We are seeking a Cybersecurity Governance, Risk, and Compliance Analyst to join the System Controls and Monitoring Team. The role supports the operation, administration, monitoring, and assurance of foundational cybersecurity controls across a large enterprise technology environment.
The position is responsible for recurring security control activities, including identity and account hygiene, access and entitlement reviews, SIEM alert monitoring, endpoint security control governance, data loss prevention administration, endpoint privilege management, control validation, evidence collection, and remediation tracking. The role will work with technologies such as Splunk, CrowdStrike Falcon, Microsoft Purview Data Loss Prevention, and BeyondTrust Endpoint Privilege Management.
This is a hands-on, process-driven role that combines cybersecurity technology administration with control governance and assurance. The successful candidate will monitor control performance, review security alerts and exceptions, identify misconfigurations or control deficiencies, support troubleshooting and remediation, and maintain accurate documentation and auditable records.
The role requires strong attention to detail, sound technical judgment, and the ability to consistently execute established security processes across complex enterprise systems. While the position may support the review and escalation of security events, its primary focus is the reliable operation, governance, and continuous improvement of cybersecurity controls rather than advanced incident response or threat hunting.
Key Responsibilities:
- Perform ongoing monitoring and maintenance of directory services and domain security hygiene, including user account lifecycle management, privileged and service account reviews, group membership validation, and the identification and remediation of stale, orphaned, excessive, or non-compliant access.
- Monitor and investigate security events and alerts within the Splunk Security Information and Event Management (SIEM) platform, including alert triage, escalation, use-case tuning, dashboard maintenance, and support for incident investigation and reporting.
- Support the governance and administration of CrowdStrike endpoint security controls, including policy configuration, control validation, exception management, sensor health monitoring, alert review, and coordination of remediation activities.
- Configure, maintain, and support Microsoft Purview Data Loss Prevention (DLP) policies and related information protection controls across Microsoft 365 services, including policy testing, incident review, exception management, troubleshooting, and user support.
- Provide operational and administrative support for BeyondTrust Endpoint Privilege Management (formerly Avecto), including endpoint privilege policy configuration, application control, removal of local administrator rights, privilege elevation rules, exception management, troubleshooting, reporting, and control evidence collection.
- Track identified security issues, control deficiencies, and remediation activities through to closure, escalating overdue or high-risk items in accordance with established governance processes.
Qualifications:
4 to 6 years of progressive experience in cybersecurity operations, security technology administration, IT controls, or compliance, with demonstrated experience in technical control governance, monitoring, assessment, and assurance.
- Working knowledge of identity and access management principles, including account lifecycle management, privileged and service accounts, access reviews, group membership validation, and directory and domain security hygiene within a large enterprise environment.
- Practical experience supporting or administering enterprise cybersecurity technologies, including Splunk SIEM, CrowdStrike Falcon, Microsoft Purview Data Loss Prevention, and BeyondTrust Endpoint Privilege Management (formerly Avecto).
- Experience monitoring and triaging security alerts, reviewing control activity, identifying potential misconfigurations or control failures, and escalating findings in accordance with established procedures.