| At AlixPartners, we solve the most complex and critical challenges by moving quickly from analysis to action when it really matters; creating value that has a lasting impact on companies, their people, and the communities they serve.By understanding, respecting, and honoring the needs of our employees, clients, and communities, AlixPartners actively promotes an inclusive environment. We strongly believe in the value that diversity brings to our experiences and are committed to the perpetual enhancements of initiatives, policies, and practices. We hold ourselves accountable by providing the space for authenticity, growth, and equity for everyone. AlixPartners has embraced a hybrid work model to provide flexibility and support our employees' work-life integration. Our hybrid model combines a mix of in-person at an AlixPartners office on Tuesday, Wednesday, & Thursday, and remote working options for Monday and Friday. What you'll do As a member of the Information Security (IS) team, you will contribute to the overall cyber defense of information assets and will conduct security monitoring, detection engineering, threat hunting, security posture analysis, and perform incident response investigations. The Security Operations Analyst is a full-time position located in Southfield, MI, reporting to the Security Operations Team Lead. Paid relocation is not available. 
 
 
 Respond to, investigate, and analyze security events to determine appropriate actionsAnalyze security system logs, security tools, and available data sources on a regular basis to identify attacks against the enterprise and report on any irregularities, issues related to improper access patterns, trending, and event correlations and make suggestions for detection rules and system tuningGather information from other IT staff and non-IT staff to obtain information regarding security problems to networks, servers, endpoints, and applicationsPerform incident response activities and ensure that proper protection or corrective measures have been taken when an incident has been discoveredAdminister information security controls and software such as endpoint protection, endpoint detection and response, intrusion detection/prevention (IDS/IPS), security incident and event management (SIEM), and physical security systemsExpected to stay current on security industry trends, new threats and attack techniques, mitigation techniques, and emerging security technologiesProvide insight and participate in security projects to evaluate and recommend security products for various applications and platforms throughout the organization while supporting business initiativesAssist with the development, maintenance of, and training on technical documentation and Standard Operating Procedures (SOP).Improve security efficiency and streamline/automate work processes while working collaboratively with other team members and IT staff to accomplish objectivesParticipate, as needed, in critical incidents and implementation reviewsAdditional responsibilities as identified. This description is not designed to encompass a comprehensive listing of required activities, duties, or responsibilities
 
 What you'll need 
 
 
 Highly motivated to work in information securityMinimum of 1 years of Information Security experience, or experience working in Information Technology roles such as service desk, server admin, or network engineeringBachelor's degree in Information Technology or related field preferred; work experience and background will be considered in lieu of formal educationDesire to continuously improve processes and procedures and share information with the teamProficient knowledge of information systems security concepts and current information security trends and practicesWorking knowledge of infrastructure security tools such as firewalls, network security monitoring, anti-malware, OS hardening, etc.Experience integrating security tools through scripting, using API's and improving existing processes through automated methods are a plusExperience with Security Incident and Event Management (SIEM) and Endpoint Security tools are a plusIncident Response, Forensics, and Malware Analysis experience is a plusSystem administration and security hardening experience is a plusCloud security experience is a plusCollaborative interpersonal skills with the ability to work well as an individual and as part of a teamExcellent written and oral communication skills in English with the ability to provide formal reports and presentationsHigh attention to detail with the ability to be organized and prioritize tasks so work is completed in an accurate and timely manner under time constraintsWillingness to work outside of normal U.S. business hours, and as unique projects/needs arise.Ability to work full time in an office and remote environment; physically able to sit/stand at a computer and work in front of a computer screen for significant portions of the workday.Must become familiar with, and promote and abide by, our Core Values as defined by the AlixPartners'Code of Conduct and foster an inclusive environment with people at all levels of an organization.
 
 MUST BE CURRENTLY AUTHORIZED TO WORK IN THE UNITED STATES. NO VISA OR IMMIGRATION SPONSORSHIP FOR THIS ROLE, NOW OR IN THE FUTURE. (e.g., H-1B, STEM OPT, TN, etc.) The firm offers a comprehensive benefits program including health, vision, dental, disability, 401K, tuition reimbursement, identity theft protection, and mental wellness support. Employees will also receive a generous paid leave policy including vacation/personal time starting at 5.67 hours per pay period, sick time up to 80 hours annually, parental leave, and twelve holidays. AlixPartners is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to, among other things, race, color, religion, sex, sexual orientation, gender identity, national origin, age, status as a protected veteran, or disability. AlixPartners is a proud Gold Level award-winning Veteran Friendly Employer. 
 #LI-KL1 #LI-Hybrid |