Infrastructure Security Analyst

2 days ago

Lexington KY, Fayette County, KY; Kentucky, United States KFI Engineers PC Full-time
POSITION SPECIFICATION

Position:

Infrastructure Security Analyst I Department:

Administration, IT Reporting Relationship:

Network Infrastructure Manager

COMPANY BACKGROUND KFI Engineers is a recognized industry leader in facility infrastructure design and performance. Since 1996, our culture of collaboration and unique capabilities have allowed us to make a difference in the way infrastructure and processing projects are delivered. Headquartered in St. Paul, MN, with numerous regional offices throughout the United States, and a team of hundreds of professionals,

we offer
opportunities to continue your career with mentorship programs, career growth support, and continued education. With KFI, we find a way to provide creative solutions to unique projects while providing the same care we would expect if we were the client. For more information about KFI Engineers and our culture, please visit POSITION OVERVIEW & RESPONSIBILITIES The Infrastructure Security Analyst I plays a critical role in safeguarding the organization's IT infrastructure by identifying, analyzing, and mitigating security risks. This entry-level position focuses on monitoring security systems, responding to incidents, and supporting the implementation of security controls to protect network and system assets. The analyst collaborates with cross-functional teams to ensure compliance with security policies and industry best practices. Through continuous learning and application of security principles, the role contributes to maintaining a resilient and secure infrastructure environment. Ultimately, this position supports the organization's mission by proactively defending against cyber threats and ensuring the integrity, confidentiality, and availability of critical systems. Specific responsibilities will include, but not be limited to, the following: Monitor security alerts and logs from various infrastructure components to detect potential threats or vulnerabilities. Assist in the investigation and response to security incidents, including documentation and escalation as necessary. Support the deployment and maintenance of security tools such as firewalls, intrusion detection/prevention systems, and endpoint protection. Conduct vulnerability assessments and assist in remediation efforts to reduce security risks within the infrastructure. Collaborate with IT and security teams to implement and enforce security policies, standards, and procedures. Participate in regular security audits and compliance activities to ensure adherence to regulatory requirements. Maintain up-to-date knowledge of emerging security threats, technologies, and best practices. Under direction of leader, assist in translating security policies into basic technical controls by supporting system configurations, managing console settings, and using security tools Provide input on execution paths to effectively implement policies. Oher duties as assigned. QUALIFICATIONS Required Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or a related field. Minimum of two years of experience providing technical support to end users. Solid understanding of network protocols, operating systems, and common security principles. Working knowledge of security monitoring tools and incident response processes. Strong analytical and problem-solving skills. Effective communication skills to document findings and collaborate with team members. Must be willing and able to work occasional after-hours for incident response or maintenance windows. Excellent verbal and written communication skills. Strong interpersonal skills and ability to collaborate with others. Knowledge of computer technology and specific areas of application , including MS Office. Travel: occasional travel as needed for projects and/or training. Preferred Relevant security certifications such as CompTIA Security+, Cisco CCNA Security, or equivalent. Experience interpreting security data and identifying vulnerabilities within complex infrastructure environments. Experience with cloud security concepts and infrastructure (e.g., AWS, Azure). Knowledge of scripting or programming languages such as Python, PowerShell, or Bash. Understanding of regulatory frameworks such as NIST, ISO 27001, or GDPR. Prior internship or hands-on experience in a security operations center (SOC) or similar environment. Working Conditions May require extended periods of time sitting at a desk or computer workstation. Ability to lift up to 25 pounds, infrequently. Occasional after-hours availability for incident response or maintenance windows.

CORE BEHAVIORS Accountable Demonstrates persistence in the achievement of goals. Acts with a sense of urgency. Takes responsibility for own actions. Business Focus Demonstrates agility, adapts well to changes. Works well under pressure. Meets comm