Job Description
Information Security Analyst (224096-11)
Seeking an Information Security Analyst with experience assessing security risks, identifying vulnerabilities, and supporting compliance initiatives to strengthen and protect enterprise IT environments.
Hours
Full-time, Monday-Friday 8:00a.m.-5:00p.m.
Location
Honolulu, Oahu
Pay
$89,000 to $113,000 a year
Responsibilities
- Evaluate IT and operational technology (OT) environments to identify security risks and recommend appropriate safeguards.
- Review systems and network configurations to ensure compliance with established security standards and organizational policies.
- Analyze existing security controls to identify vulnerabilities and strengthen overall cybersecurity defenses.
- Assist in developing and implementing security solutions for new technologies, applications, and infrastructure projects.
- Support regulatory compliance efforts and contribute to security, privacy, and governance initiatives.
- Help manage cybersecurity programs, including vulnerability remediation, security awareness, digital forensics, and privacy initiatives.
- Contribute to business continuity, disaster recovery, and cybersecurity incident response planning, including participation in on-call support when needed.
- Coordinate project documentation, maintain security records, and track project milestones and deliverables.
- Partner with technical and business teams to address security concerns and support risk management efforts.
- Participate in emergency preparedness and response activities to support business operations.
Qualifications
- 1–7 years of experience in cybersecurity, information security, systems administration, risk assessment, vulnerability management, or a related field. (Pay is dependent on experience)
- Bachelor's degree in Computer Science, Cybersecurity, Information Technology, Information Systems, Software Engineering, Computer Engineering, or equivalent professional experience.
- Working knowledge of cybersecurity frameworks, network security principles, risk management practices, and identity and access management.
- Experience evaluating security risks, performing vulnerability assessments, and supporting compliance or audit activities.
- Familiarity with security testing methodologies, intrusion detection, penetration testing concepts, and network analysis tools.
- Understanding of common cyber threats, attack techniques, operating system hardening, encryption technologies, and data recovery practices.
- Knowledge of networking fundamentals, cloud technologies, TCP/IP protocols, and enterprise infrastructure environments.
- Strong analytical, problem-solving, communication, and cross-functional collaboration skills.
- Cybersecurity certification (e.g., Security+, CySA+, SSCP, GSEC, Network+, CCNA Security, CND, or equivalent), or ability to obtain one within six months of hire.
- Ability to support incident response, disaster recovery, and business continuity efforts in a fast-paced environment.