Senior Cyber Defense & Risk Analyst
Veritiv - Atlanta, GA
Hiring: Senior Cyber Defense & Risk Analyst Company: Veritiv Location: Atlanta, GA Job Posted Time: 2026-09-16 13:42:27 Employment Type: Hybrid Target Skills & Keywords : Microsoft Office, Risk Management, Root Cause Analysis, SIEM, SOC, SaaS About the job Experience: •3-5 years of related job experience. •Demonstrated capacity to manage multiple projects, work under pressure, and adapt to sudden changes in the work environment. •Demonstrated capacity to work quickly and efficiently. •Proficient with Microsoft Office Suite. •Strong customer service skills (friendly, courteous and helpful). Required Skills: •Monitor, analyze, and validate security alerts using Veritiv’s security monitoring ecosystem (e.g., SIEM/MDR, endpoint security, identity protection, and email security tools). •Investigate, triage, and respond to incidents (e.g., phishing, identity compromise, malware, suspicious network activity), coordinating with internal stakeholders and third-party providers as needed. •Perform root cause analysis and support containment, eradication, and recovery activities; document incident details, actions taken, and lessons learned. •Assist with technical security reviews of new or changing technologies (SaaS, cloud services, integrations, and vendors), identifying misconfigurations and recommending compensating controls. •Partner with Internal Audit and control owners to support IT audit activities (e.g., evidence collection, walkthroughs, remediation validation, and closure of findings). •Participate in third-party / vendor risk activities, including review of security documentation, questionnaires, and assessment results; help translate vendor technical risks into business impact and mitigation steps. •Communicate complex technical topics clearly to non-technical stakeholders; produce concise written deliverables (incident summaries, risk write-ups, audit evidence narratives). •Identify opportunities to automate and streamline GRC and security operations processes (e.g., alert triage, evidence collection, control testing support, reporting), including the responsible use of approved AI-enabled security capabilities to improve speed, consistency, and quality. Qualifications: •Solid functional working knowledge of common security controls and frameworks (e.g., NIST CSF, ISO 27001/27002, CIS Controls) and the ability to map technical issues to control requirements. •Applied hands-on capability in at least two of the following areas: security monitoring (SIEM/MDR), incident response, vulnerability management, endpoint security (EDR), identity and access management, email security. •Demonstrated capacity to write clearly and maintain thorough documentation (risk statements, procedures, incident notes, and audit evidence narratives). •Strong interpersonal and communication skills, including the ability to work effectively with both technical teams and business stakeholders. •Aptitude and desire to leverage AI-enabled capabilities and automation to improve security outcomes (e.g., workflow automation, scripting, playbooks, and repeatable process improvement) while maintaining appropriate governance and data handling practices. •IT, Risk Management, Computer Science and Business Administration majors preferred. •Bachelor's Degree Preferred •Certified Information Systems Security Professional (CISSP) - International Information System Security Certification Consortium •Certified Information Systems Auditor (CISA) - Information Systems Audit and Control Association (ISSACA) •Excellent verbal, written, people, and diplomacy skills are required. Interested candidates, please apply directly through the job posting on company's career page or try via AI auto apply on this platform. Don't miss this opportunity to join a forward-thinking team!