About the Organization
NWRDC supports multiple state and government agencies with highly available infrastructure, including redundant power, backup generators, and secure network environments. The organization also delivers offsite disaster recovery services across remote locations and cloud platforms.
Mission: To provide secure, reliable computing services, expert support, and innovative technology solutions while ensuring business continuity for all customers.
Position Overview
We are seeking an experienced Security Analyst to support enterprise security operations. This role will serve as a key liaison between internal teams and the Managed Security Services Provider (MSSP), ensuring effective monitoring, incident response, and continuous improvement of security operations.
Key Responsibilities
Service Delivery & Security Operations
- Act as the primary liaison between the Department and MSSP (e.g., Secureworks) for daily operations
- Analyze and respond to security incidents within MSSP scope and beyond
- Perform advanced analysis of security alerts and incidents from SIEM and monitoring tools
- Support integration of security logs across systems into SIEM/SOAR platforms
- Assist in deployment and monitoring of endpoint security agents across environments
- Maintain and monitor IDS/IPS systems, log collectors, and security appliances
- Collaborate with security teams to ensure optimal health of security infrastructure
- Provide regular status updates and reports to leadership
Security Engineering & Monitoring
- Configure and monitor firewalls, IDS/IPS, load balancers, and web gateways
- Support continuous onboarding of new systems into security monitoring platforms
- Conduct research and analysis of log sources for improved threat detection
- Assist in identity monitoring and access-related security activities
Compliance & Data Security
- Ensure strict adherence to data security and confidentiality policies
- Follow all Department security procedures and regulatory requirements
Required Qualifications
- Minimum 4+ years of experience as a Security Analyst
- Experience working with a Managed Security Services Provider (MSSP) (Secureworks preferred)
- Hands-on experience with SIEM/log management systems
- Strong experience in security event monitoring, log analysis, and incident response
- Experience with IDS/IPS, firewalls, and network security appliances
- Experience with endpoint deployment tools (e.g., SCCM, Ivanti, KACE, Altiris)
- Strong knowledge of Microsoft Active Directory (on-prem and Azure hybrid)
- Experience with identity and access management processes
Key Skills
- Advanced threat analysis and incident response
- Log analysis and security monitoring
- Network security and infrastructure monitoring
- SIEM and SOAR tools integration
- Strong analytical and problem-solving skills
Communication Skills
- Excellent verbal communication skills for coordination with stakeholders
- Strong written communication skills for reporting and documentation