Cyber Security Analyst
The Cybersecurity Skillbridge Program Associate is a participant of the Skillbridge program who will work with the Sabre Risk & Security team. The team member works under the guidance of the security manager and other team members to assess and operate security solutions and processes. The primary purpose of this position is to facilitate the transition of a military service member into civilian employment through training and experience. Sabre’s Cybersecurity team is responsible for protecting Sabre through the employment of tools, technologies, and processes to detect, respond to, and remediate all security attacks on information technology.
ABOUT THE JOB
Job Title: Cybersecurity Skillbridge Program AssociateWhat's it all about?The Cybersecurity Skillbridge Program Associate is a participant of the Skillbridge program who will work with the Sabre Risk & Security team. The team member works under the guidance of the security manager and other team members to assess and operate security solutions and processes. The primary purpose of this position is to facilitate the transition of a military service member into civilian employment through training and experience. Sabre’s Cybersecurity team is responsible for protecting Sabre through the employment of tools, technologies, and processes to detect, respond to, and remediate all security attacks on information technology. Personal Characteristics • Embodies integrity and has the attitude to do the job right the first time. • Member holds a variety of technical and business degrees including technical military training such as software engineering, information technology management, cybersecurity, etc. with a desire to learn and grow. • Disciplined student who has a passion for cybersecurity. Responsibilities • Develop cybersecurity solutions as per business and technical requirements. • Maintain Cybersecurity best practices and compliance program requirements. • Maintain cybersecurity process documentation. • Works with technology and business teams to resolve security events, requirements, and operational needs. The successful candidate will haveSkills • Experience or working knowledge of managing cybersecurity infrastructure — e.g., firewalls, intrusion prevention systems (IPSs), vulnerability management, web application firewalls (WAFs), endpoint protection, security analytics, log management and security automation technology• Experience reviewing application code for security vulnerabilities• Experience or a strong working knowledge of vulnerability management tools• Full-stack knowledge of IT infrastructure:o Public Cloud technologyo Applicationso Databaseso Operating systems — Windows and Linuxo IP networkso Backup networks and mediao Containers/Kubernetes• Direct experience designing IAM technologies and services:o Entra Active Directoryo Linux Identity Managemento Lightweight Directory Access Protocol (LDAP)o Google Identityo Identity Governance technologyo Privileged Access Management technology• Working knowledge of IT service management (e.g., ITIL-related disciplines):o Change managemento Asset managemento Incident managementPreferred Experience • Knowledge of industry risk management techniques and processes• Knowledge of scripting such as Python or Terraform • Knowledge of common security attack tactics, techniques, and procedures• Experience designing the deployment of applications and infrastructure into public cloud services.• Knowledge of common security frameworks such as NIST Cybersecurity Framework (CSF), General Data Protection Regulation (GDPR), Payment Card Industry Data Security Standard (PCI-DSS)
RESPONSIBILITIES
- Develop cybersecurity solutions as per business and technical requirements.
- Maintain Cybersecurity best practices and compliance program requirements.
- Maintain cybersecurity process documentation.
- Works with technology and business teams to resolve security events, requirements, and operational needs.
QUALIFICATIONS
- Experience or working knowledge of managing cybersecurity infrastructure — e.g., firewalls, intrusion prevention systems (IPSs), vulnerability management, web application firewalls (WAFs), endpoint protection, security analytics, log management and security automation technology
- Experience reviewing application code for security vulnerabilities
- Experience or a strong working knowledge of vulnerability management tools
- Full-stack knowledge of IT infrastructure: Public Cloud technology, Applications, Databases, Operating systems — Windows and Linux, IP networks, Backup networks and media, Containers/Kubernetes
- Direct experience designing IAM technologies and services: Entra Active Directory, Linux Identity Management, Lightweight Directory Access Protocol (LDAP), Google Identity, Identity Governance technology, Privileged Access Management technology
- Working knowledge of IT service management (e.g., ITIL-related disciplines): Change management, Asset management, Incident management
- Knowledge of industry risk management techniques and processes
- Knowledge of scripting such as Python or Terraform
- Knowledge of common security attack tactics, techniques, and procedures
- Experience designing the deployment of applications and infrastructure into public cloud services.
- Knowledge of common security frameworks such as NIST Cybersecurity Framework (CSF), General Data Protection Regulation (GDPR), Payment Card Industry Data Security Standard (PCI-DSS)
TARGET MOCS
17C, 25B, 26A, 0681, CG, IT, ITR, 255N, CG-CYB12
OTHER
The participant must be able to work on-site in the Dallas Ft Worth area for the duration of the fellowship