Job Closed
This listing is no longer active.
IRS - Journeyman Information Security Analyst
Location
United States
Posted
71 days ago
Salary
0
Seniority
Mid Level
Job Description
IRS - Journeyman Information Security Analyst
cFocus Software Incorporated
cFocus Software seeks a Journeyman Information Security Analyst to join our program supporting the Internal Revenue Service (IRS). This position is remote. This position requires a Public Trust clearance. Qualifications: - Active Public Trust clearance - 5 to 8 years of progressively responsible experience in information security, cyber risk management, or IT security operations. - Must include at least 3 years of hands-on experience in system security analysis, vulnerability management, or incident response within a Federal Information Systems Security or equivalent enterprise environment. - Bachelor’s degree in Cybersecurity, Information Systems, Computer Science, or related field. - Security+ CE certification required. - Higher-level certifications (e.g., CISSP, CISM, CEH, CAP) preferred and may substitute for additional years of experience. - Knowledge of FISMA, NIST Special Publications, OMB, Risk Management Framework (RMF), and ISCM Plan development. - IT security knowledge with desired Professional Certifications from the International Information System Security Certification Consortium (ISC)2, the International Society for Automation (ISA), the Project Management Institute (PMI), CompTIA, or the SANS Institute - Knowledge of the IRS infrastructure, technologies and general support systems is highly desirable - Knowledge and experience with technology risk assessments covering Webservices, network appliances and software - Knowledge and experience the IRS Enterprise Lifecycle and OneSDLC - Knowledge of System Interconnections to include virtual private network VPN) and other encryption technologies - Knowledge and experience with cloud systems, CSPs, and FedRAMP requirements - Knowledge of IRS Business Units and IT enterprise processes organizational processes within the - Knowledge/experience with Qmulos Q-Compliance, SharePoint, Scanning tools, ServiceNow GRC, SPLUNK - Knowledge and experience with technology security engineering, analysis, and assessment - Knowledge and experience with security architecture principles and system modeling
Related Guides
Related Categories
Related Job Pages
More Security Analyst Jobs
Information Assurance and Privacy Analyst
Lighthouse Document Technologies IncLighthouse celebrates and thrives on diversity and is an Equal Opportunity Employer. We hire, train, and promote regardless of race, religion, color, national origin, sex, disability, age, veteran status, and other protected status as required by applicable law. We welcome any talents and contributions you can bring to the team and are deeply committed to growing an environment where everyone can feel safe, is respected, and can show up as themselves. Come as you are!
Role Description This role supports the Information Assurance and Privacy team as a driver of risk management, compliance management, assessments, security controls, and awareness throughout the organization. The Senior Compliance Analyst will play a crucial role in ensuring that our company complies with all regulatory requirements and internal policies. This position involves a deep understanding of eDiscovery and the technology utilized, as well as monitoring, auditing, and reporting on compliance activities, and providing support and guidance to various departments. The role also includes managing incoming security assessments from clients and ensuring vendors are reviewed within the contracting platform. - Develop, implement, and maintain compliance policies and procedures. - Collaborate in the development and maintenance of an information security policy set, including standards and processes that fit the organization at all levels and ensure the confidentiality, integrity, and availability of the enterprises’ information. - Seek and confirm management approval as required. - Liaise with Service Delivery and Product Development to ensure that information security architecture standards, policies, and procedures are available and enacted consistently across application development projects, programs, and eDiscovery workflows. - Assist in conducting regular audits and assessments to ensure adherence to regulatory requirements. - Ensure operational compliance of the information assurance and privacy compliance programs, including but not limited to SOC II, ISO 27001, and HIPAA. - Monitor and analyze regulatory changes and their impact on the company. - Develop and maintain a working knowledge of company's service offerings and products within the eDiscovery industry. - Provide training and support to employees on compliance-related matters within an eDiscovery framework. - Investigate and resolve compliance issues and complaints. - Prepare and submit compliance reports to regulatory bodies and senior management. - Collaborate with client services, sales, legal, finance, and other departments to ensure comprehensive compliance coverage. - Maintain up-to-date knowledge of industry best practices and regulatory developments. - Manage incoming security assessments from clients and ensure timely responses. - Review and assess vendors within the contracting platform to ensure compliance with company standards. - Oversee and maintain risk register, ensuring timely resolutions of open risks. - Ensure that strategic information security and risk guidance is provided to third-party suppliers in accordance with internal frameworks and ensure compliance with enterprise and/or client required controls. - Coordinate with stakeholders, subject matter experts, and external regulators with enterprise incident management, including the identification, reporting, control, and recovery of incidents. - Work with stakeholders to ensure that availability of information is considered in Business Continuity and Disaster Recovery planning. - Coordinate with IT leadership on IT/DR plan development and facilitate tabletop exercises. - Participate in the Information Security Steering Counsel and provide guidance to non-technical members of the council to ensure all members’ effectiveness. - Build sound, collaborative business relationships across the enterprise to enable a strong understanding and close alignment with business needs, direction, and risk appetite. - Foster continuous improvement of enterprise’s information security and privacy compliance through accurate, timely and effective metrics and corrective action programs. - Ability to plan, scope and estimate work effort to produce high quality deliverables in time/on budget. - Perform other related duties as assigned. Qualifications - Bachelor's degree desired. - Minimum of 5 years of experience in compliance or eDiscovery. - Minimum of 3 years providing SaaS services. - Strong understanding of regulatory requirements and compliance standards. - Background in eDiscovery, including experience with eDiscovery tools and processes. - Relativity expertise a strong plus. - Excellent analytical, organizational, and problem-solving skills. - Ability to communicate effectively with all levels of the organization. - Proficiency in compliance management software and tools. - Knowledge of eDiscovery, Application Security, IT Security Policy and governance, Risk Management, Incident Management. - Exceptional interpersonal skills with the ability to speak clearly and with authority to auditors, clients, regulators, and senior company personnel. - Intellectual curiosity and the ability to learn new concepts quickly and efficiently. - Highly solution-focused; strong sense of urgency with a passion for 100% availability. Requirements - Duties are performed in a typical office environment while at a desk or computer table. - Duties require the ability to use a computer, communicate over the telephone, and read printed material, in a quiet and professional setting. - Duties may require being on call periodically and working outside normal working hours (evenings and weekends). Benefits - Comprehensive quality benefits package including medical, dental, vision, and a 401k with company match. - Company paid benefits including Life & AD&D, short and long-term disability, telemedicine, and other wellness plans. - Generous Flexible PTO program and paid volunteer days. - Participation in voluntary insurance plans including accident, hospitalization, and critical illness plans as well as pet insurance. - Eligibility to participate in an annual bonus or incentive program.
Security Analyst
Zoom Video CommunicationsZoom Video Communications was founded in 2011 to revolutionize the way teams communicate with its software-based conference room solution. Across all devices an
Security Analyst What you can expect We are seeking a Security Analyst to monitor, detect, analyse, and respond to security incidents. Leveraging advanced security tools and threat intelligence to protect organizational assets. About the Team The Detection and Response (D&R) team at Zoom is responsible for safeguarding the company's systems and information to protect customers, partners, and employees. This involves assessing business risk and countering potential threats through proactive and reactive measures. D&R encompasses Cyber Threat Intelligence, Security Logging, Detection Engineering, the Security Operations Center, and Incident Response. What we’re looking for - Have a minimum of 3 years of direct experience working in a Security Operations Center or similar environment. With a Bachelor in Engineering or similar field. - Utilize CrowdStrike NG-SIEM and Splunk for security event monitoring and analysis. - Operate CrowdStrike EDR to detect and respond to endpoint threats - Implement Cortex XSOAR for security orchestration, automation and response. - Deploy DLP (Data Loss Prevention) solutions including Cyberhaven and Digital Guardian. - Configure proxy technologies and web filtering using Zscaler. - Analyze threat intel platforms and conduct IOC analysis with Anomaly. - Perform sandboxing analysis using Joe Sandbox and other tools. - Manage ProofPoint Email security, Google admin, and ProofPoint TAP. - Develop scripting and workflow automation using XSOAR. Ways of Working Our structured hybrid approach is centered around our offices and remote work environments. The work style of each role, Hybrid, Remote, or In-Person is indicated in the job description/posting. Benefits As part of our award-winning workplace culture and commitment to delivering happiness, our benefits program offers a variety of perks, benefits, and options to help employees maintain their physical, mental, emotional, and financial health; support work-life balance; and contribute to their community in meaningful ways. Click Learn for more information. About Us Zoomies help people stay connected so they can get more done together. We set out to build the best collaboration platform for the enterprise, and today help people communicate better with products like Zoom Contact Center, Zoom Phone, Zoom Events, Zoom Apps, Zoom Rooms, and Zoom Webinars. We’re problem-solvers, working at a fast pace to design solutions with our customers and users in mind. Find room to grow with opportunities to stretch your skills and advance your career in a collaborative, growth-focused environment. Our Commitment At Zoom, we believe great work happens when people feel supported and empowered. We’re committed to fair hiring practices that ensure every candidate is evaluated based on skills, experience, and potential. If you require an accommodation during the hiring process, let us know—we’re here to support you at every step. If you need assistance navigating the interview process due to a medical disability, please submit an Accommodations Request Form and someone from our team will reach out soon. This form is solely for applicants who require an accommodation due to a qualifying medical disability. Non-accommodation-related requests, such as application follow-ups or technical issues, will not be addressed. #LI-Remote
CyberArk SME- DIGITAL SECURITY
ZensarAt Zensar, we’re “experience-led everything”. We are committed to conceptualizing, designing, engineering, marketing, and managing digital solutions and experiences for over 130 leading enterprises. We are a company driven by a bold purpose: Together, we shape experiences for better futures. Whether for our clients, our people, or the world around us, this belief powers everything we do. At the heart of our culture is ONE with Client - a set of four core values that reflect who we are and how we work: One Zensar, Nurturing, Empowering, and Client Focus. Part of the $4.8 billion RPG Group, we’re a community of 10,000+ innovators across 30+ global locations, including Milpitas, Seattle, Princeton, Cape Town, London, Zurich, Singapore, and Mexico City. We believe the best work happens when individuality is celebrated, growth is encouraged, and well-being is prioritized. We are an equal employment opportunity (EEO) and affirmative action employer, committed to creating an inclusive workplace. All qualified applicants will be considered without regard to race, creed, color, ancestry, religion, sex, national origin, citizenship, age, sexual orientation, gender identity, disability, marital status, family medical leave status, or protected veteran status.
Job Description: CyberArk Core Skills - Deploy, configure, and maintain CyberArk components including: - EPV, PVWA, PSM, PSMP, CPM, Vault, AAM/Conjur, PTA, and Credential Providers. - Implement CyberArk Privileged Account onboarding, password rotation policies, and access controls. - Configure Session Recording, PSM connectors, workflow approvals, and secure remote access. - Manage privileged accounts across servers, databases, network devices, cloud workloads, and applications. - Enable Least Privilege, JIT (Just In Time) access, and Zero Standing Privileges. - Conduct privileged access reviews, reconciliation, and clean-up of orphan/dormant accounts. - Integrate CyberArk with enterprise systems: Active Directory, LDAP, SIEM, MFA/SSO, Identity Governance (IGA), ticketing systems, and cloud platforms (AWS/Azure/GCP). - Develop automation using REST APIs, PowerShell, Python, etc., for bulk onboarding, reporting, and operational enhancements. - Implement break glass procedures, vault hardening, DR setup, and HA configurations. - Investigate and resolve CyberArk platform issues including Vault connectivity, CPM failures, PSM session errors, and credential injection failures. - Monitor system health, logs, alerts, and ensure adherence to security baselines. - Perform patching, upgrades, and lifecycle management for all CyberArk components. Mandatory Certification - CyberArk CDE (CyberArk Defender + Sentry) Certification Additional Skills - Strong problem‑solving, analytical, and troubleshooting capabilities. - Ability to communicate security concepts to technical and non‑technical stakeholders. - Excellent documentation, stakeholder management, and collaboration skills. At Zensar, we’re “experience-led everything”. We are committed to conceptualizing, designing, engineering, marketing, and managing digital solutions and experiences for over 130 leading enterprises. We are a company driven by a bold purpose: Together, we shape experiences for better futures. Whether for our clients, our people, or the world around us, this belief powers everything we do. At the heart of our culture is ONE with Client - a set of four core values that reflect who we are and how we work: One Zensar, Nurturing, Empowering, and Client Focus. Part of the $4.8 billion RPG Group, we’re a community of 10,000+ innovators across 30+ global locations, including Milpitas, Seattle, Princeton, Cape Town, London, Zurich, Singapore, and Mexico City. Explore Life at Zensar and join us to Grow. Own. Achieve. Learn. to be the best version of yourself. We believe the best work happens when individuality is celebrated, growth is encouraged, and well-being is prioritized. We are an equal employment opportunity (EEO) and affirmative action employer, committed to creating an inclusive workplace. All qualified applicants will be considered without regard to race, creed, color, ancestry, religion, sex, national origin, citizenship, age, sexual orientation, gender identity, disability, marital status, family medical leave status, or protected veteran status.
Cyber Security Analyst
PerkboxHelping businesses care for, connect with and celebrate their people— no matter where they are or what they want 🎈
Does this sound like you? You're a motivated and detail-oriented professional who thrives in a fast-paced environment. With strong communication, organisation, and problem-solving skills, you enjoy owning your workstream from end to end. As our Cyber Security Analyst, you will play a critical role in protecting our digital infrastructure by leading the detection, investigation, and response to cybersecurity threats. By monitoring security systems, analysing incidents, and proactively identifying vulnerabilities, you will be the core of our defense against breaches. In addition to technical expertise, you will provide strategic input on improving security posture, guide junior analysts, and collaborate across teams to ensure risks are managed effectively. What you’ll be doing (in a nutshell): In this role, you’ll take ownership of key operational responsibilities, ensuring smooth delivery and execution across your area of focus. You’ll work collaboratively with internal teams and external stakeholders to deliver seamless outcomes, improve processes, and support organisational success. Day-to-day you can expect to: - Lead incident response efforts for security breaches and malware attacks including root cause analysis and recovery - Monitor the threat landscape and correlate threat intelligence with monitoring tools to proactively identify risks - Oversee and manage vulnerabilities while assessing and leading remediation efforts - Work cross-functionally with IT, DevOps, and GRC teams to align cybersecurity with operational goals - Manage and refine configurations for security tools and recommend new security solutions - Maintain detailed and accurate documentation on security incidents and investigations - Contribute to the development of the Perkbox cybersecurity strategy and promote best practices - Keep abreast of the latest developments to ensure zero-day issues are discovered in a timely manner - Manage annual penetration testing activities and resolve vulnerabilities in line with policy - Focus on specialist knowledge area tickets as a priority while assisting the wider team with generic workload - Collaborate with the IT team on a cycle of constant improvement regarding automation and efficiency To be successful, you'll have: - Excellent communication skills with the ability to engage stakeholders clearly and professionally - Strong time management and organisation with the ability to balance multiple priorities - Proven experience with vulnerability scanning tools and remediating software or hardware vulnerabilities - Hands-on experience with testing and exploiting vulnerabilities using manual penetration testing methods - A logical and lateral approach to problem solving while remaining cool under pressure - A detail-oriented approach with a commitment to quality, accuracy, and compliance - A collaborative mindset and the ability to be a great team player across different disciplines Bonus points if you bring: - A self-starter attitude with the ability to work independently and research new trends - A natural ability to teach and explain advanced security concepts to a wide audience - Previous experience working in a fast-paced or scaling organisation Why Perkbox? It's an exciting time to join us at such a pivotal moment. We recently launched our Bulgarian operations with a bold mission to build a high-performing and inspired team. Our goal is to foster a workplace defined by growth, genuine collaboration, and a sense of purpose. With more than 20 years of experience across public, private, SME and corporate sectors, Perkbox are now supporting over 4 million employees across 7,500 organisations. From access to expert mental health services to help with the cost of everyday essentials, our expanded range of benefits and wellbeing tools meets people where they are - at work and beyond. We’re redefining what employee benefits can be. And we’re just getting started. The Interview Process Our interview process involves 4 main stages: - Application - Short call with a member of the TA team - 30-minute video call with Hiring Manager - Final Interview and task Our average process takes around 2-3 weeks, but we will always work around your availability. You will have the chance to speak to our recruitment team at various points during your process. If you have any specific questions ahead of this, please contact dimitar.kondakov@perkbox.com We’re committed to being an inclusive employer and creating a fair workplace for all. We encourage applications from candidates across all backgrounds, circumstances, ages, disabilities, ethnicities, religions or beliefs, gender identities, or sexual orientations We're happy to offer reasonable adjustments during our hiring process. Just let us know, and we'll make it work for you. Your comfort and success matter to us!


