The International Rescue Committee (IRC) responds to the worldโs worst humanitarian crises, helping to restore health, safety, education, economic wellbeing, and power to people devastated by conflict and disaster. Founded in 1933 at the call of Albert Einstein, the IRC is one of the world's largest international humanitarian non-governmental organizations (INGO), at work in more than 50 countries and more than 25 U.S. cities helping people to survive, reclaim control of their future and strengthen their communities. A force for humanity, IRC employees deliver lasting impact by restoring safety, dignity and hope to millions. If you're a solutions-driven, passionate change-maker, come join us in positively impacting the lives of millions of people world-wide for a better future.
The IRC has defined a new strategic mission & vision, along with initiatives and key processes to meet strategic objectives. The IT department provides reliable and scalable application development and infrastructure for the IRCโs offices around the world, including technologically complicated locations. IRCโs ITHQ department includes 150 professionals primarily in the US & Nairobi and over 40 counties supporting 20, 000 staff globally.
Job Overview/Summary:
We are seeking a highly skilled Information Security Analyst to join our SecOps team. This role is purely operational and involves monitoring security information and event management (SIEM) systems, investigating security events, running vulnerability scans, and supporting the service desk. The ideal candidate will have experience with Microsoft Sentinel, ServiceNow ticketing, Qualys, and ZeroFox.
Major Responsibilities:
Cyber Incident Response and IT Security
โข Continuously monitor the SIEM to identify and analyze potential security incidents and threats.
โข Investigate security events escalated from the service desk or managed security service providers (MSSP), determining the root cause and implementing corrective actions.
โข Run regular vulnerability scans using tools such as Qualys, and work with relevant teams to remediate identified vulnerabilities.
โข Train the service desk on SecOps processes and procedures to ensure effective initial triage of security events.
โข Compile and report on operational metrics to provide insights into the security posture and the effectiveness of security controls.
โข Leverage a Security Information and Event Management (SIEM) system for advanced threat detection and response, utilize an IT service management (ITSM) platform for efficient ticket management, and employ a social media threat monitoring and protection tool.
โข Research the latest in information technology security trends to keep up to date with the subject and use on the latest technology to protect information assets.
โข Work with the team to develop a security plan for best standards and practices for the organization.
โข Conduct frequent testing of simulated cyber-attacks to look for vulnerabilities in the systems and take care of these before an outside cyber-attack.
โข Make recommendations to managers and senior executives about security advancements to best protect the organization.
โข Help train junior colleagues in information security.
Key Working Relationships:
Position Reports to: Manager โ Security Operations
Position directly supervises: NA
Indirect Reporting: Director, Security Operations and Engineering Team
Other Internal and/or external contacts:
**Internal:**IT staff across regions, HQ and Nairobi iHub, Safety and Security Team
Job Requirements:
Education
Bachelorโs degree or equivalent professional experience. Prefer degree concentration in: Computer Information Systems, Management Information Systems, Computer Science
Work Experience
Min 2 years in IT security operations, 1 year in a global organization
Demonstrated Skills and Competencies
โข Strong knowledge a Security Information and Event Management (SIEM) system, ITSM ticketing system, vulnerability management tools.
โข Ability to analyze complex security issues and provide actionable recommendations.
โข Excellent verbal and written communication skills for training and reporting purposes.
โข Certifications: Relevant certifications such as CEH, or CompTIA Security+ are a plus.
โข Experience: Previous experience in an operational information security role is highly desirable.
Language Skills: English required; French and Arabic a plus
Certificates or Licenses: Security+, or other security related certifications, which support adequate ability to support the design, deployment and operation of IT security solutions; must possess or be actively working towards AZ500 Microsoft Azure Security Technologies.
Working Environment: Hybrid, including remote and standard office work environment.
Travel: N/A
Standard of Professional Conduct: The IRC and the IRC workers must adhere to the values and principles outlined in the IRC Way โ our Code of Conduct. These are Integrity, Service, Accountability, and Equality.
Commitment to Gender, Equality, Diversity, and Inclusion: The IRC is committed to creating a diverse, inclusive, respectful, and safe work environment where all persons are treated fairly, with dignity and respect. The IRC expressly prohibits and will not tolerate discrimination, harassment, retaliation, or bullying of the IRC persons in any work setting. We aim to increase the representation of women, people that are from country and communities we serve, and people who identify as races and ethnicities that are under-represented in global power structures.