What are the responsibilities and job description for the Information Security Administration II/HYBRID position at MSC Industrial Supply?
BRIEF POSITION SUMMARY :
The Information Security Admin II position is responsible for detecting and assessing security events and incidents across the MSC environment. The Security Admin II works among a team of skilled technicians to address complex or difficult problems as needed within a 24x7 environment. The Admin II is also responsible for implementing new processes and procedures as identified by the Security Leadership Team to ensure the continuous improvement to monitoring, detection and mitigation capabilities.
DUTIES and RESPONSIBILITIES :
- Manage and administer corporate firewalls
- Monitors security incident and event management (SIEM) and logging environments for security events and alerts to potential (or active) threats, intrusions, and / or compromises
- Assists with triage of service requests from customers and internal teams
- Escalates cyber security events according to MSC Incident Response Plan
- Assists with containment of threats and remediation of environment during or after an incident
- Documents event analysis and writes comprehensive reports of incident investigations
- Collaborate with technical teams to identify, resolve, and mitigate events
- Participate in security projects, collaborating with IT peers to implement security tools and processes
- Administer systems which provide security services within the MSC network and Windows environment : Antivirus, IDS / IPS, deception technology, SIEM, Patching, vulnerability scanning, etc.
- Ability to parse large volumes of data and identify malicious activity within proxy, firewall, and network data.
- Monitor the company’s networks to keep an eye out for any security breaches and investigate it if one does occur.
- Research the latest in information technology security trends to keep up to date with the subject and use the latest technology to protect information.
- Identify new way to combine disparate cyber security data to create new detections and alerts.
- Understand and appropriately use development skills to automate process when appropriate.
- Participate in technical and non-technical projects requiring information security oversight and to ensure policies, procedures and standards are followed.
- Provide responses and action plans to external security assessments
- Recommend security improvements and coordinate with systems owners to implement
- Develop reports and metrics for management and remediation teams
- Partner with Risk and Internal Audit Compliance teams
- Consult with different teams on strategic initiatives as well as highly technical projects that have regulatory concerns
- Evaluate project initiation documents
- Ensure representation in change management meetings
- Knowledge and use of security tools, Vulnerability scanning, File Integrity Monitoring, Firewalls, SSL Certificate management, etc.
- Understanding of current threats and exploits to include experience with threat remediation
- Identifies new security threats by conducting penetration testing, log analysis and vulnerability assessments; evaluates, recommends, and performs procedures used to mitigate risks.
- Participates in the development of software and network security procedures and guidelines on information security.
- Assess the impact caused by theft, destruction, alteration, or denial of access to critical information and services.
- Fosters the MSC Culture in the department and throughout the company to ensure fulfillment of MSC’s vision and unity of purpose.
- Participation in special projects and performs additional duties as required.
EDUCATION and EXPERIENCE :
SKILLS :
OTHER REQUIREMENTS :
Compensation starting at $73430 - $115390 depending on experience.
The salary range represented is based on similar roles in comparable industries, and the cost of labor in respective cities. Actual compensation is based on the candidate’s relevant experience, education requirements and peer pay equity. The Company reserves the right to modify the range as market conditions change.
LI-Hybrid
Salary : $73,430 - $115,390