This job will provide you with an opportunity to further your career alongside some of the best and most passionate technology experts from around the world in a leading company within the test, measurement and data analytics industry. You will be a strong contributor collaborating closely with colleagues from various business functions.
At HBK, we live up to our three values: Be True, Own It and Aim High. We believe in absolute integrity – it’s how we win for stakeholders, the environment and each other. We believe in teamwork and keeping our promises – to ourselves and others. Finally, we believe in being bold and positive. This is how we perform at our best and achieve greater success.
Information and Cyber Security Analyst
The position
HBK are looking for an Information and Cyber Security (ICS) Analyst with an aptitude for working in complex environments.
The ICS Analyst role is a hands-on role that requires technical knowledge and an understanding of ICS. The person in this position is responsible for a broad range of tasks, including the day-to-day administration of cybersecurity tools and devices, as well as first-level and second-level support for security information and event management (SIEM). This role includes responsibilities for the security administration of a wide variety of IT systems across the enterprise.
Our ambitious and well supported program of work is key to securing HBK’s critical data assets and intellectual property. While the current focus on this role is within IT, we work closely with other key departments (Sales, Marketing, R&D, Product, Legal, HR, etc) around the world and will be increasing the ICS scope into the Application and Operational Technology Security. This role will be reporting to the Head of Information Security and will work closely with the ICS team.
Must be a US citizen. Unable to hire anyone with a visa, dual citizenship, greencard, or permanent resident for this position.
Primary responsibilities
You will be working with both HBK and our parent company, Spectris, colleagues in and out of IT, so it is important that you are able to work collaboratively with both technical and non-technical staff.
Your key responsibilities will include:
- Triage, handling, prioritizing, and follow-up of security and compliance tickets.
- Execute operational planning actions, monitoring & SIEM-analysis, investigations to closure
- Conducts log-based and endpoint-based threat detection to detect and protect against threats coming from multiple sources
- Conducting Security incident investigation and incident response activities when necessary
- Researches emerging threats and vulnerabilities to aid in the identification of network incidents
- Improve the wider security technologies including: Anti-Malware, tools, logs, etc.
- Participate and assist in internal and external audits to ensure actions, risk measurements, and improvements have been executed for continued compliance with HBK’s organizational standards.
- Maintain and contribute to a body of documented policies, standards, processes and procedures necessary for organizational objectives and compliance
- Contribute to the implementation and improvement of Security Controls through the Information Security Management System.
- Supports the creation of business continuity/disaster recovery plans, to include conducting disaster recovery tests, publishing test results and making changes necessary to address deficiencies
- Assist in risk assessments and treatment planning.
- Assist in assessing the security of new & current vendors.
- Assist in providing security awareness & education to our teams.
- Working closely with Security colleagues as well as Infrastructure team to help create a harmonized streamlined approach to information and cyber security
Requirements
- 3+ years in information and or cyber security
- Experience in working within global complex environments
- A valid certification or willing to study towards certification in Information and Cyber Security (CEH, CISSP or equivalent)
- Willingness for “Hands-on” in delivery
- Knowledge in regulatory compliance and compliance activities such as: ISO27001, TISAX, NIST, CMMC
Skills
- Advocate of change
- Experience as a Security Operations Analyst or Security Analyst would be highly preferable for this role.
- Technical cyber security background (analysis and investigations of security events, incident response, SIEM analysis, threat hunting, monitoring etc.)
- Experience working in an incident response capacity (either managed service incident response or internal incident response will be acceptable).
- Experience with cyber security tools and technologies including: IDS (Intrusion Detection Systems), Endpoint Detection and Response (EDR), SIEM, email security, Anti-virus, AV, SOAR etc.
- Experience working as part of a SIRT (Security Incident Response Team), SOC (Security Operations Centre) or Offensive Security Team would be preferable.
- Experience implementing security controls in line with an Information Security Management System.
APPLY