Information Security Analyst
Job Description
Arctiq is hiring a mid-level Information Security Analyst for hybrid support in Duluth, GA on a contract basis.
Responsibilities
- Independently monitor, investigate, and respond to security events across enterprise technologies and security platforms; determine severity, business impact, and appropriate response
- Conduct advanced analysis and correlation of security data to identify malicious activity, policy violations, control gaps, and other potential risks
- Partner with internal teams, managed security providers, and vendors to improve detection, escalation, response, automation, and overall security operations
- Identify opportunities to improve, automate, orchestrate, and scale security processes and controls as threats and business needs evolve
- Lead or support moderate-to-complex security incidents and investigations, including coordination of containment, remediation, recovery, and evidence preservation
- Document investigation timelines, evidence, findings, impact, actions taken, root cause, and lessons learned for leadership, Legal, HR, Compliance, or audit review
- Escalate high-severity, business-critical, or time-sensitive incidents immediately and maintain clear communications through closure
- Support vulnerability and exposure management by validating risk, prioritizing remediation, coordinating with system owners, and verifying closure of high-risk vulnerabilities and control gaps
- Assist security assessments, remediation workflows, penetration testing, control validation, and related evidence collection
- Evaluate security control effectiveness across enterprise technologies and drive documented exceptions or deficiencies toward resolution
- Investigate identity, access, data, SaaS, and cloud security anomalies using enterprise platforms and security technologies
- Support identity governance, privileged access, access reviews, authentication controls, and account lifecycle management
- Apply least-privilege and Zero Trust principles when supporting security controls and technology decisions
- Monitor and respond to events involving confidential, sensitive, or regulated information including PHI, PII, and PCI data
- Collect, validate, organize, and retain security evidence supporting regulatory, contractual, audit, customer, and internal assurance activities
- Support security risk assessments and third-party/vendor security reviews; translate findings into clear business-risk terms and track remediation
- Maintain repeatable procedures, playbooks, investigation records, evidence packages, and control documentation for consistent, auditable operations
- Support investigations and responses to user-reported security concerns, phishing, impersonation, and other human-targeted threats
- Support security awareness activities (simulations, metrics, trend analysis) and follow-up actions to reduce user-related risk
- Own assigned work through completion, proactively research issues, engage the right resources, and escalate blockers or risks promptly
- Balance incident-response priorities with operational responsibilities and deadlines in a fast-paced environment
- Provide concise, outcome-based updates on completed work, current risk, blockers, decisions needed, and next steps
- Provide guidance and mentoring to team members across security operations, investigations, evidence collection, documentation, and repeatable procedures
- Participate in after-hours incident response or escalation support when required by business need
- Provide security support for new technologies, integrations, acquisitions, and business initiatives, including identifying security considerations and implementing appropriate controls
Requirements
- Associate degree in Information Technology, Cybersecurity, Computer Science, or a related field (equivalent relevant experience may be considered)
- 3-5 years of relevant cybersecurity operations, SOC, incident response, security engineering support, or similar experience
- Strong incident-response, investigation, and evidence-handling skills; able to independently manage moderate-complexity security events
- Working knowledge of SIEM/SOC operations, EDR, email security, identity security, cloud security, and data-security monitoring
- Ability to perform advanced log analysis and correlate events across endpoint, identity, email, network, SaaS, and cloud telemetry
- Working knowledge of Microsoft 365, Entra ID, Windows security, networking concepts, authentication protocols, and common attacker techniques
- Working knowledge of cloud and SaaS security concepts, least privilege, and Zero Trust principles
- Familiarity with vulnerability management and patch/remediation workflows, including CVE/CVSS and CISA KEV, with risk-based prioritization
- Working knowledge of healthcare data-security considerations including PHI/HIPAA and PCI-related requirements
- Familiarity with security automation, orchestration, and scripting concepts, including PowerShell
- Knowledge of AI fundamentals, including generative AI concepts, appropriate enterprise use, data protection, security risks, and responsible use of AI-enabled tools
- Ability to create clear, repeatable SOPs, investigation notes, executive summaries, and audit-ready evidence
- Ability to communicate technical risk clearly to technical teams, leadership, and non-technical stakeholders
- Demonstrated ownership, initiative, sound judgment, and ability to prioritize competing responsibilities in a fast-paced, distributed environment
Technologies
- SIEM, SOC, EDR
- Email security, identity security, cloud security
- Microsoft 365, Entra ID
- Windows security, authentication protocols
- CVE, CVSS, CISA KEV
- PowerShell
Company Overview
- Arctiq is a global, intelligence-driven technology services company delivering professional and managed services across Hybrid Cloud Infrastructure, Networking & Connected Experiences, Cybersecurity, Data & AI, Autonomous Operations & Intelligence, and Enterprise Service Management
- Unifies infrastructure, networking, data, security, automation, and observability under a single, integrated operating model to help customers reduce operational friction and improve resilience
- Helps customers modernize complex environments and make better, faster decisions as environments evolve
- Builds on decades of industry expertise and a customer-centric approach
Position Overview
- Information Security Analyst II role supporting operation and continuous improvement of a client information security program
- Independently manages assigned security responsibilities, supports risk reduction, and collaborates across the organization to protect systems, data, and business operations
- Strong ownership, sound judgment, adaptability, and communication are essential
Equal Opportunity
- Arctiq provides accommodations or adjustments throughout the interview process and beyond upon request
- Welcomes members of all backgrounds and perspectives to apply
- Only candidates selected for an interview will be contacted