Cybersecurity Specialist

2 weeks ago


Ferndale, United States Cutsforth Full time

The Cybersecurity Specialist will support Cutsforth in maturing cybersecurity practices by implementing heightened security controls and reducing attack surface. They are expected to lead vulnerability monitoring and mitigation activities. The Cybersecurity Specialist will drive creation of metrics and dashboards to track status of security topics including patch management, deployment of endpoint security tooling, etc. *Alignment with Corporate Values: * All Cutsforth employees are expected to perform their work in a manner that exhibits understanding and adherence to the Company Mission and Core Attributes of Cutsforth Employees. Employees in management roles must exhibit continual improvement along Cutsforth's Leadership Traits. Further, each employee must read and adhere to corporate policies and safety protocols. Learn more about Cutsforth here: Cutsforth.com/About {rel="nofollow"} Read our Mission & Values here: Cutsforth.com/Values {rel="nofollow"} Cybersecurity Role Expectations: Candidate will be responsible for reviewing policies and procedures related to cybersecurity and those relevant to the functions of their role. Candidate is expected to maintain a cybersecure work environment. Role Qualifications: Successfully pass background check for cybersecurity access requirements. Essential Functions: Implement, manage, and monitor security measures to protect Cutsforth's networks, systems, products, and data to drive increased maturity and compliance with regulatory requirements. Lead vulnerability management activities using the Qualys platform. Reduce attack surface and implement secure configurations for systems and applications (hardening). Generate reports and dashboards in Workspace One, Sophos Central, Qualys, and other utilities to provide visibility into Cutsforth's implementation of security controls and tooling. Support implementation of security improvement projects such as browser and system hardening, DLP controls, USB controls, etc. Participate in security incident analysis and response. Support security reviews of new products and vendors. Support the Cybersecurity team in the documentation of cybersecurity policies and procedures. Education, Experience, and Skills: 2+ years of experience in technical security roles including vulnerability management and security control testing or implementation in an enterprise environment. Bachelor's degree in cybersecurity or relevant technology program is preferred. Sec+, CySA+, CEH, or similar industry certifications are preferred. The role requires broad technical knowledge across IT and cybersecurity topics to support implementation of controls and tools used to secure enterprise environments. Strong self-learning skills and problem-solving capabilities with attention to detail. Adept technical writing and research capabilities. Preferred Skills and Experience: Familiar with concepts of the Cyber Kill chain/MITRE ATTACK and mitigating techniques. Physical Requirements: Must be able to sit and stand for extended periods of time. Must be able to use hands to type, handle products, tools and navigate a computer key