Holman is a family-owned, global automotive services organization anchored by our deeply rooted core values and principles that have enabled us to continue Driving What’s Right throughout the last century. Our teams deliver the Holman Experience by treating our customers and each other as we would like to be treated, and creating positive, rewarding relationships all around. The automotive markets Holman serves include fleet management and leasing; vehicle fabrication and upfitting; component manufacturing and productivity solutions; powertrain distribution and logistics services; commercial and personal insurance and risk management; and retail automotive sales as one of the largest privately owned dealership groups in the United States. Holman – a Computerworld 2024 “Best Places to Work in IT” company – is hiring a Security Analyst II for a fully remote opportunity. Responsibilities Monitors and responds to escalated security alerts. Implements processes to ensure all security monitors are operational. Supports and mentors junior staff in alert analysis and incident investigations. Leads analysis of security events to determine their nature, severity, and potential impact on the organization. Escalates based on impact and severity of alerts, works collaboratively with others to investigate and respond to higher priority alerts in a timely manner. Develops documentation of incident details, investigation findings, and response actions taken for future reference and analysis. Creates security operations controls, playbooks, procedures and guidelines. Performs investigation and responds to alerts generated by Security Operations tooling such as IDS/IPS, SIEM, Web Proxy technologies through the entire Incident Response life-cycle. Oversees documentation of incident details, investigation findings, and response actions taken for future reference and analysis. Interacts with internal IT and business partners, legal, security, and outside agencies during incident investigations. Work collaboratively with other members of the SOC team to investigate and respond to security incidents in a timely manner. Implements, develops and enhances SIEM, IDS/IPS, Proxy, EDR/XDR, Vulnerability Management and other security solutions. Recommends and applies adaptive security measures based on investigative findings and threat monitoring. Advises management on best practices, current trends, and pertinent changes in internal/external threats and opportunities for improvement. Presents action plans for implementation and approval Stays current on best practices, current trends, and pertinent changes in internal/external threats and opportunities in a timely and anticipatory manner. Advises management on key findings. Performs all other duties and special projects as assigned. Relevant Experience 4-7 years of combined Information Security and Technical Administration Experience. Experience developing security controls for Iaas, PaaS, SaaS and traditional infrastructure and applications. Strong familiarity of fundamental and operational concepts in information security, including network security, encryption, authentication, and incident response. Experience with common security technologies and tools, such as SIEM platforms, firewalls, intrusion detection/prevention systems, and endpoint security solutions. Strong working knowledge of networking protocols, TCP/IP, and operating systems (Windows, Linux). Demonstrated use of security defensive frameworks such as CIS Top 20 Controls, CIS Hardening Standards, NIST SP 800-53, OWASP and MITRE ATT&CK Familiarity with apply scripting languages into security operations procedures and investigations (examples in Python or PowerShell). Strong working knowledge of networking, systems management, operating systems, and cloud security. Education and/or Training Bachelor’s degree in Computer Sciences, Information Security, or equivalent work experience. Security certifications such as Security+/GSEC/CISSP/other GIAC or advanced technical certifications are a plus but not required.
#LI-FB1 #LI-REMOTE At Holman, we exist to provide rewarding careers and better lives for employees and their families. We hire, train, empower, and reward exceptional people. Our journey is guided by our desire to get it right every time and the acknowledgement that we have an opportunity to be better. To be better, we have to do better, and to do better we must know better. That’s why we are listening, open to learning new things – about ourselves and each other. We will never stop striving for improved diversity, equity, and inclusion because we are successful together when we feel trusted and supported. It’s The Holman Way. At Holman, your total compensation goes beyond your paycheck. To position you for success and provide a rewarding career and better life for you and your family, Holman is proud to offer you the benefits you deserve; including protection against illness, disability, loss of work, or preparation for retirement. Below is a brief overview of the programs available to full-time employees (programs may vary by country or worker type): Health Insurance Vision Insurance Dental Insurance Life and Disability Insurance Flexible Spending and Health Savings Accounts Employee Assistance Program 401(k) plan with Company Match Paid Time Off (PTO) Paid Holidays, Bereavement, and Jury Duty Paid Pregnancy/Parental leave Paid Military Leave Tuition Reimbursement Benefits: Regular Full-Time We offer excellent benefits including health, vision, dental, life and disability insurance, and 401(k) with company match. Our time off benefits include Paid Time Off (PTO), paid holidays, bereavement, and jury duty. In addition, we offer paid pregnancy and parental leave, and supplemental paid military leave to eligible employees. Click here for Washington State benefit information. Temporary or Part-Time In geographic areas with statutory paid sick leave, part-time and temporary employees will receive a paid sick leave benefit that meets the mandated requirements. Click here for Washington State benefit information. Pay: We offer competitive wages that are commensurate with job-related skills, experience, relevant education or training, and geographic location, starting in the range of $81,210.00 – $117,760.00 USD annually for full time employees. The annual compensation range is comprised of base pay earnings. Holman provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws. This policy applies to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation and training.
Intrusion Detection System (IDS) Information Security Analyst Vulnerability management Incident response MITRE ATT&CK Computer Science Intrusion Prevention System (IPS) CompTIA Security+ Linux Networking cloud-security Information security Certified Information Systems Security Professional (CISSP) TCP/IP Security Analyst remote work Windows SIEM Python powershell Endpoint Detection and Response (EDR) OWASP webproxy GIAC xdr