This is a full time position in Madison, Wisconsin. The candidate is expected to work a flexible hybrid routine.

Under the guidance of Information Security leadership, the Information Security Analyst supports the company’s cybersecurity program by delivering integrated threat intelligence and digital forensic services. This hands-on role is responsible for reviewing and analyzing incoming threat intelligence to assess risk and potential impact to the organization, applying best practices to inform proactive defense strategies.

The analyst plays a critical role in the incident response lifecycle by investigating escalated threats—such as malware infections, phishing attempts, or unauthorized access—through structured processes that include detection, containment, eradication, recovery, and root cause analysis. Responsibilities also include conducting forensic investigations, performing advanced data collections, and executing eDiscovery requests. The analyst may be called upon to support investigations led by Legal, Human Resources, or other internal stakeholders, ensuring evidence integrity and alignment with regulatory and organizational standards.

The ideal candidate will have experience using tools such as Magnet Forensics Axiom Cyber, Splunk, Microsoft Defender, and the MITRE ATT&CK framework to detect, investigate, and respond to complex security incidents. This role requires a strong analytical mindset, attention to detail, and the ability to work collaboratively across teams to enhance the organization’s security posture. Excellent verbal and written communication skills are essential, as the analyst will be expected to clearly document findings, articulate technical concepts to non-technical stakeholders, and contribute to incident reports, threat briefings, and cross-functional discussions.

Job Responsibilities:

  • Support Information Security Leadership regarding all aspects of the information security program, with minimal supervision. Responsibilities include facilitating the identification of risks throughout the organization, developing, reporting and monitoring formats on risk management issues and developing methodologies for the assessment of risks throughout the organization.
  • Continuously monitor the internal and external landscape for relevant events, risks, and threats related to malicious code, vulnerabilities, and potential attacks.
  • Coordinate and ensure cybersecurity related alerts and incidents are prioritized and responded to at all hours of the day.
  • Remain current with emerging threats and share knowledge with colleagues to improve incident response processes.
  • Participate in the creation and execution of tabletop exercises designed to identify gaps, improve skills, enhance communication and engage with key stakeholders.
  • Review reports from tabletop exercises, vulnerability scans and penetration testing to identify weaknesses or gaps in existing security controls and provide recommendations where appropriate.
  • Lead coordination, consultation, and assessment efforts to track and remediate events and alerts, directs response to related incidents, internal or external audits, and / or control assessments.
  • Identify, report, and assist in resolving privacy, compliance or security violations and control gaps.
  • Lead feedback with other IT teams to protect data from compliance, privacy or security compromise.
  • Contribute to the strategic direction of the Information Security team to develop new capabilities, process efficiencies and goals.
  • Participate in the development, review, ongoing maintenance and development of security policies, standards, processes, procedures and requirements to facilitate the establishment of common administrative controls for the delivery of security capabilities.
  • Security Awareness: Develop content for organization wide and targeted security awareness training. Present relevant information security topics through a variety of forums depending on the audience.

Job Requirements:

  • Bachelor’s degree in computer science, information systems or related field, or equivalent combination of education and/or related professional work experience.
  • 5 or more years of demonstrated proficiency with an information security audit, assessment, engineering or architecture focus or comparable, professional experience.
  • Proven ability to clearly and effectively communicate business and technical information, both verbally and in writing.
  • Aptitude for speaking or communicating to varied groups of business and technical professionals.
  • Experience in presenting technical material to a nontechnical audience and to senior management.
  • Established skills and experience in the development of security policies, standards or other governance practices.
  • Demonstrated relationship management and consulting skills, including ability to effectively influence and negotiate.
  • Proven ability to provide high quality customer service.
  • Financial Services industry experience strongly preferred.
  • Experience with law enforcement preferred
  • Experience with forensics preferred
Job Type: Full Time
Job Location: Madison WI

Apply for this position

Allowed Type(s): .pdf, .doc, .docx