IT Security Analyst

ALAW - Tampa, FL

Hiring: IT Security Analyst Company: ALAW Location: Tampa, FL Job Posted Time: 2026-09-16 14:25:40 Employment Type: Full-time / Remote Target Skills & Keywords : AWS, Azure, Encryption, Regulatory Compliance, SOC 2 About the job Required Skills: •Monitor and triage security alerts involving suspicious sign-ins, malware, phishing, endpoint activity, email threats, administrative changes, and unusual network or cloud activity. •Investigate user-reported phishing messages, analyze relevant indicators, identify similar messages, and coordinate quarantine or removal when appropriate. •Support identity and access reviews, including inactive, vendor, and privileged accounts; MFA enrollment; Conditional Access coverage; suspicious sign-ins; and mailbox forwarding or inbox rules. •Monitor endpoint security coverage and compliance, identify devices with missing or outdated security tools, and coordinate remediation with IT Operations. •Review vulnerability and patch-compliance reports, prioritize findings based on risk, create remediation tickets, and validate completion through rescans or supporting evidence. •Review Microsoft 365, Azure, and AWS security findings, including external sharing, guest access, configuration exceptions, logging, encryption, and least-privilege controls. •Assist with security awareness training, phishing simulations, employee follow-up, and reporting on participation and phishing trends. •Support incident response by collecting evidence, documenting timelines, assisting with approved containment activities, and tracking action items through closure. Qualifications: •Operational familiarity with security frameworks or regulatory standards such as NIST CSF, CIS Controls, SOC 2, or the GLBA Safeguards Rule. •Security+, CySA+, SC-200, AZ-900, MS-900, or a comparable certification is preferred but not required. •One to three years of experience in cybersecurity, IT support, security operations, infrastructure support, audit support, or a related technical role. •Solid functional working knowledge of Windows endpoints, Microsoft 365, phishing analysis, vulnerability management, security alerts, and ticketing workflows. •Demonstrated capacity to review logs and technical findings, follow established procedures, document conclusions, and escalate concerns appropriately. •Strong attention to detail and organizational skills, particularly when maintaining evidence for audit, compliance, and governance purposes. •Effective written and verbal communication skills. Compensation: •Competitive benefits and rewards package •Medical, dental, and vision Insurance Interested candidates, please apply directly through the job posting on company's career page or try via AI auto apply on this platform. Don't miss this opportunity to join a forward-thinking team!