As a Security Analyst, safeguard critical information assets and manage security incidents for JOTELULU. Collaborate on risk mitigation and enhance security posture through various technologies and tools.
Responsibilities
As a Security Analyst you will be at the forefront of safeguarding our organization's critical information assets.
You will manage security incidents, handle vulnerability assessments, and ensure compliance with industry standards.
Your role will also involve supporting security awareness campaigns, collaborating with teams to mitigate risks, and continuously enhancing our security posture through the administration of various tools and technologies.
This role also involves conducting access control audits, performing risk analysis and management, and implementing security measures to comply with various certifications.
You will Detect, analyze, and respond to information security incidents.
Coordinate incident resolution and ensure proper documentation for each case.
Identify, evaluate, and mitigate vulnerabilities in the organization's systems and networks.
Develop and maintain vulnerability scanning processes and tools to ensure a robust security posture.
Manage and maintain security tools such as EDR, SIEM, password managers, IDS, and O365 security and compliance.
Ensure all tools are up to date and properly configured.
Collaborate with operational teams to identify and assess security risks.
Develop mitigation plans and track risk management efforts.
Develop procedures and automations to ensure compliance with certifications such as ISO 27001, HDS, and ENS.
Coordinate audits and maintain adherence to these certifications.
Follow and execute actions established in the Security Master Plan.
Participate in reviewing and updating the plan as needed.
Plan and coordinate penetration testing exercises to assess the security of systems and applications.
Manage internal or external teams conducting the pentest exercises.
Conduct regular audits to ensure access controls are correctly implemented and functioning.
Review and update access control policies as necessary.
Develop and participate in information security awareness campaigns for all employees.
Create educational materials and conduct workshops and seminars.
Continuously assess and improve security tools and processes.
Research new technologies and security trends to implement improvements.
Requirements
Advanced vocational training in Cybersecurity and/or Network Systems Administration
A minimum of 2-3 years of experience in a similar information security role.
In-depth understanding of information security concepts and practices.
Experience with security tools and technologies across various domains: Perimeter security (FW, IDS), Endpoint/Server protection (EDR), SIEM, O365 protection.
Knowledge of security regulations and certifications: ISO 27001, ENS.
Ability to analyze and respond to security incidents.
Excellent communication skills and ability to work in a team.
Relevant security certifications, both general and vendor-specific, will be considered a plus.
Ability to work in dynamic environments with multidisciplinary teams.
Strong analytical and critical thinking skills.
Attention to detail
Multitasking and multiskills
Ability to handle confidential information.
Benefits
An opportunity for personal and professional growth, supported by high functioning teams and the exciting challenges that come with joining a company at the start of its growth trajectory.
An inclusive and upbeat work environment: leave your suit behind... we’re a t-shirt and converse kind of place!
More importantly, our company culture promotes diversity and inclusion. The personality and opinions of each of our team members are important and valid, and we aim to offer all employees a safe environment where they can be themselves and thrive.
An environment free of bureaucracy and corporate constraints; a culture where your opinion is highly valued and appreciated.
Flexibility: a great work-life balance.
Offices in the center of Madrid and flexible working model.
Professional growth: For training courses related to your role.
Flexible compensation: you'll be able to include your monthly expenses in meals and transportation into your payroll.
Company health insurance: we hope you won't need it, but just in case, we provide you access to the best medical network.
Feedback and transparent culture: feedback is the breakfast of champions, and we take it seriously. We have a real-time and honest feedback culture, with monthly formal 1to1 sessions with your manager, a performance evaluation plan (with semestral evaluations) and monthly all-hands meetings to understand all the business information you need!
Classified Cybersecurity Analyst conducting system audits and ensuring information system security for Northrop Grumman. Working on - site in Palmdale or Edwards AFB, California with a Top Secret clearance.
Information Security Analyst ensuring the protection of systems and data at ScanSource. Collaborating with IT teams and managing security tools to enhance organizational security levels.
Red Team Consultant conducting penetration tests and vulnerability assessments for Stefanini. Collaborating on security measures for applications and infrastructure across various environments.
Professional N2 in Information Security executing projects and providing technical support at NetSecurity. Collaborating with São Paulo technical team to enhance cybersecurity processes.
Cyber Security Analyst at Equitable Bank responsible for cyber risk governance. Working in a hybrid environment in Toronto focusing on compliance and risk management.
Cybersecurity Analyst role at Sip providing secure development support for financial services. Involvement in offensive security activities and design software solutions.
Experienced Information Security Analyst investigating incidents and mentoring junior analysts in a collaborative environment. Position with a mission - centered organization to support information security operations.
Network Security Analyst leading response efforts during major security incidents while ensuring robust security operations at Comcast. Engaging in investigations and providing strategic recommendations for improvements.
Cyber Security Co - op at RBC analyzing data to detect threats and improve security measures. Collaborating in a dynamic team environment to build solutions for potential cyber threats.