IT Security Specialist (Pre-Incident Consulting & Incident Response Lead)
hace 29 días
Louisville
Job DescriptionSalary: $90,000-$120,000 Mirazon is a scaling, people-centered IT company that believes strong security starts long before an incident occurs, and that calm, capable leadership matters most when it does. Were looking for aSecurity Specialistwho thrives at the intersection of strategy and execution: someone who enjoys strengthening security postures proactively and who can step confidently into high-pressure situations to guide clients through complex cybersecurity events. Mission of the Position This role is designed for an experienced individual contributor with deep technical expertise, sound judgment, and executive presence. You value preparation, documentation, and disciplined processes, and youre equally comfortable designing preventative controls as you are leading incident response efforts in real time. You bring clarity to chaos, translate technical risk into business impact, and act as a trusted advisor to clients when the stakes are highest. Key Criteria/Requirements • 5+ years in cybersecurity or infrastructure security roles, • 3+ years leading security incidents, • Strong experience with:, • Firewalls (FortiGate, Cisco, SonicWall, Palo Alto, etc.), • Endpoint detection and response (EDR/XDR), • Microsoft 365 security stack, • Identity and access management, • Backup and disaster recovery systems, • Experience with ransomware containment and recovery, • Deep understanding of networking and Active Directory environments, • Strong written and verbal communication skills, • Ability to lead under pressure Preferred Certifications • CISSP, • CISM, • CEH, • GIAC (GCIA, GCIH, etc.), • Security+, • Microsoft Security certifications, • Vendor firewall certifications Key Accountabilities 1. Pre-Incident Security Consulting (Strategic & Preventative) • Conduct comprehensive security risk assessments and gap analyses, • Lead cybersecurity maturity assessments aligned to NIST, CIS, or industry frameworks, • Perform vulnerability assessments and coordinate remediation planning, • Design and review:, • Network security architecture, • Firewall and segmentation strategies, • Endpoint security strategies, • MFA and identity security implementation, • Develop incident response plans and business continuity playbooks, • Conduct tabletop exercises with client executive teams, • Provide executive-level reporting with risk prioritization and budget guidance, • Assist sales/engineering with scoping security engagements and SOW development 2. Incident Response Leadership • Serve as Incident Response Lead during cybersecurity events, • Direct containment, eradication, and recovery efforts, • Coordinate with:, • Internal engineering teams, • Client leadership, • Insurance carriers, • Legal counsel, • Forensics vendors, • Perform initial triage and determine scope of compromise, • Oversee forensic evidence preservation, • Guide ransomware response and recovery strategy, • Lead root-cause analysis and post-incident reporting, • Develop corrective action plans 3. Client & Executive Communication • Act as trusted advisor to C-suite and ownership groups, • Translate technical findings into business risk language, • Present findings and remediation plans in board-level settings, • Provide calm, decisive leadership during crisis situations, • Maintain strict confidentiality and professionalism 4. Documentation & Process Development • Maintain standardized security assessment templates, • Develop and refine internal IR procedures, • Create security standards and best practices, • Ensure all engagements are properly documented in PSA systems, • Contribute to continuous improvement of security offerings Insurance Benefits Eligibility begins the first day of full-time employment (date of hire). • Life Insurance, • Short-term Disability, • Long-term Disability, • Cafeteria Plan Premium, Medical, & Child Care Reimbursement, • Health Insurance, • Dental Plan, • Vision Plan Other Benefits • 401K Matching, • Referral Bonuses, • Tuition Reimbursement, • Performance Incentives, • Vacation Time 10 daysper calendar year, • Sick Leave 5 days per calendar year, • Paid Company Holidays (7), • Paid Floating Holidays (2), • Volunteer 1, • Cell Phone & Internet Reimbursement