ACS Technologies Group, Inc. logo
Information Security Analyst - ACS Technologies Group, Inc. Florence, SC, USA Bookmark Share Print 213 1 5

Listing Description

About ACS Technologies:

For 40 years ACS Technologies (“ACST”) has served the faith-based community, building software to help lead their ministry with less stress and more accuracy. With brands such as ACS, PDS, and Realm, ACS Technologies enables churches to handle every vital area of their ministry from finances to relationships. We're now the leader in the industry with over 50,000 clients, but we've got more work to do and we know we need the right talent on board to help with our mission of serving churches with tomorrow's technology.

About the Role:

As an Information Security Analyst at ACST, you’re responsible for the detection, analysis, defense and reporting of cyber threats against ACST networks, systemsand cloud solutions, as well as assist in identifying, monitoring, investigating, analyzing, and preventing computer network intrusion attempts.

You’re a self-starter with an extensive technical systems background, strong team skills, sharp analytical mindset and a passion for investigation, problem-solving, continuous learning and self-improvement.

What You’ll Do:

- Design & Implement an Intrusion Detection System/Intrusion Prevention System (IDS/IPS), using open source, commercial sources, or a combination of both.

- Acquire and incorporate a Security Information and Event Management (SIEM) system into the cloud and corporate network environment to complement existing security logging. Integrate logging and events from corporate and cloud sources: Honeypot deception systems, Firewalls, Anti-malware systems, Sensors, Load balancers, Web servers, Database servers, Routers, Switches, Cloud service instances, NAC

- Operate IDS/IPS to detect, assess, analyze, correlate and report all suspicious or anomalous events to the ACST InfoSec Team

- Operate SEIM system to collect, normalize, correlate and analyze data to complement IDS/IPS activities

- Execute daily operational monitoring of firewall, server and endpoint-related security systems to detect unauthorized activity or indicators of compromise

- Provide accurate and priority drive analysis to detect, analyze, and respond to confirmed malicious activity

- Maintain the AWS cloud solution for the ACST PCI cardholder data environment (CDE)

- Coordinate with business units, operations, and technology teams for incident response, remediation, and improvement.

- Maintain documentation that supports the annual PCI compliance attestation

- Provide subject matter expert consultation to ACST staff on cyber security matters

What We’re Looking For:

- Bachelor’s degree in Information Technology or Information Security with 5-7 years of experience in IT with at least 3 years of related, relevant cyber security experience, preferably in IDS/IPS.

- Security+, SSCP or similar certification highly desirable.

- IRT ops background SANS GCIH or CERT CSIH certifications desirable.

- Subject matter expert in one or more areas such as secure system configuration standards (CIS, STIG, etc.), SIEM, IDS/IPS or endpoint security products.

- Capable of articulating complex technical concepts or scenarios to both technical and non-technical audiences.

- Knowledge of network and security tools (Snort, Sguil, ELSA, Nmap, Nessus/OpenVAS, Wireshark, SEIM, honeypots, etc.) preferred.

- Familiarity with concepts related to security disciplines such as: malware analysis, computer forensics, cyber incident response, network intrusion detection, network traffic and packet analysis, deception technologies, penetration testing, vulnerability scanning, compliance, audit and cyber threat intelligence.

- Must be a team-oriented individual who works well with others and strives towards the group’s overall success.

- Self-starter with initiative and drive for continuous improvement.

- Demonstrate strong organizational, research, analytical and/or problem-solving skills to evaluate situations, make recommendations and take effective action.

Why You Want to Work Here:

- Outstanding benefits package, including 6% 401(k) match

- Free onsite Wellness Clinic at our Florence Headquarters staffed by a Nurse Practitioner

- Caring, friendly work environment that believes in work-life balance

- The opportunity to positively impact ministries

We are an equal opportunity employer and value diversity at our company. We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status.- Design & Implement an Intrusion Detection System/Intrusion Prevention System (IDS/IPS), using open source, commercial sources, or a combination of both.

- Acquire and incorporate a Security Information and Event Management (SIEM) system into the cloud and corporate network environment to complement existing security logging. Integrate logging and events from corporate and cloud sources: Honeypot deception systems, Firewalls, Anti-malware systems, Sensors, Load balancers, Web servers, Database servers, Routers, Switches, Cloud service instances, NAC

- Operate IDS/IPS to detect, assess, analyze, correlate and report all suspicious or anomalous events to the ACST InfoSec Team

- Operate SEIM system to collect, normalize, correlate and analyze data to complement IDS/IPS activities

- Execute daily operational monitoring of firewall, server and endpoint-related security systems to detect unauthorized activity or indicators of compromise

- Provide accurate and priority drive analysis to detect, analyze, and respond to confirmed malicious activity

- Maintain the AWS cloud solution for the ACST PCI cardholder data environment (CDE)

- Coordinate with business units, operations, and technology teams for incident response, remediation, and improvement.

- Maintain documentation that supports the annual PCI compliance attestation

- Provide subject matter expert consultation to ACST staff on cyber security matters


Listing Details

  • Citizenship: Other Citizenship
  • Incentives: Not Provided

 

  • Education: Bachelors Degree
  • Travel: No Travel
  • Telework: No Telecommute



About Us

NinjaJobs is a community-run job platform developed by information security professionals. Our unique approach of focusing strictly on cybersecurity positions allows us to personalize the user experience.

Our Contacts

1765 Greensboro Station Pl.
Suite 900
Tysons Corner Va 22102

(703) 594-7765