Security Analyst in Alpharetta, GA at Scientific Games

Date Posted: 3/6/2018

Job Snapshot

Job Description

The key objectives for this Information Security Analyst position are to expand threat detection and prevention capabilities in existing and future security tools. The Analyst must be able to identify gaps in existing security configurations and provide effective recommendations to improve, remediate, and expand controls against cyber threats.

On-call 24/7

Job Requirements

Oversee and manage tools such as:
o Security Information & Event Management (SIEM)
o Vulnerability and Security Assessment
o Host and Network based Intrusion Detection/Prevention Systems (IDS/IPS)
o Other security applications
• Conduct analysis, troubleshooting, and trending of incidents/events detected from SIEM, IDS/IPS, and other security applications
• Create custom rules and modify existing rules, policies, alerts, etc. within the security applications based on stakeholder needs or situational conditions
• Perform Level 2 & 3 triage and handling of security events (escalated from Level 1 Security Analysts or other); includes but is not limited to identification, containment, remediation, and reporting activities.
• Create new and enhance existing procedures to improve operational efficiencies and reporting accuracy
• Perform the deep-dive security incident analysis; correlating data from various sources to determine criticality and provide advisement and/or remediation
• Ensure monitoring of alerts and logs from enterprise security tools such as firewalls, IDS, Anti-virus, Data Loss Protection (DLP), and vulnerability scanners
• Develop detailed technical recommendations to solve current and future security issues; identify protection gaps and propose effective mitigating solutions
• Maintain awareness of emerging threats to ensure data protection, system integrity, and network availability
• Evaluate, design, implement, and configure new security products and technologies
• Develop, review, and maintain documentation for security systems and procedures

On-Call 24/7

Bachelor's Degree in Computer Science, Computer Engineering or equivalent

• Coding/Scripting experience (e.g. Python, Perl, PowerShell)
• 1 Year of SIEM operational experience is required; must have implemented and managed the above technologies; must possess strong technical knowledge of architecture, system policies, rules, etc.
• Strong verbal and written communications skills; must be able to effectively communicate technical details and thoughts in non-technical terminology to various levels of management
• Strong organizational, multi-tasking, and time management skills
• CISSP, CISM, CISA, CEH, OSCP, GCIH, or other industry recognized security certification(s)
• Knowledge of Red Hat Linux.
• Knowledge of TCP/IP communications.
• Knowledge of OSI level communications and troubleshooting.
• Knowledge of Security Technical Implementation Guides (STIGs) configurations.
• Knowledge of Secure Content Automation protocol (SCAP) systems evaluations.

