Skip to main content
Tallo logoTallo logo
Apply for this opportunity

This job application is on an outside website. Be sure to review the job posting there to verify it's the same.

IT Security Analyst

Job

ForgePath Security

Cambridge, MA (In Person)

Full-Time

Posted 5 days ago (Updated 1 day ago) • Actively hiring

Expires 7/14/2026

Review key factors to help you decide if the role fits your goals.
Pay Growth
?
out of 5
Not enough data
Not enough info to score pay or growth
Job Security
?
out of 5
Not enough data
Calculating job security score...
Total Score
74
out of 100
Average of individual scores

Were these scores useful?

Skill Insights

Compare your current skills to what this opportunity needs—we'll show you what you already have and what could strengthen your application.

Job Description

IT Security Analyst at ForgePath Security IT Security Analyst at ForgePath Security in Cambridge, Massachusetts Posted in 1 day ago.
Type:
full-time
Job Description:
What you'll doHelp desk (~50%)Tier 1 / Tier 2 end-user support: workstations, accounts, productivity software, common application issuesMicrosoft 365 administration (Exchange Online, Teams, Point, Entra ID basics)Remote endpoint provisioning and support workflows, coordinating with the client's on-site staff for physical hardware tasksOwn and triage the ticket queueSecurity (~50%)Vulnerability management own the operational program end to end: scan operations, finding triage, prioritization, remediation tracking with IT and end users, and reportingThird-party / vendor risk reviews: send, track, and coordinate vendor review questionnaires; perform first-pass analysis against established criteria; draft initial vendor review reports for senior reviewRisk assessment support: evidence gathering, control verification, asset and system documentation, and interview coordination under vCISO directionPhishing simulation campaigns: planning, deployment, reporting, follow-up trainingSecurity ticket triage and investigation (EDR alerts, email security, identity)Incident response support under ForgePath senior leadershipRoutine hygiene: access reviews, configuration checks, hardening tasksWhat we're looking for24+ years across IT support / help desk / junior SOC or security analyst work (any combination)Strong Microsoft 365 and Windows endpoint fundamentalsFamiliarity with vulnerability scanning you don't need to be an expert, but you should know what a CVSS score is and how to drive a fixStrong written communication you'll be drafting vendor review reports and remediation summaries that leadership readsSolid customer-service instincts: patient, professional, and willing to helpOrganized and self-directed enough to run recurring programs (scans, questionnaires, campaigns) without daily oversightNice to haveSecurity+, Network+, or equivalent certificationsExperience with EDR platforms (Microsoft Defender, CrowdStrike, SentinelOne)Exposure to third-party / vendor risk management or GRC work (questionnaires, SOC 2 report review, risk registers)Exposure to phishing-simulation tools (KnowBe4, Hoxhunt, etc.)Curiosity about offensive security there's real room to grow toward pentest and red-team-adjacent work over timeA genuine interest in security research and the wider community, such as digging into new vulnerabilities and security news and writing them up. We love people who would want to publish blog posts or research to benefit the security world.

PerksFull benefits: medical, dental, vision, and 401(k) with employer matchPaid time off and ForgePath-supported professional developmentMentorship from ForgePath's security team and a real path to grow into deeper security work recblid 8n40a6lbfxxuedmff5fpaq7du3vig0