- Company Name
- World Insurance Associates LLC
- Job Title
- Cybersecurity Analyst
- Job Description
-
**Job title**
Cybersecurity Analyst
**Role Summary**
Provide day‑to‑day defensive security operations, monitoring, and risk management to protect company systems, data, and users. Identify, analyze, and respond to security events; support third‑party risk management and internal audits; contribute to security awareness training. Collaborate with engineering and IT teams to strengthen security posture.
**Expectations**
- Execute incident response activities and maintain incident logs.
- Participate in vulnerability management, risk assessments, and threat intelligence activities.
- Manage third‑party security risk documentation and remediation tracking.
- Assist with internal audits and compliance against frameworks such as NIST, ISO, SOC.
- Deliver or support phishing simulations and cybersecurity awareness training.
- Continuously learn and adapt to emerging threats and technologies.
**Key Responsibilities**
- Monitor alerts from SIEM, EDR, email security, and vulnerability scanners.
- Triage, investigate, document, and coordinate remediation of security incidents.
- Review vulnerability scan results, validate findings, and track remediation.
- Conduct risk assessments and evaluate security controls.
- Review threat intelligence feeds and perform basic threat analysis.
- Assist in vendor security questionnaires, evidence reviews, and risk tracking.
- Gather evidence for audits, policy reviews, and regulatory assessments.
- Support the development and delivery of security awareness programs and phishing tests.
- Collaborate with cybersecurity engineers to tune security tools and improve operational efficiency.
- Document procedures, investigations, lessons learned, and best practices.
**Required Skills**
- Strong analytical and investigative skills.
- Experience with SIEM, EDR, and vulnerability management tools.
- Knowledge of security frameworks (NIST, ISO, SOC, NYDFS).
- Understanding of incident response lifecycle and ransomware response.
- Familiarity with third‑party risk management processes.
- Excellent communication and documentation abilities.
- Ability to work collaboratively across IT, security, and business teams.
- Proactive learning mindset and awareness of evolving cyber threats.
**Required Education & Certifications**
- Bachelor’s degree in Computer Science, Information Security, or related field.
- Certifications such as CompTIA Security+, GCIH, or equivalent are preferred.