Position: Cyber Security Analyst
Duration: 4 months
Location: Montgomery, AL (Onsite from Day 1)
Agency: Medicaid
Interview Mode: In-person preferred; virtual interviews available for non-local candidates
Special Requirement:
Need W2 Candidates only
Job Description:
The Information Security Analyst will join AMA’s Information Security Office (ISO) Security Operations team, reporting to the Security Operations Director. This role is responsible for implementing and maintaining technical security controls to safeguard the confidentiality, integrity, and availability of AMA’s information assets.
Responsibilities
The analyst will perform duties within the ISO’s Security Operations Center (SOC), including:
- Analyze anomalies from Extended Detection and Response (XDR) and Security Information and Event Management (SIEM) systems to assess severity and impact.
- Implement, maintain, and document security safeguards.
- Review infrastructure changes to ensure adequate protection.
- Conduct network and penetration tests, and application vulnerability scans.
- Promote information security awareness across the organization.
- Monitor internal control systems to maintain appropriate access levels.
- Support projects throughout AMA’s systems development life cycle.
- Perform other duties as assigned.
Required /Desired Skills:
- Minimum 4 years of Information Security experience.
- Strong analytical skills for effective security analysis and incident response.
- Ability to identify endpoint anomalies and malware exploitation techniques.
- Understanding of social engineering tactics.
- Advanced interpersonal and communication skills.
- Excellent time management and prioritization abilities.
- Ability to take prompt action on security events and collaborate with team members or subject matter experts.
Required experience with the tools below:
- ProofPoint Targeted Attack Protection, Cloud Threat Response, Protection Server, ZenGuide
- CrowdStrike Falcon EDR
- Microsoft Defender XDR
- Elastic LogStash
- Syslog-NG
- OpenText WebInspect
Experience with the tools below is a plus:
- Microsoft Defender XDR
- Microsoft Sentinel
- SonarQube
- Tenable
- OpenText WebInspect
- Syslog-NG
Preferred Certifications:
- CompTia Security +
- ISC2 Certified in Cyber security
- Certified Ethical Hacker
- Microsoft SC-200