Cybersecurity Analyst
Job Description
Vanderbilt Health is seeking a Cybersecurity Analyst to support onsite security operations in Nashville, TN. In this role, you will help safeguard infrastructure by investigating incidents, assessing vulnerabilities, and analyzing threats, often working with occasional guidance when conducting more complex forensic and discovery activities.
The position focuses on practical security work across computer forensics, electronic discovery, and threat analysis, along with troubleshooting and resolution of complex security issues. You will also contribute to small and medium technology projects or components of larger initiatives.
Key Responsibilities
- Conduct computer investigations.
- Respond to and/or mitigate security breaches and attacks to the infrastructure.
- Perform vulnerability and threat analysis for the environment.
- Troubleshoot and resolve complex security issues.
- Conduct computer forensic investigations, data recovery, and electronic discovery under occasional guidance.
- Conduct small and medium scale vulnerability assessments and threat analysis for the environment.
- Implement small and medium technology projects or components of large projects.
Required Qualifications
- Minimum 2 years of experience.
- Bachelor's degree.
- Ability to solve medium to complex problems.
- Ability to demonstrate Anomaly Detection practices in practical applications of moderate difficulty.
- Capable of using Intrusion Detection Systems software.
- Ability to demonstrate Network Forensics in practical applications of moderate difficulty.
- Demonstrates the ability to respond quickly to reports from individuals.
- Takes immediate action to stop an incident from continuing or recurring.
- Determines whether an incident should be handled locally or reported to the IT Security Response Team.
- Works with IT support staff to repair a system, restore service, and preserve evidence of the incident.
- Handles sensitive and other critical responses in a professional manner.
- Evaluates and documents investigation findings after resolving an incident.
- Possesses sufficient fundamental proficiency to successfully demonstrate Malware Analysis in practical applications of moderate difficulty.
- Has determined the behavior and purpose of a simple malware threat and eliminated it from the company’s computers.
- Familiar with Dynamic Analysis and Static Analysis.
- Has used basic Malware Analysis tools and products.
- Demonstrates the ability to review basic Internet connections and internal networks to identify standard hacker/cracker threats.
- Able to review the configuration of server and major network applications to identify configuration errors and other issues that weaken organizational systems and increase misuse likelihood.
- Has conducted an assessment of at least one of the following: access controls; password controls; connectivity controls (e.g., open ports/enabled protocols); inappropriate files (including viruses, worms, Trojan horses, bootleg software, music files, inappropriate image files); unpatched software, bringing attention to available security-related patches that have not been deployed.
- Basic knowledge of several of the following: network foot-printing, port scanning, and enumeration techniques, specific operating system vulnerabilities [like Win-NT, *nix, Win-2K, Solaris], web server vulnerabilities, application level exploits, worms, viruses, and Trojans, network vulnerabilities, sniffing, wireless sniffing, IP spoofing, and PPTP/VPN breaking.
- Generate security reports for management that show system safety and incident reporting.
Technical Skills and Tools
- Intrusion Detection Systems
- Dynamic Analysis
- Static Analysis
- PPTP/VPN breaking
Vulnerability Assessments
- Demonstrates the ability to review basic Internet connections and internal networks to identify standard hacker/cracker threats.
- Able to review server and major network application configurations to identify errors and weaknesses.
- Generate security reports for management covering system safety and incident reporting.
Work Context
This role executes responsibilities with an understanding of how work impacts other areas within the own job area or team, with occasional guidance. You will also provide informal guidance and support to team members and contribute to continuous improvement through learning and applying experience to uncover underlying causes and improve outcomes.
Benefits
- A comprehensive benefits package, which may include health, disability, retirement, and wellness offerings.