remote
Information Security Analyst II - Global Payments
Security Engineer
Information Security Analyst II responsible for monitoring, analyzing, and responding to security events using SIEM tools, conducting vulnerability assessments, and ensuring compliance across cloud and on‑prem environments.
About the role
Key Responsibilities
- Monitor and analyze security events through SIEM platforms, triaging alerts and coordinating incident response activities.
- Conduct regular vulnerability scans, assess findings, and collaborate with engineering teams to remediate risks.
- Develop and maintain security policies, procedures, and compliance documentation for regulatory frameworks such as PCI‑DSS and ISO 27001.
- Perform security architecture reviews, including network segmentation, firewall rule sets, and cloud security controls.
- Lead penetration testing initiatives and assist in the preparation of audit evidence for external auditors.
Requirements
- 3+ years of experience in information security operations, preferably in a payment or financial services environment.
- Proficiency with SIEM solutions (e.g., Splunk, QRadar) and vulnerability management tools (e.g., Nessus, Qualys).
- Strong understanding of network security, cloud security (AWS), and incident response frameworks.
- Excellent analytical, communication, and documentation skills.
- Relevant certifications such as CISSP, CISM, or CEH are highly desirable.