Cybersecurity Analyst
Jockey International, Inc. · Kenosha, Wisconsin, United States
Retail · 1,001-5,000 employees
About the role
The Cybersecurity Analyst monitors networks and systems to detect and respond to security incidents while maintaining endpoint security across the enterprise. They also perform vulnerability assessments and collaborate with IT teams to implement security best practices and improve incident response procedures.
What they look for
Requirements
Candidates must have a bachelor's degree in a relevant field or equivalent experience, along with 1-3 years of IT experience. Proficiency in security tools like SIEM and EDR, as well as knowledge of Microsoft 365 and Azure environments, is highly preferred.
Benefits
Full description
At Jockey, caring is our responsibility. It’s the fabric of who we are and drives everything we do. It drives us to listen, innovate and improve. To design thoughtfully. To craft skillfully. To give back wholeheartedly. Founded in 1876, Jockey is a family-owned company recognized the world over for delivering feel-good comfort. Our premium apparel is sold in more than 140 countries and our commitment to quality, innovation and customer service is legendary.
We believe that extraordinary service comes from the heart and is delivered by extraordinary individuals! Is that you?
Jockey is seeking a Cybersecurity Analyst to join our IT team!
JOB SUMMARY
The Cybersecurity Analyst, reporting to the Information Security Manager, plays a pivotal role in safeguarding Jockey’s digital assets and ensuring the integrity of Jockey’s Information Technology (IT) infrastructure. This role is responsible for monitoring and executing cybersecurity operations, identifying vulnerabilities, responding to cybersecurity incidents, and implementing security best practices to safeguard business operations across distribution, retail, and corporate environments. The ideal candidate has a strong technical foundation, is an analytical thinker, is detail-oriented, and has a passion for staying ahead of evolving cyber threats.
JOB EXPECTATIONS
Monitoring and Detection
•
- Monitor networks and systems for intrusion attempts as a front-line detection analyst, leveraging a variety of tools and platforms (e.g., SIEM, EDR, and related telemetry).
- In rotation with other team members, support 24/7 Security Operations Center (SOC) operations on an on-call basis to meet defined alert triage/response timelines.
- Support the SOC Engineer and other team members to refine prevention/detection/response capabilities and hone tools/platforms (e.g., rule tuning) to prevent false negatives and minimize false positives.
Asset Security & Endpoint Management
•
- Ensure required endpoint agents are deployed and kept current across the enterprise.
- Track endpoint coverage and agent compliance; report detection-impacting gaps and drive remediation coordination with endpoint/infrastructure owners.
- Audit and, where appropriate, participate in endpoint lifecycle workflows (e.g., onboarding/offboarding, exceptions, etc.) to ensure complete and consistent coverage.
- Collaborate with infrastructure/help desk teams to verify IT Asset Management (ITAM) processes are implemented properly and inventory is accurately captured/maintained.
Incident Response
•
- Perform technical investigation of alerts/events/incidents across SIEM, EDR, network, identity, and cloud platforms; maintain investigation timeline, evidence, and case notes throughout.
- Execute triage, containment, eradication, and recovery/remediation actions following relevant playbooks under an established Incident Response Plan (IRP).
- Participate in incident debriefs, identify gaps and lessons learned to drive improvements to the IRP, playbooks, and other processes/documentation.
Vulnerability & Threat Management
•
- Assist with vulnerability assessments, scanning, and analysis; support Information Security leaders and other IT teams to prioritize remediation efforts.
- Leverage cyber threat intelligence to assess risk to systems/information, refine detection methodology, prevent compromise, and prioritize vulnerability remediation.
Documentation, Reporting, & Continuous Improvement
•
- Document all work performed and actions taken, such as through workflow logs, ticket comments/notes, etc.
- Follow an established reporting matrix for events and incidents, ensuring necessary parties are informed within time requirements.
- Continuously pursue opportunities for both self-improvement and team improvement, such as:
- Enhancements or alternatives to existing processes and tools
- Formal education, training, or certification programs
- Security platform vendor-provided trainings, conferences, etc.
- Tabletop events, technical labs, or cybersecurity exercises (e.g., “Capture the Flag”).
- Stay up to date on cybersecurity news, emerging threats/vulnerabilities, trends, etc.
QUALIFICATIONS
- Bachelor’s degree in Information Security, Information Technology, Computer Science, or related field (or commensurate combination of coursework, work experience, and/or certification(s)).
- 1-3+ years of experience in IT. Experience working in a cybersecurity role or implementing security controls is preferred.
Working knowledge of enterprise network technologies (e.g., firewalls, routers, switches, wireless access points, VPN, IdP, MFA, desktop & server operating systems, etc.).
- Familiarity with security tools (e.g., SIEM, EDR/HIPS/HIDS, DLP, NIPS/NIDS, email security, etc.). Hands-on experience preferred.
- Familiarity with IT operations in a Microsoft 365 enterprise/Azure cloud setting. Hands-on experience greatly preferred.
- Experience using CrowdStrike, Arctic Wolf, Proofpoint, CATO, and/or Netwrix is a plus.
- Working knowledge of cybersecurity compliance frameworks/governance preferred (e.g., NIST SP 800-53, ISO 27001, SOC 2, GDPR, PCI-DSS, etc.).
- Industry-recognized certifications in cybersecurity operations are strongly preferred (e.g., CySA+, SANS GSOC/GCFA/GCED/GCIH, etc.).
- Industry-recognized certifications in general cybersecurity or other relevant IT/cybersecurity domains are a plus (e.g., SSCP, SANS GSEC, CC, Security+, Net+, etc.)
- This position may require the employee to support systems off hours on a rotational basis due to the 24/7 nature of operations.
- Occasional travel may be required.
In return for your expertise, JOCKEY offers a competitive and comprehensive flexible benefits package which includes Medical/Dental/Life/Vision, 401(k), educational support, paid Volunteerism program, fitness club discounts, onsite health & wellness programs, generous employee discounts, a business casual work environment, a challenging work environment and exciting career growth opportunities!