Job Summary:
The Illinois Attorney General's Office is seeking a Senior Cybersecurity Operations Analyst to join their Information Security Bureau. This role involves analyzing security events, responding to incidents, and coordinating incident response efforts while providing detailed reports to the Chief Information Security Officer.
Responsibilities:
• analyzing events from multiple security tools to identify incidents and potential information security threats to the organization
• conduct comprehensive and detailed analysis of network and endpoint events
• advise on the most effective and efficient way to triage the event
• identify, correlate, escalate, and respond to security incidents using various security technologies and incident response methodologies
• act as the lead incident response handler
• coordinate the response efforts
• provide recommendations on security controls, tools, and processes to prevent future incidents
• provide detailed reports to the CISO and/or other team members about the root cause of an incident and recommended follow-up actions
• develop, enhance, and maintain incident response documentation such as incident response plans, procedures, and guidelines
• stay current with emerging security threats and vulnerabilities
• proactively identify potential information security risks to the organization
• participate in incident response testing and tabletop exercises to ensure the organization is prepared to handle potential information security incidents
Qualifications:
Required:
• A bachelor's degree in Computer Science, Information Technology, Cybersecurity, or related field
• A minimum of 5 years work experience in network security, incident response, or incident investigation
• Ability to effectively coordinate, problem solve, prioritize, and collaborate
• Outstanding written and verbal communication skills
• Attendance and the ability to maintain satisfactory working relationships with OAG employees and the general public
Preferred:
• Experience in conducting forensic analysis and digital investigations as part of an incident response team
• Strong knowledge of network security concepts and technologies, including intrusion detection/prevention, firewalls, and SIEM technologies
• Relevant industry certifications such as GCFA, GCIH, CISA, CISSP
Company:
The N.C. Founded in 1877, the company is headquartered in Raleigh, USA, with a team of 1001-5000 employees. The company is currently Late Stage.