Information Security Analyst

XDIN
  • Greensboro, North Carolina
    1 day ago

    Job Description

    Description

    XDIN subsidiary of ALTEN Group, includes 500 employees dedicated to the automotive engineering development. ALTEN is a Leader in Engineering & Information Technology system, and operates in over 21 countries (Europe, North America, Asia, Africa and Middle East) with more than 28,000 employees of which 88% are engineers.

    At XDIN, we are always looking for world-class talent to lead our global teams through commitment and dedication to our OEM and Tier I clients. We believe in quality support from concept through production, and delivering the best customer experience while at the same time attaining a great place to work!

    XDIN Offers

    • Competitive wages, BOE.
    • Major health, dental insurance benefits and vision savings plan. 401k, and basic life.
    • Supplemental benefits such as short-term disability, accident, cancer and life insurance.
    • Paid company holidays and earned time off.

    We place a high value on thought leadership. We want every employee to develop all the skills required to become an engineering and technology thought leader; contributing to the knowledge assets of our team and our clients. From day one, every consultant is trained and mentored to elevate their careers.

    Responsibilities:

    • Performs network and application technical vulnerability assessments using vulnerability assessment tools.
    • Performs penetration testing activities to detect vulnerabilities and attack chains.
    • Utilizes penetration testing skills to conduct analyses to gather deeper situational awareness and provide greater security insight of the environment.
    • Lead the Security Awareness efforts, including facilitating presentations on topics of relevance, evaluating and implementing awareness training
    • Assist in network security efforts including Data Loss Prevention, Intrusion Prevention and SIEM analysis
    • Test security measures including OS patches, system hardening, and application configuration
    • Monitor, review and troubleshoot alerts
    • Review, interpret and adapt customer, regulatory and corporate security and compliance requirements into technical design options
    • Apply knowledge of technical, analytical skills to ensure the confidentiality, integrity, and availability of all information systems assets and ensure compliance with company policies, procedures, contractual, and regulatory requirements.
    • Produce security policies, standards, and guidelines
    • Perform security research
    • Produce security risk advisories based on newly identified threats and risk assessment
    • Assist in performing IT audit, third party evaluations, and risk assessment activities

    Requirements:

    • Bachelor’s degree in Information Technology, Computer Science or a related discipline
    • Approximately 3 years’ work experience in Information Security in an enterprise network (Internships and Co-Ops can be included) 
    •  A recognized information security certification or accreditation such as Security+, CISSP, or CEH is a plus.
    • Fundamental understanding of penetration testing techniques and technologies
    • Fundamental understanding of application development security concepts such as OWASP Top 10 Vulnerabilities
    • Fundamental understanding of Active Directory administration and Windows authentication
    • Fundamental understanding of security technologies such as SIEM, IDS/IPS, Web filters, two-factor authentication, web application firewalls
    • Fundamental understanding of Malware detection, analysis, exploitation, containment, and eradication techniques experience
    • Experience with systems analysis including, but not limited to: Gathering requirements from stakeholders, Constructing RFP/RFQs, devising and planning proof-of-concepts, defining use and test cases, driving critical security infrastructure projects, creating cogent status reports for senior management, strong technical understanding of vulnerabilities, and how attackers can exploit vulnerabilities to compromise systems.
    • Excellent verbal, written, and presentation skills; in particular, demonstrated ability to effectively communicate technical and business issues and solutions to multiple organizational levels internally and externally as needed
    • Knowledge of security frameworks and governance such as NIST, ISO27000 series, HIPAA, GDPR, PCIDSS
    • Solid analytical and problem solving skills; ability to think strategically and turn ideas into actions
    • Familiarity with Project Management concepts.
    • Familiarity with scripting languages such as Python
    • Ability to work with little supervision and consistently deliver results

    The Location: This opportunity is based in Greensboro, NC.

    Numbers & Facts

    LocationGreensboro, North Carolina

    Skills

    • Analysis Skillsunmatched
    • Applications Securityunmatched
    • Auditingunmatched
    • Authenticationunmatched
    • Automotive Engineeringunmatched
    • CISSP - Certified Information Systems Security Professionalunmatched
    • Cancerunmatched
    • Communication Skillsunmatched
    • CompTIA Security+unmatched
    • Computer Scienceunmatched
    • Computer Securityunmatched
    • Consultingunmatched
    • Contract Requirementsunmatched
    • Corporate Complianceunmatched
    • Corporate Policiesunmatched
    • Customer Experienceunmatched
    • Enterprise Protectionunmatched
    • Firewallsunmatched
    • HIPAA (Health Insurance Portability and Accountability Act)unmatched
    • ISO (International Organization for Standardization)unmatched
    • Identify Issuesunmatched
    • Information Assetsunmatched
    • Information Technology & Information Systemsunmatched
    • Information Technology/Systems Auditunmatched
    • Information/Data Security (InfoSec)unmatched
    • Internet Applicationunmatched
    • Intrusion Detection Systemsunmatched
    • Intrusion Prevention Systemsunmatched
    • Life Insuranceunmatched
    • Loss Preventionunmatched
    • Maintain Complianceunmatched
    • Malware Analysisunmatched
    • Mentoringunmatched
    • Microsoft Active Directoryunmatched
    • Microsoft Windows System Administrationunmatched
    • Network Securityunmatched
    • OEM (Original Equipment Manufacturer)unmatched
    • Penetration Testingunmatched
    • Presentation/Verbal Skillsunmatched
    • Problem Solving Skillsunmatched
    • Project/Program Managementunmatched
    • Proof of Conceptunmatched
    • Python Programming/Scripting Languageunmatched
    • Quality Assurance Methodologyunmatched
    • Regulationsunmatched
    • Regulatory Complianceunmatched
    • Regulatory Requirementsunmatched
    • Request for Proposals (RFP)unmatched
    • Requirements Managementunmatched
    • Riskunmatched
    • Risk Analysisunmatched
    • Scripting (Scripting Languages)unmatched
    • Security Analysisunmatched
    • Security Information and Event Management (SIEM)unmatched
    • Security Infrastructureunmatched
    • Software Configuration Managementunmatched
    • Software Developmentunmatched
    • Software Patchesunmatched
    • Status Reportsunmatched
    • Systems Analysisunmatched
    • Team Lead/Managerunmatched
    • Technical/Engineering Designunmatched
    • Test Caseunmatched
    • Testingunmatched
    • Thought Leadershipunmatched
    • Threat and risk analysis (TRA)unmatched
    • U.S. National Institute of Standards and Technology (NIST)unmatched
    • Writing Skillsunmatched

    Be found by employers

    5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.

    Level up your application

    Professional resume templates

    Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.

    Free resume templates

    Free resume builder

    Improve your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.

    Free resume builder