Cybersecurity Analyst

Lake Forest, IL United States

Job Title: Cybersecurity Analyst
Location: Lake Forest, IL – onsite – local candidates only
Period: 09/09/2024 to 12/31/2024 – possibility of extension
Hours/Week: 40 hours – hours over 40 will be paid at time and a half
Rate: $50 – $60/hour
Contract Type: W-2 only

 
Scope of Services:

The Cybersecurity Analyst will be responsible for performing cybersecurity assessments based on the NIST Framework. This role requires ensuring the appropriate application of security products and technologies to protect the organization’s systems and information, enabling the achievement of the organization’s objectives. The analyst will develop a risk-based cybersecurity program that meets regulatory requirements and aligns with industry-leading information security practices. Responsibilities include performing threat identification and mitigation activities using industry-leading security controls and toolsets, supporting management in developing strategies, policies, and standards to protect company information and technology assets, and applying technical knowledge to safeguard the company's assets against cyber threats.

 
Role, Responsibilities, and Deliverables:

  • Perform cybersecurity risk-based assessments.
  • Apply technical knowledge to design, develop, or recommend secure technical solutions, including policies, standards, applications, systems, architectures, and infrastructure.
  • Perform threat identification and mitigation activities using industry-leading security controls and toolsets.
  • Contribute to the design of cybersecurity toolsets to enable automated discovery, remediation, and alerting of network and device vulnerabilities, improving the security posture.
  • Assess threats to the business and deploy countermeasures.
  • Guide business units, application development teams, and third-party vendors to achieve program requirements while enabling business operations.
  • Participate in cross-team coordination to achieve defined security goals and meet technical requirements.
  • Perform analysis of emerging technologies and design secure implementations.
  • Perform assessments of cybersecurity incidents to identify root causes, respond, and recover the environment.
  • Support management in developing strategies, policies, and standards to protect company information and technology assets.
  • Contribute subject matter expertise on security projects to ensure the timely, on-budget, and effective implementation of cybersecurity improvements, with validation methods in place to measure effectiveness.

 
Experience:

  • Bachelor’s degree in Cybersecurity, Software, or a related field (Master’s preferred).
  • 2 to 4 years of experience in cybersecurity roles.
  • Experience performing cybersecurity risk-based assessments and working with the NIST Framework.
  • Proficiency in technical knowledge to protect against cyber threats, including knowledge of firewalls, intrusion detection and prevention systems, data loss prevention solutions, endpoint protections, log aggregation technology, and other security technologies.
  • Hands-on experience with industry standards such as ISO 27001/2, SOC 2, HITRUST, and FedRAMP Information Security standards.
  • Experience with GRC toolsets (Governance Risk and Compliance).
  • Strong analytical skills for threat identification and mitigation.
  • CompTIA Security+ certification preferred.
  • CISSP certification (or similar) and knowledge of national and international regulatory compliance and frameworks such as ISO, SOX, BASEL II, EU DPD, HIPAA, and PCI DSS.