EBSCO Information Services is a leader in research solutions that enhances the research experience for users. They are seeking a motivated Jr. Security Operations Analyst to join their Security Operations team, where the candidate will gain hands-on experience in real-time monitoring, incident response, and threat intelligence while contributing to the organization's security posture.
Responsibilities:
- Investigating potential security issues using security operations tools
- Working with XDR, SIEM, cloud tooling, and endpoint detection platforms
- Participating in regular incident response exercises
- Contributing to investigations and tuning of security alerts
- Helping manage and tune security tools and processes
- Collaborating with IT, Engineering, Network, and Security Architecture teams
- Assisting with vulnerability management and remediation efforts
- Supporting operational process improvements through scripting and automation
- Gaining exposure to securing AWS Public Cloud and hybrid cloud environments
- Working with AWS technologies such as Route53, Direct Connect, WAF, CloudWatch, and Config (preferred)
- Supporting infrastructure aligned with standards such as FedRAMP, ISO 27001, NIST CSF, and SOC frameworks
- Participating in on‑call rotations
- Contributing documentation, communication, and problem‑solving skills to the broader SecOps culture
Requirements:
- Working toward a Degree in technical or business discipline
- Experience with automation scripting (Python, Power Shell), Infrastructure as Code (Terraform, CloudFormation) and/or DevOps/DevSecOps functions
- Some experience with IT security/incident management processes is strongly desired
- Some exposure to security incident investigation and management and experience using common security tools (SIEM, Vulnerability Scanners, XDR)
- An understanding of securing AWS Public Cloud and Hybrid Cloud environments is highly desired
- AWS-specific skills (Networking: Route53, Direct Connect, etc.) and (Security: WAF, Config, CloudWatch, etc.)
- Security Certifications preferred (CompTIA Security, CISSP, CEH, GSEC) or planned
- Experience defining, implementing, and engineering network environments compliant with information security policies, procedures, and standards. Examples include: FEDRAMP, ISO 27001, NIST CSF, NIST 800-53, Service Organization Controls