Position Overview
The Cyber Security Analyst is responsible for the administration, operation, and continuous improvement of Krayden's enterprise cybersecurity program and supporting infrastructure. This role leads day-to-day security operations, identity and access management, vulnerability management, compliance activities, and security technologies while providing infrastructure administration and operational support as needed.
The position partners with Infrastructure, Service Delivery, and business teams to protect enterprise systems, support regulatory and customer security requirements, and drive continuous improvements in cybersecurity maturity, operational resilience, and technology modernization.
Overall Responsibilities
- Administer and continuously improve Krayden's enterprise cybersecurity and supporting infrastructure platforms.
- Implement and maintain security controls that protect enterprise systems, identities, endpoints, cloud services, and business information.
- Support cybersecurity governance, compliance, audit readiness, risk management, and customer security requirements.
- Monitor security posture, coordinate vulnerability remediation, investigate security events, and improve operational resilience.
- Develop automation, documentation, and standardized processes that improve security and operational efficiency.
- Support enterprise infrastructure administration, acquisitions, and technology initiatives while providing Tier II/Tier III technical support as required.
Core Responsibilities
- Administer security technologies, identity services, endpoint protection, vulnerability management, and security monitoring solutions.
- Manage identity lifecycle, user provisioning, privileged access, authentication, and security policy administration.
- Support CMMC, NIST 800, CUI, audit activities, customer security questionnaires, evidence collection, and security documentation.
- Monitor, assess, and remediate security vulnerabilities, configuration compliance, and endpoint risks, including pentest, business continuity, and disaster recovery planning and testing.
- Assist with security incident response, disaster recovery, business continuity, and operational readiness.
- Develop automation, scripting, technical documentation, standards, and operational procedures.
- Support enterprise infrastructure, Microsoft 365 services, and complex technical escalations as needed.
Desired Qualifications
- Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or equivalent experience.
- 5–8 years of experience supporting enterprise cybersecurity and infrastructure environments.
- Strong knowledge of cybersecurity operations, identity management, endpoint security, vulnerability management, Microsoft cloud technologies, and enterprise infrastructure.
- Experience supporting compliance frameworks, audits, and regulated environments.
- Experience working with Security services partners and vendors (SOC, SIEM, MSSP)
- Experience with automation, scripting, and operational process improvement.
- Excellent analytical, troubleshooting, communication, and organizational skills.
- Security certifications (Security+, CySA+, etc) preferred.
Desired Technologies
Experience with one or more of the following technologies is preferred:
- Microsoft 365, Entra ID, Intune, Purview
- Exchange Online, Teams, SharePoint Online
- Artificial Intelligence tools and processes
- Microsoft Defender Suite
- SentinelOne, Nessus, KnowBe4, SIEM technologies
- Microsoft Azure
- Active Directory & Group Policy
- PowerShell
- CMMC Level 2, NIST SP 800-171, CUI
Professional Competencies
- Security-first mindset
- Technical ownership and accountability
- Risk assessment and problem solving
- Customer-focused service delivery
- Collaboration and communication
- Process improvement and automation
- Documentation and knowledge management
- Adaptability and continuous learning
Business Outcomes
Success in this role will contribute to:
- A mature, secure, and resilient cybersecurity program.
- Improved readiness for CMMC, NIST, customer assessments, and regulatory audits.
- Reduced cybersecurity risk through proactive monitoring, vulnerability management, and standardized security controls.
- Strong collaboration between Security, Infrastructure, and Service Delivery while maintaining reliable enterprise technology services.
How to apply
If you are interested in this opportunity, please email [Confidential Information] with the following:
- A link to your LinkedIn profile and a CV/Resume.
- A one-page personal cover letter (optional)