Cyber Security Analyst

at Forward Air
Location Pittsburgh, PA
Date Posted January 26, 2021
Category Default
Job Type Full-time

Description

Position: Cyber Security Analyst

Job Description: 

The Cyber Security Analyst will act as an Information Security subject matter expert. The individual will actively participate in regular engagements with Forward Air IT in order to drive understanding and compliance of InfoSec policy/standards and requirements back into the Forward Air IT organization. In addition, they will provide subject matter expertise to ensure clear communications and deep understanding during information security incidents.

Core Duties & Responsibilities: 

  • Assist in secure design and maintenance of operational and back office systems including access and authorization, logging, intrusion prevention, vulnerability management and disaster recovery
  • Assist in driving effective and defensible security design for operational systems including firewall design, two factor authentication, role-based access, logging and monitoring.  Implement, oversees application security policies and procedures at all layers of the SDLC including the ability to do the following:
  • Drive compliance/adherence of design back to reference architecture and information security standards
  • Validate that secure coding methods are embedded into the software development process to ensure code released to production is adequately protected
  • Map specific security gaps/flaws back to a risk level and articulate appropriate risk mitigation strategy
  • Understand patching and server-hardening approaches in industry, assist in enhancement of Forward Air standard practices. Drive short- and medium-term planning to adhere to patching and hardening standards
  • Work with development teams to remediate code vulnerabilities
  • Understand Fraud Techniques and mitigating controls
  • Write / implement / govern policies related to information security
  • Familiarity with industry standards, guidelines, and regulatory compliance requirements related to information security and cloud computing (e.g., CCPA, ISO 27001, Cloud Security Alliance, NIST 800-53, PCI DSS, SOC2.)
  • Deliver Data Protection Options including Data Loss Prevention and Encryption strategy for systems and applications
  • Provide in depth knowledge of Application Security Design Principles and code techniques
  • Use knowledge of existing security posture and systems design to drive Security Incident Management scenarios
  • Develops quarter-by-quarter Information Security Focus Areas including application security, Tool Rollout, Awareness Communications and Security Workshops
  • Other duties as assigned

Qualifications: 

  • A degree in the field of Computer Science or related field, or equivalent experience is required
  • 5 + years of experience in IT information security
  • Strong technical and consulting skills, project management capability
  • Experience with security and risk frameworks, standards and best practices
  • Able to present effectively to executive level in both business and IT terms

Skills:

  • Ideal candidate will possess a “can do” attitude with a “will do” work ethic
  • Quick thinker, experienced in unconventional problem solving
  • Excellent understanding of business complexity and project interdependencies
  • Excellent communication, written, verbal, analytical and problem solving skills
  • Good time management skills and ability to meet deadlines
  • Strong understanding of the organization’s goals and objectives
  • Exceptional interpersonal skills, with a focus on listening and questioning skills
  • Strong documentation skills
  • Ability to conduct research into a wide range of computing issues as required
  • Ability to absorb and retain information quickly
  • Ability to present ideas in user-friendly language to non-technical staff and end users
  • Keen attention to detail
  • Ability to effectively prioritize and execute tasks in a high-pressure environment
  • Exceptional customer service orientation
  • Experience working in a team-oriented, collaborative environment

Forward Air is an Equal Opportunity employer.