Analyst, IT Security
location_onIn-house Dental Studio, 40, West Elm Street, Greenwich, Western Connecticut Planning Region, Connecticut, 06830, United States
Job Description
About the Role
Come join our amazing team and work remote from home! This position is responsible for cybersecurity, data security, governance, and compliance across IT, cloud, applications, and enterprise data platforms. The role has core security engineering responsibilities with advanced data protection, compliance, and Microsoft Purview capabilities. The primary objective is to protect organizational systems and information assets against unauthorized access, disclosure, modification, or destruction, while ensuring compliance with regulatory, legal, and contractual obligations. All duties are performed in accordance with the company’s policies and procedures, and all US state and federal laws and regulations wherein the company operates.
About the Company
Carrington Mortgage Holdings is a holding company whose primary businesses include asset management, mortgages, real estate transactions and real estate logistics. Collectively, the businesses are vertically and horizontally integrated, and provide a broad range of real estate services encompassing nearly all aspects of single-family residential real estate transactions in the United States. Guided by a leadership team with a wealth of industry experience and guided by a consistent philosophy, Carrington maintains the necessary infrastructure to ensure stability and maximize value during any market cycle. We hope you’ll consider joining our growing team of uniquely talented professionals as we transform residential real estate.
Work location
Work model: Remote
In-house Dental Studio, 40, West Elm Street, Greenwich, Western Connecticut Planning Region, Connecticut, 06830, United States
Connecticut
Key Responsibilities
- check_circleManage and monitor enterprise security controls including network, cloud, application, and endpoint security
- check_circleDesign, implement, and maintain data protection controls including DLP, information protection, and encryption
- check_circleImplement and manage Microsoft Purview solutions for information protection, DLP, and data governance
- check_circleConduct security monitoring, investigations, and incident response in coordination with SOC teams
- check_circleManage firewall, CASB, web filtering, EDR, IDS/IPS, and vulnerability management technologies
- check_circleDocument and maintain security policies, standards, procedures, and technical playbooks
- check_circleParticipate in system access reviews, compliance audits, and evidence collection for auditors
- check_circleCollaborate with Legal, HR, Risk, and business teams on insider risk and regulatory matters
- check_circleProvide security guidance for new projects, applications, AI solutions, and non-standard IT requests
Requirements
- verifiedBachelor's degree in Computer Science, Information Technology, Engineering, or related field, or equivalent experience
- verifiedMinimum of 3–5 years’ experience in information security, cybersecurity engineering, or data security
- verifiedStrong knowledge of IT cybersecurity principles, network and application security, and data protection controls
- verifiedHands-on experience with Microsoft security platforms including Microsoft Purview, Defender, and Azure security controls
- verifiedUnderstanding of regulatory frameworks such as NIST, ISO 27001/27002, CIS, FINRA, and SEC
- verifiedExperience with SIEM, audit logging, forensic analysis, and security investigations
- verifiedPreferred Certifications: CISSP, CISA, CCSP, AZ-500, or equivalent
Benefits & Perks
Skills, education and keywords
Skills: microsoft purview, microsoft defender, azure security, data loss prevention, dlp, information protection, encryption, insider risk management, ediscovery, data governance.
Education: Bachelor's degree in Computer Science, Information Technology, Engineering, or related field, or equivalent experience.