Senior Information Security Analyst

@ PB consulting
PB consultingpbconsulting.com

Senior Information Security Analyst

Andover, Massachusetts
Posted 3 days ago

About the job

Our company focuses on cybersecurity solutions and risk management. We seek a Senior Security Analyst to perform risk assessments, control evaluations, and support security initiatives to enhance our security posture.

Requirements

  • 6–9 years in information security
  • Experience with security risk management
  • Knowledge of security frameworks
  • Hands-on with Microsoft Purview
  • Experience with SIEM platforms

Qualifications

  • Strong analytical skills
  • Excellent communication skills
  • Experience performing security assessments
  • Understanding of security policies

Full job description

Primary Responsibilities
  • Perform information security risk assessments, control evaluations, and security reviews.
  • Identify security risks, assess impact, and recommend mitigation strategies.
  • Review security controls and ensure alignment with enterprise security standards and policies.
  • Provide expertise on security frameworks, governance processes, and industry best practices.
  • Support security architecture reviews for applications, infrastructure, and technology initiatives.
  • Drive implementation and optimization of Microsoft Purview security and compliance solutions.
  • Support Microsoft Defender, SIEM tools, and security monitoring activities.
  • Assist with IT Governance, Risk, and Compliance (GRC) processes.
  • Collaborate with security, infrastructure, and application teams to improve security posture.
  • Maintain security documentation, assessment reports, control evidence, and remediation plans.
Required Qualifications
  • 6–9 years of experience in:
    • Information Security
    • Security Risk Management
    • Security Engineering
    • IT Governance, Risk, and Compliance (GRC)
  • Hands-on experience with:
    • Microsoft Purview (Required)
    • Microsoft Defender
    • SIEM platforms
    • Security monitoring and compliance solutions
  • Strong experience performing security risk assessments and control testing.
  • Knowledge of security frameworks, policies, and compliance standards.
  • Experience with security architecture reviews and technology risk assessments.
  • Strong analytical, communication, and documentation skills.
Preferred Qualifications
  • Experience with GRC platforms and security governance tools.
  • Knowledge of enterprise security frameworks such as NIST, ISO 27001, or similar standards.
  • Experience improving security processes and implementing security best practices.
Show full description