Security Analyst
Infor
Description
Job Summary
We are looking for a Mid-Level Network Security Analyst to support and enhance our organization's network and security infrastructure. The ideal candidate will have solid hands-on experience with Palo Alto Networks firewalls and Panorama, CrowdStrike EDR, AWS security tools, and SIEM platforms.This role involves day-to-day security operations, troubleshooting, and implementing solutions to strengthen our defence posture against evolving threats.
About the Role
We are seeking a Mid-Level Network Security Analyst/Engineer with strong experience in modern security technologies and an interest in leveraging AI-driven tools and automation to improve detection, response, and network resilience. The ideal candidate will have hands-on expertise with Palo Alto Networks firewalls and Panorama, CrowdStrike EDR, AWS security services, and SIEM platforms such as Sumo Logic or Splunk. This role includes day to-day security operations, troubleshooting, and using AI-assisted analytics and automation to strengthen our defence posture against evolving threats. You'll play a key part in keeping our platform reliable, secure, and compliant — protecting both our customers and our data.
A Typical Day in the Life Includes:
• Configure, maintain, and optimize Palo Alto Networks firewalls and Panorama for secure connectivity across environments.
• Manage IDS/IPS, VPNs, and security policies to defend against network threats.
• Administer and monitor CrowdStrike Falcon EDR, investigating alerts and supporting incident response.
• Use AI-driven EDR features (behavioural analytics, ML detections, threat graph insights) to prioritize and remediate endpoint threats.
• Implement and review AWS security controls (IAM, GuardDuty, WAF, Security Groups, CloudTrail).
• Configure, monitor, and optimize Amazon CloudWatch, including alarms, metrics, logs, dashboards, anomaly detection, and integrations with security workflows.
• Leverage AI/ML-driven cloud security insights from GuardDuty, CloudWatch anomaly detection, IAM Access Analyzer, and CSPM tools to flag misconfigurations and unusual behaviour.
• Develop and maintain SIEM/SOAR dashboards and alerts for proactive threat detection and apply AI-enhanced SIEM analytics to detect anomalous behaviour and reduce false positives.
• Collaborate with DevOps, Cloud, and Security teams to embed security best practices into our SaaS infrastructure.
• Use AI copilots and automation tools to improve workflows (rule reviews, log analysis, report creation, and playbook generation).
• Maintain documentation and contribute to continuous improvement of our security standards.
Basic Qualifications:
• 3-6 years of experience in network or cybersecurity engineering within a cloud driven environment.
• Strong experience with Palo Alto Networks firewalls and Panorama.
• Solid understanding of network security, IDS/IPS, and VPNs.
• Hands-on experience with CrowdStrike EDR or similar endpoint protection tools.
• Working knowledge of AWS security architecture and services.
• Experience configuring and using Amazon CloudWatch (logs, metrics, dashboards, alarms).
• Experience with SIEM/SOAR platforms.
• Familiarity with AI-driven features in EDR, SIEM, or cloud security platforms (or willingness to adopt them).
• Excellent troubleshooting, analytical, and collaboration skills.
Preferred Qualifications:
• Certifications like Palo Alto CEH, PCNSA/PCNSE, AWS Certified Security - Specialty, or CrowdStrike CCFA/CCFR.
• Experience in SaaS, multi-tenant, or cloud-native environments.
• Familiarity with Python, PowerShell, or Terraform for automation.
• Experience with SOAR platforms, automated workflows, or LLM-based security assistants.
• Understanding of CIS benchmarks, SOC 2, or ISO 27001 compliance requirements.
About Infor
-
