What are the responsibilities and job description for the Senior Security Analyst position at Global Business Consulting Services (GBCS)?
Location: Englewood, NJ
Job Type: Full-Time (US Citiens or GC holders only as this job does not sponsor visa/c2c/opt candidates)
Job Summary:
We are seeking an experienced Senior Security Analyst with 4-5 years of hands-on experience in cybersecurity operations. The ideal candidate will be responsible for SOC alert triaging, EDR management, web/cloud/email security, vulnerability remediation, and security awareness training. This role requires a proactive approach to identifying, analyzing, and mitigating security threats, ensuring the organization’s security posture remains strong.
Key Responsibilities:
Security Operations & Incident Response
- Triage, investigate, and respond to SOC alerts in a timely manner.
- Manage Endpoint Detection & Response (EDR) solutions, including exclusion handling and tuning for optimal performance.
- Monitor and secure web, cloud, and email security to detect and mitigate potential threats.
- Assist in security incident handling, forensic analysis, and threat intelligence correlation.
Vulnerability Management & Remediation
- Lead vulnerability management programs by identifying, assessing, and driving remediation efforts across IT environments.
- Work closely with IT and engineering teams to prioritize and track the resolution of vulnerabilities.
- Ensure compliance with security best practices and regulatory requirements.
Security Awareness & Training
- Manage security awareness training programs and campaign tools to educate employees on cybersecurity risks and best practices.
- Conduct phishing simulations and analyze user engagement to enhance security culture.
Collaboration & Onsite Presence
- Work onsite 4 days a week for the first 4 months, then transition to a hybrid model (2 days onsite, based on need and critical situations like all-hands-on-deck scenarios).
- Collaborate with cross-functional teams to ensure security measures align with business objectives.
- Stay updated on emerging threats and recommend enhancements to security tools and policies.
Qualifications & Skills:
- 4-5 years of hands-on experience in cybersecurity, particularly in SOC operations, EDR management, and web/cloud/email security.
- Strong understanding of SIEM tools, threat intelligence, and incident response frameworks.
- Experience with vulnerability management tools and remediation strategies.
- Knowledge of security awareness training platforms and campaign tools.
- Familiarity with industry standards and compliance frameworks (e.g., NIST, ISO 27001, CIS, MITRE ATT&CK).
- Strong analytical, problem-solving, and communication skills.
- Ability to work independently and handle high-pressure security incidents effectively.
Preferred Certifications (a plus, but not required):
- CISSP, CISM, CEH, GCIA, or similar industry-recognized certifications.
This role offers the opportunity to work in a dynamic security environment, contribute to a strong cybersecurity culture, and play a vital role in protecting organizational assets.