Job Title: Cybersecurity Analyst
Contract Duration: 5 months, possible extension
Location: Lake Forest, IL
Work Arrangement: Onsite
Core Responsibilities
- Perform risk-based cybersecurity assessments using the NIST Cybersecurity Framework
- Conduct Threat Modeling to identify and evaluate cybersecurity risks
- Review vulnerability information and assess risk impact, exploitability, and residual risk
- Maintain and update vulnerability risk registers and risk treatment documentation
- Evaluate the adequacy of existing security controls (e.g., access controls, encryption, vulnerability management, logging) as a part of assessments
- Document assessment results clearly and support risk-based decision making
- Collaborate with system owners and stakeholders to gather evidence and clarify system context
- Support management in the continuous improvement of cybersecurity strategies, policies, and standards to safeguard company information, systems, and technology assets.
Skills & Requirements
- Proven experience with a wide range of information security processes and principles, including but not limited to risk assessments, threat modeling, risk analysis, and defense in depth.
- Practical understanding of NIST CSF, NIS2 EU Directive and risk-based security principles
- Strong capability in identifying, analyzing, and mitigating cybersecurity threats using a risk driven approach
- Solid and broad cybersecurity background, including strong knowledge of regulatory requirements and industry best practices
- Strong analytical, communication and documentation skills, with ability to collaborate effectively with diverse teams.
- Self-driven and proactive, with a demonstrated ability to take initiative and work independently
- Experience using Microsoft Office 365 tools, including Excel, PowerPoint, Word, and Power BI
Education/ Certifications
- Masters degree in Cybersecurity (preferred) / Masters degree in computer science or related technical discipline (second preference) Bachelors degree in cybersecurity or related field (third preference)
- CompTIA Security+ (preferred / nice to have)
- Other relevant cybersecurity certifications related to risk management or frameworks (optional)
Top 5 skills/requirements
- Performing cybersecurity risk-based assessments.
- Hands-on past work experience on NIST Framework.
- Risk based cybersecurity Threat identification and mitigation activities.
- Strong Cybersecurity background
#LI-MM1
