{"id":1412449,"url":"https://alion.io/job/arctiq-information-security-analyst","title":"Information Security Analyst","company":{"id":2029809,"name":"Arctiq","domain":"arctiq.com","url":"https://alion.io/company/arctiq-com","size_band":"201-500","is_staffing_agency":false,"employer_type":"direct","is_intermediary":false,"listed_via":null,"ats_vendor":"BambooHR","truth_index":{"grade":"B","score":81,"open_postings":4,"ghost_share":0,"stale_share":0.75,"repost_share":0,"time_to_fill_p50_days":23,"computed_at":"2026-10-01T05:45:00Z"}},"role":"Security","role_family":"Security","seniority":"middle","employment_type":"contractor","work_mode":"on_site","remote_scope":null,"remote_scope_basis":null,"remote_working_hours":null,"hiring_geo_confidence":"structured","locations":["Duluth, United States"],"countries":["US"],"hiring_countries":[],"hiring_countries_total":0,"salary":null,"salary_estimate":{"min_usd":90000,"max_usd":203000,"period":"year","method":"role_country_seniority_unknown","sample_n":1953},"experience_years_min":3,"visa_sponsorship":false,"relocation_package":false,"has_equity":false,"technologies":[{"name":"CVE","optional":false},{"name":"CVSS","optional":false},{"name":"HIPAA","optional":false},{"name":"KEV","optional":false},{"name":"Least Privilege","optional":false},{"name":"Microsoft Entra ID","optional":false},{"name":"PowerShell","optional":false},{"name":"SIEM","optional":false},{"name":"Windows","optional":false},{"name":"Zero Trust","optional":false}],"status":"live","first_seen_at":"2026-09-28T19:35:46Z","employer_posted_date":"2026-09-28","last_verified_at":"2026-10-01T22:03:06Z","board_verified":true,"closed_at":null,"days_open":3,"trust":{"level":"ok","repost_count":null,"flags":[],"days_open":3},"description":"Company Overview:\nArctiq is a global, intelligence-driven technology services company delivering professional and managed services across Hybrid Cloud Infrastructure, Networking & Connected Experiences, Cybersecurity, Data & AI, Autonomous Operations & Intelligence, and Enterprise Service Management. We help organizations operate, secure, and modernize complex environments by unifying infrastructure, networking, data, security, automation, and observability under a single, integrated operating model. Our work focuses on helping customers reduce operational friction, improve resilience, and make better, faster decisions as their environments evolve. Arctiq builds on decades of industry expertise and a customer-centric ethos to deliver exceptional value to clients across diverse industries.\nThis is a 6-month contract-to-hire opportunity with one of Arctiq's clients. It's a hybrid position in Atlanta, GA, onsite 2-3 days per week at first, then 2 times per month.\nPosition Overview:\nWe are seeking an Information Security Analyst II, a mid-level cybersecurity professional, to support the operation and continuous improvement of our client's information security program. This role independently manages assigned security responsibilities, supports risk reduction efforts, and collaborates across the organization to help protect systems, data, and business operations. Strong ownership, sound judgment, adaptability, and effective communication are essential to success in this role.\nResponsibilities:\nIndependently monitor, investigate, and respond to security events across enterprise technologies and security platforms, determining severity, business impact, and appropriate response\nPerform advanced analysis and correlation of security data to identify malicious activity, policy violations, control gaps, and other potential risks\nCollaborate with internal teams, managed security providers, and vendors to improve detection, escalation, response, automation, and overall security operations\nIdentify opportunities to improve, automate, orchestrate, and scale security processes and controls as the technology environment, business operations, and threat landscape evolve\nLead or materially support response to moderate-to-complex security incidents and investigations, including coordination of containment, remediation, recovery, and evidence preservation\nDocument investigation timelines, evidence, findings, impact, actions taken, root cause, and lessons learned for review by leadership, Legal, HR, Compliance, or audit\nImmediately escalate high-severity, business-critical, or time-sensitive incidents and maintain clear communications through closure\nSupport vulnerability and exposure management by validating risk, prioritizing remediation, coordinating with system owners, and verifying closure of high-risk vulnerabilities and control gaps\nSupport security assessments, remediation workflows, penetration testing, control validation, and related evidence collection\nEvaluate the effectiveness of security controls across enterprise technologies and drive documented exceptions or deficiencies toward resolution\nInvestigate identity, access, data, SaaS, and cloud security anomalies across enterprise platforms and security technologies\nSupport identity governance, privileged access, access reviews, authentication controls, and account lifecycle management\nApply identity-centric, least-privilege, and Zero Trust principles when supporting security controls and technology decisions\nMonitor and respond to security events involving confidential, sensitive, or regulated information, including PHI, PII, and PCI data\nCollect, validate, organize, and retain security evidence supporting regulatory, contractual, audit, customer, and internal assurance activities\nSupport security risk assessments, third-party and vendor security reviews, and remediation tracking, communicating findings in clear business-risk terms\nMaintain repeatable procedures, playbooks, investigation records, evidence packages, and control documentation that support consistent, auditable security operations\nSupport the investigation of and response to user-reported security concerns, phishing, impersonation, and other human-targeted threats\nSupport security awareness activities, simulations, metrics, trend analysis, and follow-up actions designed to reduce user-related risk\nOwn assigned work through completion, proactively research issues, engage appropriate resources, and escalate blockers or risks in a timely manner\nBalance incident-response priorities with recurring operational responsibilities and deadlines in a fast-paced environment\nProvide concise, outcome-based updates covering completed work, current risk, blockers, decisions needed, and next steps\nProvide guidance and mentoring to team members in security operations, investigations, evidence collection, documentation, and repeatable procedures\nParticipate in after-hours incident response or escalation support when required by business need\nProvide security support for new technologies, integrations, acquisitions, and business initiatives, including identifying security considerations and helping implement appropriate controls\nQualifications:\nAssociate degree in Information Technology, Cybersecurity, Computer Science, or a related field (equivalent relevant experience may be considered)\n3-5 years of relevant cybersecurity operations, SOC, incident response, security engineering support, or similar experience\nStrong incident-response, investigation, and evidence-handling skills, with the ability to independently manage moderate-complexity security events\nStrong working knowledge of SIEM/SOC operations, EDR, email security, identity security, cloud security, and data-security monitoring\nAbility to perform advanced log analysis and correlate events across endpoint, identity, email, network, SaaS, and cloud telemetry\nWorking knowledge of Microsoft 365, Entra ID, Windows security, networking concepts, authentication protocols, and common attacker techniques\nWorking knowledge of cloud and SaaS security concepts, least privilege, and Zero Trust principles\nFamiliarity with vulnerability management, patch/remediation workflows, CVE/CVSS, CISA KEV, and risk-based prioritization\nWorking knowledge of healthcare data-security considerations, including PHI/HIPAA and PCI-related requirements\nFamiliarity with security automation, orchestration, and scripting concepts, including PowerShell\nKnowledge of AI fundamentals, including generative AI concepts, appropriate enterprise use, data protection, security risks, and responsible use of AI-enabled tools\nAbility to create clear, repeatable SOPs, investigation notes, executive summaries, and audit-ready evidence\nAbility to communicate technical risk clearly to technical teams, leadership, and non-technical stakeholders\nDemonstrated ownership, initiative, sound judgment, and ability to prioritize competing responsibilities in a fast-paced, distributed environment\nArctiq is an equal opportunity employer. If you need any accommodations or adjustments throughout the interview process and beyond, please let us know. We celebrate our inclusive work environment and welcome members of all backgrounds and perspectives to apply.\nWe thank you for your interest in joining the Arctiq team! While we welcome all applicants, only those who are selected for an interview will be contacted.","description_format":"text","description_chars":7429,"description_truncated":false,"requirements":{"experience_years_min":3,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":{"level":"associate","optional":false},"security_clearance":false,"languages":[]},"benefits":[],"hiring_locations":[],"hiring_excludes":[],"relocation_offered":false,"industries":["IT Infrastructure & Networking Services","Information Security","Systems Integrators","IT Resellers & VARs"],"lifecycle":[{"event":"open","at":"2026-09-28T19:35:46Z"}],"liveness":{"score":99,"band":"hot","label":"Hiring now","p_open":1,"p_active":0.993,"p_room":1,"age_days":2,"expected_fill_days":23,"reasons":["conf:9","urgency","velocity","win:early"],"computed_at":"2026-10-01T05:45:00Z"},"pay":null,"html_url":"https://alion.io/job/arctiq-information-security-analyst","json_url":"https://alion.io/job/arctiq-information-security-analyst.json","meta":{"generated_at":"2026-10-02T01:37:44Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers","usage":{"tier":"crawler","counted_by":"address","units_charged":1,"used_today":2009,"day_limit":5000,"remaining_today":2991,"minute_limit":60,"resets_at":"2026-10-03T00:00:00Z"}}}