Job Description
The Opportunity: Fortress Digital is seeking a highly skilled and proactive Senior Cybersecurity Analyst to join our elite Information Security team in the heart of Boston. As a critical defender of our infrastructure, you will be responsible for monitoring, detecting, and responding to complex cyber threats that target our global assets. We offer a collaborative environment, cutting-edge technology stack, and the opportunity to make a tangible impact on the security posture of our enterprise clients.
Why Join Us?
• Competitive compensation package with performance bonuses.
• Comprehensive health, dental, and vision insurance.
• Flexible remote work options and generous PTO policy.
• Continuous learning budget for certifications and conferences.
Responsibilities
- Monitor security alerts and events using SIEM tools (e.g., Splunk, Sentinel) to identify potential threats and vulnerabilities in real-time.
- Conduct forensic investigations and root cause analysis to determine the scope of security incidents and implement remediation strategies.
- Manage and coordinate the incident response lifecycle, ensuring minimal disruption to business operations.
- Perform regular vulnerability assessments, penetration testing, and security audits to ensure compliance with standards such as HIPAA, PCI-DSS, and ISO 27001.
- Develop and maintain security policies, procedures, and awareness training programs for employees.
- Collaborate with software engineering and IT operations teams to integrate security best practices into the development lifecycle (DevSecOps).
- Stay abreast of the latest cyber threats, attack vectors, and industry trends to proactively adapt defense mechanisms.
Qualifications
- Bachelor’s degree in Computer Science, Cybersecurity, Information Systems, or a related field required; Master’s degree is a plus.
- Minimum of 4-6 years of experience in cybersecurity, SOC operations, or a related technical role.
- Strong knowledge of network protocols, operating systems (Windows/Linux), and common attack methodologies.
- Experience with scripting languages (Python, PowerShell, or Bash) for automation and analysis.
- Active CISSP, CEH, Security+, or GCIH certification is highly preferred.
- Proficiency in using SIEM platforms, EDR tools, and endpoint protection solutions.
- Excellent written and verbal communication skills, with the ability to articulate complex security concepts to non-technical stakeholders.