Cybersecurity Analyst - Security Awareness and Training

D&H Distributing

  • Harrisburg, PA
  • Permanent
  • Full-time
  • 1 month ago
SUMMARYCybersecurity Analysts are a group of professionals who are the main protectors of D&H Distributing and help ensure the confidentiality, integrity, and availability of D&H information systems and data. The Cybersecurity Analyst is expected to have a mid-level understanding of security systems and ability to apply that knowledge to their specific area of responsibility.The primary responsibility of this position is the ownership, facilitation, and active enhancement of the D&H security awareness and training program. This position focuses on people as a critical component in the security posture of D&H. Successful candidates will develop, implement, and manage comprehensive security awareness training programs to educate employees about potential security threats, best practices, and organizational policies. This role requires a combination of technical expertise, instructional design skills, and a passion for educating others on cybersecurity awareness.ESSENTIAL DUTIES AND RESPONSIBILITIES:
  • Stay up to date on the latest security and industry trends including:
  • Compliance requirements
  • Social engineering tactics and how bad actors exploit vulnerabilities in the human element of security
  • Familiarity with cybersecurity frameworks such as NIST, CIS, and other security technology by attending workshops and reviewing publications
  • Coordinate across organization to ensure mutual success in protecting D&H
  • Actively monitor threat intel collected by security team to inform and formulate appropriate awareness and training needs for D&H
  • Collaborate across enterprise to understand current security proficiency of organization and identify what security awareness and training is needed to empower people to embed security into how they perform their jobs
  • Create and facilitate security and awareness program to educate and engage employees on how to protect D&H. This includes but not limited to:
  • Frequently sharing key items around security news and best practices
  • Develop and facilitate area specific curriculum
  • Identify existing or create relevant education and training materials
  • Deliver frequent and recurring training (in-person, virtual, online assignments) and track attendance/participation
  • Conduct targeted assessments to measure proficiency of D&H workforce and adjust program accordingly
  • Prioritize and proficiently facilitate effective communication campaigns to share key information with large and diverse audiences
  • Develop and tailor training content to address specific organizational needs, industry regulations, and emerging cyber threats
  • Analyze and report on the results of training and awareness efforts, including metrics on employee behavior, campaign effectiveness, and areas for improvement
  • Foster a culture of cybersecurity awareness and vigilance by promoting security best practices, encouraging reporting of security incidents, and recognizing employee contributions to maintaining a secure environment
  • Assist in process improvements to enhance the efficiency of current operational procedures
  • Participate in access control and governance including provisioning/deprovisioning and recertification of accounts
  • Effectively deal with rapid change in a positive manner
  • Participate in all company/location driven communication efforts, including huddles, department meetings, and other related efforts
  • Maintain a positive and professional working relationship with peers, management, support resources, and the community with a constant commitment to teamwork and exemplary customer service to present a professional image of D&H Distributing
  • Perform all other duties as assigned by management in a professional and efficient manner
QUALIFICATIONS
  • Proven experience in developing and delivering security awareness training programs in a corporate environment
  • Proficiency in instructional design methodologies and e-learning platforms
  • Focused on success of the team/organization
  • Exceptional verbal and written communications skills
  • Demonstrated personal management skills
  • Effectively communicate complex technological issues in business terms at any level within the organization
  • Respond to customer inquiries, effectively communicate critical problems, and discuss resolutions with management
  • Highly self-motivated
  • Ability to prioritize and execute tasks in a high-pressure environment and make sound decisions in emergency situations with guidance and supervision
  • Handle information and incidents with appropriate confidentiality and discretion
EDUCATION and/or EXPERIENCE
  • Associates degree in Cybersecurity or similar area of study required or equivalent years of related work experience
  • Bachelor's degree in Cybersecurity or similar area of study preferred
  • 2 - 3 years of experience in cybersecurity preferred
  • Experience in training, teaching, and/or public speaking preferred
  • Industry security and/or training certifications (CEH, Security+, SANS, CISSP, OSCP, CCNA Security or similar) preferred but not required

D&H Distributing